Capcană direct în Google Calendar. Linkul periculos apare fără să accepți invitația și îți poate fura contul • Newsweek România
A new phishing campaign exploits Google Calendar to insert dangerous links directly into users' calendars without their consent. Named "Red Tide," this attack uses real compromised Google accounts to send authentic calendar invitations. Users may not even notice the event until they receive a notification, as the event appears automatically upon receipt of the invitation. The invitations mimic common professional scenarios, containing links that lead to fake Google authentication pages. If users enter their credentials, attackers gain access to their accounts. Compromised accounts can further spread the phishing attack, making it difficult to detect. Researchers recommend adjusting Google Workspace settings to limit automatic event additions from unknown senders, though this does not eliminate the risk entirely.