Domain Hijacking Threatens Google’s Security

Recent attacks allowed criminals to redirect Google domains and others. Google has taken steps to mitigate the impact.
It has been reported that cybercriminals have managed to hijack top-level domains, allowing them to alter DNS records and mint fake HTTPS certificates for several Google domains and other organizations. Google became aware of this series of attacks last week, affecting domains in the country-code extensions .gh (Ghana), .sl (Sierra Leone), and .as (American Samoa).
The attackers modified authoritative DNS records, which gave them the power to redirect users from legitimate sites to illegitimate copies, putting the security of users trying to access these services at risk. Despite the severity of the situation, Google assured that its systems were not compromised and that its Chrome browser quickly acted to block the counterfeit certificates detected.
## Why it matters This incident highlights the vulnerability of domain name systems and the importance of HTTPS certificates in web security. Users could have been misled into entering sensitive information on fake sites, potentially leading to identity theft and other cybercrimes.
## What we know Google has confirmed that the series of attacks affected several domains but has not specified which ones were involved. The company is working to mitigate the impact of these attacks and protect users from future incidents.
## What is still unclear It remains unconfirmed whether the attackers managed to access sensitive user information or if these fake domains were used for other malicious activities. The security community continues to monitor the situation for further details.
Read at the original source:
The Register →Related news
SecurityBrowser-in-browser attacks use fake Meta Muse Ads to steal credentials
A new phishing campaign is leveraging fake Meta Muse Ads to steal credentials. Attackers quickly adapted their strategy following the launch of Meta's AI agent.
SecuritySurfshark integrates post-quantum security into WireGuard
Surfshark has implemented ML-DSA certificates in WireGuard for post-quantum security. This upgrade is available for users on iOS, macOS, and Windows.
SecurityThe risk of the 'Sign in with Google' button
The Google sign-in button offers ease of access but may compromise your data security.