Google is taking a big step to fight phishingattempts on its users.
In a poston the company’s security blog, Google’s Product Manager of Account Security Jonathan Skelker announced that the search giant will begin to block account sign-ins from embedded browsers within applications.
The problem with embedded browsers, as Skelker lays out, is that it leaves Google’s users susceptible to phishing attacks from bad actors.
Previously, third-party developers could add web browser instances, like the Chromium Embedded Framework, to their apps. This allowed users to log into a service with their existing Google account without having to sign-up for a fresh account on a brand new platform.
While embedded browsers may have made it easy for an app user to sign-up or login, it also made it just as simple for a hacker to carry out a man-in-the-middle phishing attack. Malicious actors could use embedded browser frameworks to essentially eavesdrop on an unsuspecting user and steal their login credentials.
Unfortunately, Google can’t differentiate between legitimate sign-ins and a phishing attack through embedded browser frameworks. Because of this, the company has decided to ban this login method outright.
The company is urging developers using embedded browsers to switch to browser-based OAuth authentication. Basically, when a user wants to login to a third-party app using their Google account, the app would open up the Google sign-in page through their mobile browser. This way users can view the URL of the site to ensure this is a legitimate Google page and not a phishing website imposter.
Google saysit will begin blocking sign-ins from embedded browser frameworks in June.
文章
97
浏览
2
获赞
3
Stephen King has some golden Thanksgiving advice for avoiding political arguments
It's almost an unwritten rule of Thanksgiving – or any family holiday event, for that matter &The optimal way to remotely watch Netflix with friends
With many European and American cities in quarantined coronavirus lockdown, the world's hottest clubTaskRabbit, citing coronavirus spread, will now waive task cancellation fees if you're sick
TaskRabbit, the freelance labor platform that matches workers with people who need stuff done, annouFacebook takes down accounts based in Iran and Russia
Facebook announced on Wednesday that it's removing accounts based in Iran that targeted users in theSamsung Pay Card is here, starting with the UK
In May, Samsung announced it would launch a debit card sometime this summer, an expansion of its SamSure looks like Robert Downey Jr. gave us a sneak peek at the OnePlus 8 Pro
Leave it to Robert Downey Jr. to leak a smartphone: The highly anticipated OnePlus 8 Pro, to be exacMitt Romney's grandson dresses as Pierre Delecto for Halloween
Witty Halloween costumes can be difficult to come up with, but Mitt Romney's grandson had it easy thOnline learning: 5 skills for kids trying to do digital homework
Not everything went smoothly when The Harbour School in Hong Kong turned to virtual learning in Nove5 Great Chrome Extensions You Should Install
With almost 60 percent share of the browser market, Chrome is around three times more popular than iDon’t order stuff you don’t need from Amazon right now
Amazon is still delivering packages as the coronavirus pandemic rages on, but that doesn't mean you'Siri, how do I know if I have the coronavirus?' Apple launches tools for COVID
iPhone users can now ask Siri for help if they think they may have the coronavirus.On Friday, AppleWatch a beautiful string duet happen across NYC subway tracks
New York City subways are always hell. Which is why you should thank buskers for doing god's work anBear breaks into a house and escapes 'like the Kool
Bears are a lot like the Kool-Aid Man, and no you cannot change my mind. Allow me to explain: Both aEmma Watson coins new term for happily single people and we are 100% on board
Emma Watson is happily single and she's even coined a new term to describe her unfettered relationshTesla Model 3 named top EV in 'Consumer Reports' annual list
The "Top Picks for 2020" are in from Consumer Reports and Porsche fans aren't going to be happy abou