Wondering where that upcoming meeting with 'Cheap Viagra' came from? Spammers beat Gmail filters by abusing Google Calendar, Forms, Photos, Analytics...

www.theregister.co.uk | 6/11/2019 | Staff
iloveangie02 (Posted by) Level 3
Click For Photo: https://regmedia.co.uk/2015/07/09/spam_cans.jpg

Spammers are abusing the preferential treatment Google affords its own apps to score free passes through Gmail's spam filters, it was claimed this week.

The ad giant greases the wheels so that incoming messages involving Google Calendar and other Big-G appsvslide through the filters and appear in Gmail inboxes, to ensure stuff generated and shared via its applications aren't silenced by its own webmail product.

Situation - Kaspersky - Bods - Week - Artists

This situation, according to Kaspersky bods this week, is being exploited by scam artists to lob spam, phishing pages, and links to malicious malware-flinging websites at netizens, in some cases without triggering Gmail's defenses.

"The spammer’s main task is to bypass the spam filter and deliver email to your inbox," Kaspersky analyst Maria Vergelis helpfully reminded us. "As it happens, Google services often send email notifications to Gmail inboxes — and Google’s antispam module avoids flagging notifications from its own services as spam."

Google - Kinds - Notifications - Scammers - Load

Because Google usually allows these kinds of notifications through, scammers have found they can schedule a load of events in Google Calendar, inviting Gmail users en masse, and, when the set time draws near, generate a wave of reminders that include spam, phishing links, and so on, at least some of which slips through Gmail's filters.

For example, the scammer could send a block of Gmail users a Calendar invite with the description being a link to a fake banking site. Rather than catch and filter out the e-nasty, Gmail would let the notification through and, when the person clicked the link, they would then go to the phony bank page. If the recipient has Calendar set to automatically accept invites, they would even get a pop-up notification of the spam message.

Calendar - Artists - Vergelis - Google - Photos

It is not only Calendar that is being gamed by scam artists. Vergelis noted that Google Photos is also a popular method for evading filters. In...
(Excerpt) Read more at: www.theregister.co.uk
Wake Up To Breaking News!
Conservatives are to the GOP what oil is to water, and the GOPe spend most of their time skimming it off or setting it on fire.
Sign In or Register to comment.

Welcome to Long Room!

Where The World Finds Its News!