Google Confirms New Attack by Iranian hacker as the hacker group protected by the Iranian government has been found to be automatically downloading and reading emails sent to Yahoo and Outlook along with Gmail.
According to a recent report published by Google’s Threat Analysis Group (TAG), a hacker group known as Iran’s Charming Kitten has been downloading unauthorized access to the contents of the mail inbox.
According to the research report, the hacker has a hacking tool called hyperscrape, from which the data of Gmail and Microsoft Outlook 365 account users is being stolen.
Google also informed that after it was found that such a tool was used in more than two dozen Gmail accounts, the account was protected by sending a notification to the user.
The HyperScrap tool was first discovered in December 2021 by researchers from Google’s Threat Analysis Group. This tool uses a spoofing method on old or outdated web browsers, which allows downloading mail inboxes in HTML view.
After this, it is said that the contents of the compromised mail inbox will be downloaded at once. Interestingly, after the download process is complete, the emails are marked as ‘unread’ and the account automatically deletes itself if any security notification appears.
It is also said that some versions of this hacking tool can download all the user’s data using the ‘Google Takeout’ feature.