Skip to main content

Digital Trends may earn a commission when you buy through links on our site. Why trust us?

Google makes important Workspace change to prevent phishing

Google has made an important change to how it displays comment notifications for Workspace apps, like Docs, to prevent phishing and protect users from malware. This change makes it safer for users to collaborate remotely without worrying about hacks and other types of malicious attacks, and the change is notable at a time when more people are working, learning, and collaborating from home during the global health pandemic.

With the new notification change, Google is now including the full email address of the collaborator in its notification when you receive an @mention, making it easier to safely identify your collaborator and trusted contacts.

Chromebook2 on table.
Image used with permission by copyright holder

In the past when a collaborator inserts an “@mention” note to Google Workspace apps, you would get an email in your inbox notifying you that someone has made a change to your document. The problem, however, is that the email notification only contains the commenter’s name and not their email address, making it easy for malicious attackers to target users pretending to be someone who you know and trust. Google’s change should make it easier for you to confirm your collaborator by being able to see the commenter’s email address.

Recommended Videos

“When someone mentions you in a comment in a Google Workspace document, we send you an email notification with the comment and the commenter’s name,” Google explained of the change. “With this update, we are adding the commenter’s email address to the email notification.”

Please enable Javascript to view this content

Google is rolling out the feature now, and it could take up to 15 days for the update to show up for everyone. There are no additional steps users or IT administrators will need to take, according to Google’s Workspace support document. The feature will roll out to all Google accounts, including personal Google accounts as well as legacy G Suite and Business accounts.

“We hope that by providing this additional information, this will help you feel more confident that you’re receiving a legitimate notification rather than a spam or phishing attempt by a bad actor,” Google added.

As more companies begin to or continue to adopt hybrid and remote work environments, technology companies are also stepping up their efforts to help prevent malicious attacks. In addition to Google’s latest efforts to protect Workspace users, last year Microsoft released a new feature for its Teams collaboration platform that makes it more difficult for hackers to steal your personal data by sending look-alike web pages. Microsoft stated that phishing is responsible for nearly 70% of data breaches in its Digital Defense report, and recent changes made by tech companies like Google will ultimately help to keep users safe so as long as they remain vigilant and practice basic security hygiene when it comes to handling unknown links and emails from unknown senders.

Chuong Nguyen
Silicon Valley-based technology reporter and Giants baseball fan who splits his time between Northern California and Southern…
This new Google Chrome security warning is very important
The Google Chrome logo on a black phone which is resting on a red book

Google is changing how it warns its users about suspicious files on Chrome by adding new full-page warnings and cloud scanning regarding suspicious downloads, according to Windows Report. This is an attempt to explain more precisely why it blocks specific downloads. Google says that the AI models will divide the warning into two categories: "suspicious" or "dangerous."

The new warning system primarily benefits those using the anti-phishing Enhanced protection feature. The files users upload to the cloud for an automatic scan and those that undergo a deep scan are 50 times more likely to have the AI flag them as malware.

Read more
A surprising new competitor to Google Docs just made its debut
The Proton Mail email app running on an iPad.

Proton, known for its popular email client, has always made it clear that it takes user privacy seriously. And that's the defining feature of a new piece of software in its lineup calle dProton Docs, which the company announced in a blog post on Wednesday.

The latest addition launching today promises to push the envelope and encrypt the file, cursor movements, and keystrokes.

Read more
Google is cracking down on internet security in this big way
Connection is not private warning from Google.

Google is making some serious changes to digital certificate security on the web, the company announced on its Security blog. The big news is that Google will no longer trust certificates from two large security firms -- Entrust or AffirmTrust -- due to repeated security lapses.

According to Google, the companies, which are Certificate Authorities (CA), have demonstrated patterns of unmet improvement commitments, compliance failures, and no measurable progress in how fast the company responds to publicly disclosed incident reports.

Read more