El.kz / Marina Ruzmatova/ ChatGPT

Kazakhstan’s Prosecutor General warns of threat to 2.5 bln Gmail users

09.09.2025 13:49

2.5 billion Gmail users are at risk following a massive phishing attack, El.kz reports citing Kazakhstan’s Prosecutor General’s Office.

The Center for Crime Threat Forecasting under the Prosecutor General’s Office of Kazakhstan reported a large-scale cyberattack on Google databases.

According to their information, the hacker group ShinyHunters gained access to contacts and corporate data from up to 2.5 billion Gmail accounts. While passwords were not directly stolen, the consequences of the leak could be extremely dangerous.

The attackers used social engineering methods: they called a Google employee, posing as IT support, and tricked him into authorizing the malicious application Salesforce Data Loader. This granted access to information that can now be exploited for massive phishing and phone scams.

Experts advise urgently changing passwords—especially simple or reused ones.

Additionally, users are recommended to limit third-party app access to their accounts and regularly check active connections. The incident has confirmed that even partially public data can serve as the basis for large-scale attacks.