Robinhood Users Targeted in Phishing Attack Exploiting Gmail Dot Alias Feature

Gate News message, April 28 — Robinhood users have recently fallen victim to a phishing attack that exploits Gmail’s dot-ignoring feature and vulnerabilities in Robinhood’s account creation process. Attackers registered accounts nearly identical to target email addresses, allowing them to trick Robinhood’s mail servers into delivering fraudulent security alerts containing phishing links to victims’ inboxes.

According to cybersecurity researcher Alex Eckelberry, the malicious emails pass SPF, DKIM, and DMARC verification checks, making them appear to originate from official Robinhood addresses. This authentication bypass significantly increases the attack’s credibility.

Robinhood confirmed that no system breach or customer account compromise occurred, and user funds and personal information remain secure. The platform advised users to delete suspicious emails and avoid clicking on any questionable links.

Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

ZachXBT Questions WorldCoin's Low-Circulation, High-Valuation WLD Launch, Flags Insider Selling

Gate News message, April 28 — On-chain detective ZachXBT alleged that WorldCoin (now World), a company founded by Sam Altman, launched WLD tokens with low circulation and high valuation, mirroring the model used by SBF and FTX. According to ZachXBT, the company distributed small amounts of WLD to us

GateNews2h ago

ZetaChain pauses cross-chain transactions; the GatewayEVM smart contract was attacked

On April 28, according to ZetaChain’s official announcement and its official status page, the Layer 1 interoperability network ZetaChain has paused cross-chain transactions on the mainnet after it detected that the GatewayEVM smart contract was attacked. In its statement, ZetaChain confirmed that this attack only affects the ZetaChain team’s internal wallets, and that no user funds have been impacted so far.

MarketWhisper3h ago

ZetaChain Halts Cross-Chain Transactions After $300K Smart Contract Attack

Gate News message, April 28 — Layer 1 network ZetaChain has paused cross-chain transactions on its mainnet following an attack on its GatewayEVM smart contract. According to DefiLlama data, $300,000 was lost in the incident, though the ZetaChain team did not disclose the amount and stated it will re

GateNews5h ago

Deepfake Call Tricks Cardano Dev, Exposes New Weak Spot

A Cardano developer says a realistic AI deepfake video call led to a laptop breach, a reminder that the next wave of crypto attacks may start with faces and voices rather than smart contracts. The warning, shared with the Cardano community, describes an incident in which an impostor used

DailyCoin14h ago

French Prosecutors Charge 88 in Crypto Wrench Attack Ring

French authorities have charged 88 individuals, including 10 minors, in connection with kidnappings and extortions targeting cryptocurrency owners, according to a statement from the National Public Prosecutor's Office for Organized Crime (PNACO) released Friday. The charges are tied to 12 ongoing

CryptoFrontier16h ago

When DeFi is too slow for young people and too risky for old money: are we all using Treasury bond interest to shoulder junk bond risk?

DeFi once attracted young people with five-figure APY rates, but it is now seen as overpriced and carrying too much risk. Over the past year, more than $1.62 billion has been stolen, and at one point Aave’s interest rate spiked to 12.4%. The fair yield is about 12.55%, with a retail entry threshold of 18%. Institutional players prefer “strategy-isolated vaults” to reduce tail risk. Conclusion: high leverage is no longer in; in the future, we’ll need higher-risk pricing and insurance tools to accommodate both young people and old money.

ChainNewsAbmedia21h ago
Comment
0/400
No comments