ie8 fix
madison

Zero Day

Ryan Naraine, Emil Protalinski and Dancho Danchev

GMail adds features to thwart phishing attacks

By | June 29, 2011, 12:25pm PDT

Summary: The anti-phishing enhancements will display more information about the origin of certain GMail messages, especially those spoofed or sent on behalf of someone else.

Google has added several visual features aimed at helping its webmail users pinpoint phishing scams.

The anti-phishing enhancements, documented here, will display more information about the origin of certain e-mails, especially those spoofed or sent on behalf of someone else.follow Ryan Naraine on twitter

“If someone fakes a message from a sender that you trust, like your bank, you can more easily see that the message is not really from where it says it’s from,” according to an explanation from Google software engineer Ela Iwaszkiewicz.

Iwaszkiewicz said Gmail will also automatically detect suspicious messages and display a warning (see sample image blow) when it looks like someone may have spoofed a Gmail address.  Google does this by evaluating the message’s authentication data.

Kick off your day with ZDNet's daily e-mail newsletter. It's the freshest tech news and opinion, served hot. Get it.

Topics

Ryan Naraine is a journalist and social media enthusiast specializing in Internet and computer security issues.

Disclosure

Ryan Naraine

The most important disclosure is of my employment with Kaspersky Lab as a member of the global research and analysis team. Kaspersky Lab is a global company specializing in anti-malware and secure content management technologies. I do not own stocks or other investments in any technology company.

Biography

Ryan Naraine

Ryan Naraine is a journalist and social media enthusiast specializing in Internet and computer security issues. He is currently security evangelist at Kaspersky Lab, an anti-malware company with operations around the globe. He is taking a leadership role in developing the company's online community initiative around secure content management technologies.

Prior to joining Kaspersky Lab, Ryan was Editor-at-Large/Security at eWEEK, leading the magazine's and Web site's coverage of Internet and computer security issues and managing the popular SecurityWatch blog, covering the daily threats, vulnerabilities and IT security technologies. He also covered IT security, hacker attacks and secure content management topics for Jupiter Media's internetnetnews.com.

Ryan can be reached at naraine SHIFT 2 gmail.com. For daily updates on Ryan's activities, follow him on Twitter.

10
Comments

Join the conversation!

Just In

Re: gavinwray1
gavinwray1 28th Dec
Vancouver is one of the beautiful places worth visiting. The place is full of excitement with its shopping centers, natural sceneries and outdoor activities that you can enjoy. Having a trip to Vancouver does not need to be costly. http://www.flightsvancouver.com/

Do you know what you can do to brighten up your computer or cellular phone? Taking some voluptuous images of beautiful flowers is one of the best things you can do. http://www.flowerpictures.ca/

Various designs of flower tattoos are available to those who wish to get inked.
http://www.flowertattoos.ca/
0 Votes
+ -
You Go Google!
Dietrich T. Schmitz, *~* Your Linux Advocate 29th Jun
w00t
0 Votes
+ -
Good to know they're improving
Michael Alan Goff 29th Jun
N/T
Nice! grin

Now if it consistently performs well, this will make the "is this fake or too good to be true" much easier to identify.
happy
0 Votes
+ -
SEO Proves it can be Gamed
mrgushi 30th Jun
Its a nice thought. But realistically if people can game searches with SEO, Spammers can most certainly game the Google gmail alogrithm. After all there is not authentication mechanism in mail headers. You either have a digital signature or not (S/MIME or PGP). I guess if they do it in house like emails from other gmails, they put an audit trail on that; an who knows maybe another provider too. (hotmail or something). So that may have some value; but it could just as easily promote, more carelessness on the part of users. Who say, "Oh there's no warning Bubble so it must be legit!"
0 Votes
+ -
yeah, it would be great ..
thx-1138_@... Updated - 30th Jun
@mrgushi .. if this became a multi-vendor setup. I ain't holding my breath though.

0 Votes
+ -
I receive Google Alerts which Google then places into the spam folder. This will happen for a few weeks, then fix itself.

Clicking NOT SPAM does not seem to speed up this process.

They also mark genuine emails from Citibank (among others) as spam when they are not. Clicking NOT SPAM on these also makes no difference the next day - the Citibank emails are still going into the spam folder.

It's such a pain to report these to Google that I don't even bother anymore (you have to post on a forum and check back for a response). The NOT SPAM button doesn't work - simple enough.
Oh no! Those nice Nigerian guys that need me to provide a small fee to release all those millions, have another hurdle to get over (or around) before they reach the SPAM filter.
Hurray!
After all there is not authentication mechanism in mail headers. You either have a digital signature or not (S/MIME or PGP). I guess if they do s??zky it in house like emails from other gmails, they put an audit trail on that; an who knows maybe another provider too.
It's nice to learn that GMail has added an anti-phishing feature knowing the increasing cyber attacks nowadays. This development made me switch to G mail from my old email provider who can't seem to stop sending me spam mails. Security is really important for me, if I want to live in an estate like in St. Albert real estate , I would want to check the safety and security of the place first. I'm glad that this feature would be at no cost for every G mail user. It's true the best things in life are free. I even send birthday cards free for my friends. What I love about Google in general is that it has many variants like sushi rice. Google has like everything.
0 Votes
+ -
Re: gavinwray1
gavinwray1 28th Dec
Vancouver is one of the beautiful places worth visiting. The place is full of excitement with its shopping centers, natural sceneries and outdoor activities that you can enjoy. Having a trip to Vancouver does not need to be costly. http://www.flightsvancouver.com/

Do you know what you can do to brighten up your computer or cellular phone? Taking some voluptuous images of beautiful flowers is one of the best things you can do. http://www.flowerpictures.ca/

Various designs of flower tattoos are available to those who wish to get inked.
http://www.flowertattoos.ca/

Join the conversation!

Formatting +
BB Codes - Note: HTML is not supported in forums
  • [b] Bold [/b]
  • [i] Italic [/i]
  • [u] Underline [/u]
  • [s] Strikethrough [/s]
  • [q] "Quote" [/q]
  • [ol][*] 1. Ordered List [/ol]
  • [ul][*] · Unordered List [/ul]
  • [pre] Preformat [/pre]
  • [quote] "Blockquote" [/quote]
ie8 fix
Click Here
ie8 fix

The best of ZDNet, delivered

ZDNet Newsletters

Get the best of ZDNet delivered straight to your inbox

Facebook Activity

White Papers, Webcasts, & Resources
ie8 fix
ie8 fix