New Gmail Feature Becomes a Loophole for Hackers to Infiltrate, Here Are Tips to Avoid It
Google has begun rolling out a Gmail update that enables some users to change their primary email address without creating a new account. Through this feature, the old Gmail address can still be used as an alias, while the user employs the new address as the main identity. This update indeed provides greater flexibility, but it also raises security risks that need to be heeded, especially since the feature is not yet available to all users and regions. At the same time, the issue of changing Gmail addresses is starting to be exploited by phishing perpetrators as bait for attacks. The method involves directing users to fake information or steps related to email address changes, which instead open up opportunities for account hijacking. Therefore, it is important for users to understand the risks of this feature as well as ways to protect their Gmail accounts from hacking threats. Cybercriminals can send emails that appear to come from Google. The content usually informs users that they can now change their Gmail address, then includes a link to make the change. At a glance, this email can seem convincing. The risk arises when users click the link in the email. Instead of being directed to Google’s official page, users may be taken to a fake site created to steal account login data. When victims enter their email address, password, or verification code on the fake page, that information can immediately be used by the perpetrators to attempt access to the Google account. If successful, the perpetrators can take over the Gmail account and other important data connected to it. This attack becomes even more dangerous because the feature is currently a hot topic. Such methods are not actually new. However, because Google is rolling out the Gmail address change feature, many users are more likely to believe emails with similar themes. This is what makes phishing attacks feel more convincing. Conduct account security checks directly from the official Google account settings to remain safe. Do not access via links sent in emails, chats, or other suspicious messages. Two-step verification is crucial for adding an extra layer of security. Thus, even if the password is known to others, the account remains not easily breached.