London - ALsharqiya, July 12: Google, in collaboration with security firms, issued an urgent warning after detecting a wave of sophisticated cyberattacks targeting Gmail accounts, exploiting vulnerabilities in outdated login methods.
It is believed that Russian-backed hackers are behind the attacks, which began with phishing emails impersonating official officials. Despite the advanced protections, cybersecurity firms, led by Malwarebytes, urged users to follow six basic rules to protect their accounts:
Avoid using "app passwords" except when absolutely necessary and rely on modern applications that support two-factor authentication.
Enable two-factor authentication (2FA), preferably using applications like Google Authenticator or physical security keys instead of text messages.
Be wary of phishing emails and be aware of the deceptive methods used to obtain passwords.
Update operating systems and applications regularly and enable automatic updates whenever possible. Verify the sender's identity before sharing any sensitive data, especially if requested via email or text. Regularly review your Google account security settings and ensure that no unfamiliar apps or devices have access. Experts have warned that these attacks could expand to include regular users, making adherence to these rules essential to protecting personal data.