Talk

Unmasking a Novel Google Drive Phishing Chain

March 20, 13:30 (CLOUD)

Prepare for a deep dive into an entirely new, “in-the-wild” Google Drive phishing scheme that bypasses traditional defenses. This attack cleverly weaponizes the native Google Drive file-sharing mechanism to launch push-notification phishing—all without the victim ever needing to download a file or explicitly opt-in.

I will be the first to publicly detail the complete, sophisticated attack chain: from the deceptive Google Drive shared-file lure to a legitimate subscription checkout page, culminating in the generation of affiliate program revenue.

What You Will Learn:

Threat Actor Tactics: Unpacking the TTPs and attribution methods used in this campaign.

Technical Deep Dives: Practical OSINT and macOS malware analysis techniques.

The New Phishing Frontier: Understanding a class of “legitimate-looking” phishing that masterfully bridges the gray area between outright fraud and sanctioned marketing.

Actionable Defenses: Attendees will walk away with specific, implementable detections to fortify their organization’s corporate infrastructure against this threat.

Join us to see how attacker ingenuity continues to exploit the trust boundaries in modern cloud ecosystems and corporate affiliate models to generate revenue.

Speaker

Bobby Rauch

Bobby is a Boston, Massachusetts, USA - based senior offensive security engineer and red teamer at a Fortune 500. He has found high severity vulnerabilities in Fortune 500 companies including Microsoft, Apple, and Oracle. His research has been published by the Boston Globe, Brian Krebs, Bleeping Computer, Ars Technica, and other major tech publications. His technical blog posts have been read by more than 200,000 readers, and he has spoken at offensive security conferences around the world including Defcon's Red Team Village, Hardwear.io, m0lecon Turin, and Bsides London. Bobby holds a Bachelor's Degree in Computer Science from MIT, as well as OSCP and OSWE certifications.

https://bobbyrsec.com
https://www.linkedin.com/in/bobby-rauch/
https://x.com/bobbyrsec

Organized by

Technology partners

Partner events

Scroll to Top