Security

The Google Doc Phishing Attack of 2017: Can It Happen Again?

On Wednesday, May 3rd, Google and Gmail users experienced a wide, sophisticated phishing attack. It came from a phony app that called itself “Google Docs.” During this incident, approximately 1 million Gmail users received an email asking them to open a Google Doc. If the link was clicked, the user was taken to a page to open the document with their Google account. Doing so would then give the attacker access to the user’s email account and contacts. If you think you have fallen victim to this scam or a similar scam, you should use Security Scan to quickly check your device for malware:


Phishing is a popular method of stealing credentials in order to hack email accounts, bank accounts, or other private accounts. Luckily, Google was able to shut down the attack and delete the offending app within an hour of it’s launch. Not all companies and individuals are this savvy at identifying threats, though. The only way this kind of phishing can be identified is by looking at the developer information very closely. Since the average person doesn’t always read the fine print, security scanning software is vital.

Read More: Security Risks of Apps Sharing Data with Advertisers

The culprit of this attack is the Open Authorization system used by Google as well as several other sites to log users into multiple accounts at once.  When you log in with this system, it creates a session token which can be transferred to other sites and services, which then logs you into them as well — indefinitely. And this is why it is so dangerous. When you log in to those fun online quizzes, you don’t often think of what happens when you leave the quiz site. If you stay logged into facebook and other sites that use OAuth, you open yourself up to scams like phishing and viruses.

Because OAuth uses session tokens instead of passwords, it is incredibly easy to hack. All the malware worm needs to do is make itself look legitimate by using icons, logos, and emails. In other words, OAuth systems depend on websites and applications telling the truth about who they are. As OAuth itself is not a security system, but a logging in system, these kinds of attacks are hard to catch because they look legitimate. Computers and laptops are the most susceptible to this kind of attack, but these attacks can happen to phones and mobile devices, too. That’s why it is important to regularly scan your device for malware in order to identify applications or downloads that could secretly be stealing your information.

PSafe Newsroom

The dfndr blog is an informative channel that presents exclusive content on security and privacy in the mobile and business world, with tips to keep users protected. Populated by a select group of expert reporters, the channel has a partnership with dfndr lab's security team. Together they bring you, first-notice news about attacks, scams, internet vulnerabilities, malware and everything affecting cybersecurity.

Recent Posts

Google Pics: What It Does and Who Can Use It

Google Pics began rolling out on September 1, 2026, with AI tools for creating and…

57 years ago

Is Your Phone Acting Strange? Here’s Why the SIM Card Is Not Always the Cause

When something unusual happens on a smartphone, many people immediately blame the SIM card. But…

57 years ago

Phone overheating: 8 causes and how to cool it safely

A phone overheating does not always mean something is broken. Gaming, camera use, charging, weak…

57 years ago

ChatGPT for Teens: What Changes for Teens and Parents

ChatGPT for Teens began rolling out globally on August 18, 2026. The experience is designed…

57 years ago

Android Security Update: Check the August Patch

Google published the August 2026 Android security update bulletin on August 3, with patch levels…

57 years ago

Does Leaving Wi-Fi On Drain Your Phone Battery?

Do you turn Wi-Fi off whenever you leave home because you expect your battery to…

57 years ago