A new credential phishing campaign is using a fake “New Audio MSG” email to draw recipients toward a convincing Google-themed sign-in page. The message turns a familiar voicemail-style prompt into a way to steal account credentials, relying on a simple Play Audio call to action rather than a suspicious attachment. The email sends its target through a tracking and redirect chain before presenting a page made to resemble Google Workspace or Google Voice. That layered route can make the first click appear routine while moving the victim toward a credential-harvesting site controlled outside the legitimate service. Anurag said in a report shared with Cyber Security News (CSN) that a recipient’s email address is encoded and...
Læs hele artiklen hos kilden.
Kommentarer (0)
Ingen kommentarer ennå. Bli den første til å kommentere!