Other nomination
Google Drive SSO Phishing
Phishing pages were hosted on Google Drive so the link and its HTTPS certificate look like Google own infrastructure, and the page JavaScript was obfuscated so scanners could not read the HTML or rely on IP blacklists. Harvested Google single sign-on credentials were sent to a separate third-party domain.
Record
- Researcher
- Ericka Chickowski
- Published by
- Dark Reading
In the archive
Tags
This page is the archive's own catalogue record. The research is the work of Ericka Chickowski, first published at the original source. Preserved copies are kept so the citation survives its host.