Gmail Alert: Don’t Fall for This Fake Google Email Scam
A sophisticated Gmail scam is stealing user personal data by tricking them into revealing sensitive information.
Gmail Alert: Don’t Fall for This Fake Google Email Scam

Any email from [email protected] asking you to verify your account activity to prevent Gmail deactivation is fake and should not be clicked. Gmail users currently face a new scam that is alarmingly convincing to its targets. The email appears to originate directly from Google. X user Nick Johnson first identified and reported this scam. An extremely sophisticated phishing attack targeted me recently which I want to bring attention to here. According to him his post revealed that the scam takes advantage of a weakness in Google's systems.
The fraudulent email displays the correct company logo together with official-sounding language and legitimate branding. The first important detail is that this email is legitimate and comes from [email protected]. The email passed DKIM signature verification and appeared in Gmail with no alerts while being grouped with legitimate security notifications as Johnson reported. Understand clearly this Gmail phishing attack exists to steal your personal information.
The phishing email alerts you to an account review triggered by your recent Gmail activity. The email requests account verification through a “Review Activity” button. The message warns recipients that they must act to prevent their account from being suspended in 24 hours.
India Today Tech contacted Google to learn about the number of affected users and whether anyone suffered financial loss or faced other serious consequences from the attack. The story will be updated with the responses shortly.
Johnson confirmed Google had acknowledged the Gmail hack problem and planned to resolve the bug when writing this story. Google has decided to address and resolve the oAuth bug.
The Google scam poses a serious threat because it appears genuine to recipients. The email appears to come from Google because the displayed sender name says “Google” and the email address looks real. A detailed check shows that the email address does not belong to an authentic Google domain.