A Wave of Email Thieves Are Intent on Getting Their Hands on Private Email Data


   Recently, Baidu Antivirus has detected a wave of new phishing scams. These scams imitate real webpages totrick users into entering their email accounts and passwords. These scams affect well-known email providers, mainly Gmail, Yahoo Mail, Windows Live, and AOL Mail. After users access these fraudulent sites, they generally show a page like that of a well-known website (as shown in the image below). If users are not careful and enter their email accounts and passwords, the password information is sent directly to a remote server specified by the hacker. Then, the hacker will have access to any private data in the user's mailbox.‍‍

   Baidu Antivirus security experts warn that personal mailboxes often contain various types of important private data, including bank statements, registration information for PayPal and other online payment sites, information for Facebook and other well-known sites, and even confidential business documents. If a hacker obtains a user's email account and password, this is a major security threat. The hacker may use the user's address book to carry out social engineering attacks and steal money.

   Baidu Antivirus security experts recommend the following practices to protect your email security:

   1. Email users should immediately enable enhanced security features, such as Gmail's two-step verification

   2. Do not open strange emails or click on unknown links

   3. Do not enter your email account and password on unfamiliar sites

   4. Make sure your email password is unique so hackers cannot access your email if your password to another site is leaked

   5. Install the latest security software version and allow auto-updates

   According to Baidu Antivirus officials, current Baidu Antivirus users that enable full protection will be protected against these types of email phishing scams. It is recommended that the other users download the latest version of Baidu Antivirus and enable the full protection feature to prevent disclosure of their private data.



