From hawking fake vaccinesand stolen masksto phishing attemptsdesigned to take advantage of the pandemic, the internet has seen coronavirus-related scams and attacks skyrocket over the past few weeks.
Now, Google is sharing what its team of security experts have uncovered.
Google’s Threat Analysis Group (TAG) released a report on Wednesday detailing a number of COVID-19 attacks seen across the company's product line.
The search giant says it has specifically identified attacks targeting U.S. governmental workers and health agencies, phishing emails going after employees working from home, and fake charity solicitations.
“Hackers frequently look at crises as an opportunity, and COVID-19 is no different,” writes Shane Huntley of Google’s Threat Analysis Group in the report. “Across Google products, we’re seeing bad actors use COVID-related themes to create urgency so that people respond to phishing attacks and scams.”
Furthermore, these attacks are not just being carried out by lone hackers looking to cause trouble or scammers out for a cash grab. According to Google’s security team, it found more than a dozen state-sponsored hacking groups using the coronavirus as a lure when targeting users in its phishing and malware attempts.
The security team discovered a coronavirus-themed attack campaign targeting international health organizations and officials. The attacks spoofed the World Health Organization’s login pages in an effort to steal its targets' credentials.
According to Google, these attacks mirrored those previously reportedon earlier this month by the hacker group Charming Kitten, which has links to the Iranian government. The report also names a malicious South American actor known as "Packrat" as another source of these attacks.
The company shared screenshots of emails from hackers pretending to be from the World Health Organization (WHO). One particular message tried to trick its recipient into downloading malware.
Google detailed another notable government-backed attack targeting U.S. government workers. A phishing campaign disguised as American fast food franchises went after these employees, pretending to offer them coupons and free meals in response to the coronavirus pandemic. Other emails pretended to be these food establishments’ online ordering service. The purpose of these emails was to get targets to click through to a page that looked like the fast food company’s, but was in fact set up by the attacker to steal their Google account login credentials.
According to Google, the “vast majority” of these messages were marked as spam upon receipt and never seen by its users.
“We’re not aware of any user having their account compromised by this campaign, but as usual, we notify all targeted users with a 'government-backed attacker' warning,” said Huntley.
The search giant previously reportedlast week that its systems had detected 18 million coronavirus-related malware and phishing messages in Gmail each day. It also shared that there were more than 240 million COVID-19-themed spam messages sent daily. The company said that it’s been able to block 99.9 percent of those attacks and spam messages from reaching its intended targets.
One interesting point of data from Google’s report is that phishing attacks by government-backed actors actually declinedover the past month as compared to January and February of this year. While the attacks related to the coronavirus received a boost, overall they’re down.
And the search engine has a theory on why that is the case.
“While it’s not unusual to see some fluctuations in these numbers, it could be that attackers, just like many other organizations, are experiencing productivity lags and issues due to global lockdowns and quarantine efforts,” explained Google’s Huntley.
Government-backed hackers: They’re just like the rest of us.
文章
6
浏览
95598
获赞
26662
Congressman complains that Google's CEO should fix his dad's Gmail spam filter
Gifted one-on-one time with four of the most powerful tech executives in the world, Republican CongrTarget's Black Friday sale is live — check out the deals here
UPDATE: Nov. 13, 2023, 9:00 a.m. EST Target's Black Friday sale, which contains its biggest savingsYes, you can use your voice to type in Google Docs. Here's how.
Why did no one tell me that Google has a speech-to-text feature? I only discovered the cool perk becBest Prime Day headphones deal: 50% off Beats Solo3
SAVE OVER $90: Beats Solo3 wireless headphones are on sale for $99.99 in the Amazon Prime Big Deal DGet $25 off your first Daily Harvest box
TL;DR:Get $25 off your first Daily Harvest box with code MASHABLE. Offer valid through Jan. 9, 2020.Black Friday gaming laptop deals 2023: Acer, MSI, more
UPDATE: Nov. 8, 2023, 4:00 p.m. EST This article has been updated with the latest gaming laptop dealXREAL just announced 2 new AR glasses: How to preorder the XREAL Air 2 and XREAL Air 2 Pro
PRE-ORDER NOW: XREAL announced its new Air 2 and Air 2 Pro glasses on October 24. You can pre-order5 fanfiction sites that aren't Archive of Our Own
Archive of Our Own (AO3), a popular fan fiction website, is down. And people are distressed. The sitMany park rangers are still exposed to the public during coronavirus
UPDATE: March 17, 2020, 3:48 p.m. EDT: The National Park Service announced Tuesday that it is now "mGolf is cool now. Here's why the sport is all over TikTok and leading fashion trends.
There's a long-held credo among the Golf Powers That Be: Grow the Game. Held in those three small woTikTok's "aged" filter: The app's obsession with age persists
Across TikTok, side-by-side faces are portraying the present and the future: how a person looks todaWhy do 'Normal People' edits still dominate TikTok?
There are few certainties in this world: death, taxes, and a Taylor Swift fan's compulsion to look f22 tweets for people who are sick and tired of Zoom calls
We're only halfway through 2020, but the Zoom fatigue is real.Quarantining, social distancing, and wBest Nintendo Switch deal: Buy a Nintendo Switch OLED, get a $75 Dell eGift card
GET A $75 EGIFT CARD WITH PURCHASE: As of Nov. 10, buy a Nintendo Switch OLED for $349.99 at Dell anCharli D'Amelio talks Tamagotchis and TikTok trends
If there's one thing everyone knows about Charli D'Amelio, it's that she dances. The 19-year-old cli