Close Menu
amed postamed post
  • News
  • World
  • Life & Style
  • Sport
  • Entertainment
  • Health
  • Tech
  • Travel
  • Contact
What's Hot

Furious Tories condemn Sadiq Khan over delay removing migrant tents | Politics | News

June 26, 2025

‘I’m ditching UK for idyllic island with £2.50 pints and friendly pig’ | Travel News | Travel

June 26, 2025

TUI air hostess pictured ‘smiling’ as she faces 25 years in Sri Lanka jail | World | News

June 26, 2025
Facebook X (Twitter) Instagram
Trending
  • Furious Tories condemn Sadiq Khan over delay removing migrant tents | Politics | News
  • ‘I’m ditching UK for idyllic island with £2.50 pints and friendly pig’ | Travel News | Travel
  • TUI air hostess pictured ‘smiling’ as she faces 25 years in Sri Lanka jail | World | News
  • Donald Trump and Netanyahu ‘agree to end Gaza war’ after Israel-Iran conflict | World | News
  • F1 team ‘make decision on sacking driver’ at Austrian Grand Prix as contract clarified | F1 | Sport
  • Princess Kate and Prince William top new power list with Harry and Meghan snubbed | Royal | News
  • Eastbourne star rages at umpire and refuses to accept punishment for throwing racket | Tennis | Sport
  • Kemi Badenoch defends Keir Starmer ‘evading PMQs’ claims | Politics | News
  • News
  • World
  • Life & Style
  • Sport
  • Entertainment
  • Health
  • Tech
  • Travel
  • Contact
Facebook X (Twitter) Instagram
amed postamed post
Subscribe
Thursday, June 26
  • News
  • World
  • Life & Style
  • Sport
  • Entertainment
  • Health
  • Tech
  • Travel
  • Contact
amed postamed post
Home»Tech

Everyone with a Gmail account placed on red alert and told to follow 6 new rules

amedpostBy amedpostJune 26, 2025 Tech No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email


The majority of email users are now well aware of scams and attacks that land inboxes every day. Google has now got so good at spotting rogue messages that most of them are instantly filtered long before they reach customer accounts. However, it appears now is not a good time to become complacent. Hackers have recently managed to pull off a cyber attack that avoids Google’s multi-factor authentication.

That means cyber crooks could gain full access to accounts without the owner ever knowing anything is wrong.

The new assault was spotted by security researchers at Google Threat Intelligence Group, who confirmed targeted attacks have already taken place.

Google accounts are usually very secure, with users needing to use multiple methods to access services such as Gmail. These often include two-factor authentication, which sends a message to a second device before a login is granted.

But it seems Russian cyber crooks have found a way to target older phones and other devices that are unable to handle this extra verification step.

Google offers something called app passwords, which are special 16-digit codes aimed at keeping less modern devices safe.

However, because app passwords skip the second verification step, hackers can steal or phish them more easily.

According to Malwarebytes, the crooks used this method to target prominent academics and critics of Russia.

“The attackers initially made contact by posing as a State Department representative, inviting the target to a consultation in the setting of a private online conversation,” Malewarebytes explained.

“While the target believes they are creating and sharing an app password to access a State Department platform in a secure way, they are actually giving the attacker full access to their Google account.”

Although this was a highly targeted attack, it doesn’t mean the general public might not be next.

“Now that this bypass is known, we can expect more social engineering attacks leveraging app-specific passwords in the future,” Malwarebytes warned.

If you are concerned by this new attack, security experts have issued advice on how to stay safe.

• Only use app passwords when absolutely necessary. If you have the opportunity to change to apps and devices that support more secure sign-in methods, make that switch.

• The advice to enable MFA still stands strong, but not all MFA is created equal. Authenticator apps (like Google Authenticator) or hardware security keys (FIDO2/WebAuthn) are more resistant to attacks than SMS-based codes, let alone app passwords.

• Regularly educate yourself and others about recognising phishing attempts. Attackers often bypass MFA by tricking users into revealing credentials or app passwords through phishing.

• Keep an eye on unusual login attempts or suspicious behaviour, such as logins from unfamiliar locations or devices. And limit those logins where possible.

• Regularly update your operating system and the apps you use to patch vulnerabilities that attackers might exploit. Enable automatic updates whenever possible so you don’t have to remember yourself.

• Use security software that can block malicious domains and recognise scams.

Keep Reading

Microsoft throws an unexpected lifeline to loyal Windows 10 users

Sky issues urgent price deadline for UK homes with broadband – you must act now

All Virgin Media customers get big free TV upgrade with two new channels

Sky and BT rival offers UK homes broadband for free – check your postcode now

Google’s Chromebook is back with more power and a surprising price

Must have Apple device slashed to just £26.60 – act now or miss out on rare deal

Add A Comment
Leave A Reply Cancel Reply

Editors Picks

Cyndi Lauper picks 1904 classic as her favourite song ever

May 21, 2025

PS Plus April 2025 Extra games predictions – Last of Us Part 2 among the top picks

April 7, 2025

Review: Record Shares of Voters Turned Out for 2020 election

January 11, 2021

EU: ‘Addiction’ to Social Media Causing Conspiracy Theories

January 11, 2021
Latest Posts

Queen Elizabeth the Last! Monarchy Faces Fresh Demand to be Axed

January 20, 2021

Marquez Explains Lack of Confidence During Qatar GP Race

January 15, 2021

Young Teen Sucker-punches Opponent During Basketball Game

January 15, 2021

Subscribe to News

Get the latest sports news from NewsSite about world, sports and politics.

Advertisement

info@amedpost.com

Facebook X (Twitter) Instagram Pinterest YouTube

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

Facebook X (Twitter) Instagram Pinterest
  • News
  • World
  • Life & Style
  • Sport
  • Entertainment
  • Health
  • Tech
  • Travel
  • Contact
© 2025 The Amed Post

Type above and press Enter to search. Press Esc to cancel.