The Google Apps script has abused to launch dangerous phishing attacks


  • The pirates host false invoices on the Google Apps script, warn the experts
  • Invoices are sent by email
  • The victims are redirected to a false Microsoft 365 connection page

The threat actors were seen abusing the Google Apps script to launch convincing phishing attacks and steal people’s connection details.

CoFense cybersecurity researchers recently spotted such a campaign where the Google Apps script used a false invoice.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top