Close Menu
Computing.net
    Facebook X (Twitter) Instagram
    Computing.netComputing.net
    • News
      1. AI
      2. Crypto
      3. Gaming
      4. Hardware
      5. Security
      6. Software
      7. View All

      Anthropic’s COBOL Automation Tool Triggers IBM Stock Plunge and Crypto Market Decline

      February 24, 2026

      AI Trading Bot Loses $441K in Crypto After Decimal Point Mistake

      February 23, 2026

      Tesla (TSLA) Stock: Goodbye Sedans, Hello Robots in Dramatic Production Shift

      January 29, 2026

      Palantir Technologies (PLTR) Stock: Why Bears May Be Wrong About Valuation Concerns

      January 29, 2026

      SUI Token Rallies 40% Following Major Staking Event and CME Futures Announcement

      May 12, 2026

      Chainlink (LINK) Surges to $10.40 as Network Activity Hits Eight-Month Peak

      May 12, 2026

      Dogecoin Whales Ramp Up Accumulation as DOGE Eyes Critical Breakout Levels

      May 12, 2026

      Bitcoin Holds $81K While Burry Flags Nasdaq Bubble and Oil Surges Past $105

      May 12, 2026

      Hamster Kombat: Unraveling TON’s Gaming Phenomenon

      August 7, 2024

      W-Coin: Exploring the Latest Telegram Tap-to-Earn Phenomenon

      August 7, 2024

      Hamster Kombat: 300 Million Players & Counting, HMSTR Token Airdrop Soon!

      July 31, 2024

      Hamster Kombat Developers Work with TON Team on Airdrop Solution

      July 30, 2024

      Nothing Expands Product Line with New AI Feature & Phone Update

      July 31, 2024

      Security Audit Reveals Concerns in Atari’s Blockchain Game on Base

      August 6, 2024

      SideWinder Group Targets Maritime Facilities in New Cyber Espionage Campaign

      July 30, 2024

      OAuth Implementation Flaw Exposes Millions of Websites to XSS Attacks

      July 30, 2024

      Hamster Kombat Players Face Growing Cybersecurity Threats

      July 25, 2024

      Anthropic’s COBOL Automation Tool Triggers IBM Stock Plunge and Crypto Market Decline

      February 24, 2026

      Cookie Crumble: Google Halts Plans to Eliminate Third-Party Cookies in Chrome

      July 23, 2024

      Big Brother is Watching: Apple’s Creepy New Ad Urges iPhone Users to Ditch Chrome

      July 23, 2024

      Nvidia Stock Soars to New Record at $219.44 Ahead of May 20 Earnings

      May 12, 2026

      Rocket Lab Shares Surge Past $120 Following Wave of Analyst Upgrades

      May 12, 2026

      GM Shares Decline Following 600 IT Layoffs Amid Strategic AI Workforce Transformation

      May 12, 2026

      SES Delivers €847M Q1 Performance as Intelsat Integration and Aviation Deals Fuel Expansion

      May 12, 2026
    • How To

      Batch Files: Tokens and Delimiters (FOR Loops)

      July 31, 2024

      Types of Ethernet Cabling & Electrical Low Voltage Wiring

      July 9, 2024

      What You Should Know About .JSON File Extension

      January 10, 2023

      Bkup File Extension

      November 19, 2022

      HEIC File Extension

      November 19, 2022
    • Office
      1. Excel
      2. Google Sheets
      3. View All

      How to Convert Column List to Comma Separated List in Excel

      July 24, 2024

      How to Find the Last Monday of the Month in Excel

      July 24, 2024

      Convert Bytes to MB or GB in Excel: 3 Methods!

      July 24, 2024

      How to Remove Characters from Right in Excel

      July 30, 2023

      How to Subtract in Google Sheets: Complete Guide

      July 31, 2024

      Bullet Points in Google Sheets

      January 20, 2022

      Sort by Date in Google Sheets

      January 18, 2022

      Google Sheets Timestamp

      January 17, 2022

      How to Subtract in Google Sheets: Complete Guide

      July 31, 2024

      How to Convert Column List to Comma Separated List in Excel

      July 24, 2024

      How to Find the Last Monday of the Month in Excel

      July 24, 2024

      Convert Bytes to MB or GB in Excel: 3 Methods!

      July 24, 2024
    • Answers
    • About
    • Contact
    Facebook X (Twitter)
    Computing.net
    News

    Gmail Dot Alias Flaw Exploited in Sophisticated Robinhood Phishing Campaign

    Oliver DaleBy Oliver DaleApril 28, 2026
    Twitter LinkedIn Email Telegram
    Twitter LinkedIn Email Telegram

    Contents:

    Toggle
    • Key Takeaways
    • Technical Details of the HTML Injection Method
    • Official Statement from Robinhood

    Key Takeaways

    • Attackers leveraged Gmail’s dot alias functionality to generate fraudulent Robinhood security alert emails appearing authentic
    • Criminals established Robinhood accounts using email addresses with altered dot placements to manipulate automated messaging
    • Malicious HTML code was inserted into the “device name” input field to embed fraudulent links within genuine Robinhood messages
    • These fraudulent messages successfully passed SPF, DKIM, and DMARC authentication protocols, complicating detection efforts
    • Robinhood verified that their infrastructure remained secure with zero impact to user funds or sensitive information

    A sophisticated phishing operation targeted Robinhood customers through emails appearing to originate from the platform’s legitimate mail infrastructure. These messages displayed warnings about unauthorized device access and contained buttons directing recipients to fraudulent login portals.

    NEW: ROBINHOOD WARNS THAT FAKE “YOUR RECENT LOGIN TO ROBINHOOD” EMAILS FROM noreply@robinhood.com WERE SENT SUNDAY VIA ABUSED ACCOUNT CREATION FLOW – DELETE AND AVOID LINKS pic.twitter.com/NUATOZMEwh

    — DEGEN NEWS (@DegenerateNews) April 27, 2026

    Social media platforms first surfaced reports of the campaign on Sunday, with numerous individuals posting evidence of the deceptive communications.

    Cybersecurity expert Alex Eckelberry verified the operation stemmed from exploitation rather than a data breach. The attack combined two distinct vulnerabilities: Gmail’s handling of dot characters in addresses and weaknesses in Robinhood’s user registration system.

    Robinhood's email service SendGrid (not on 𝕏 🤦‍♂️)@twilio is hacked or somehow verified a robinhood.com domain sending out phishing emails @RobinhoodApp @AskRobinhood

    Received: from http://o2.email.robinhood.com (http://o2.email.robinhood.com. [50.31.40.73]) pic.twitter.com/keMphoUU1y

    — David Gobaud (@davidgobaud) April 27, 2026

    Gmail’s infrastructure disregards dots within email usernames. Therefore, “jane.smith@gmail.com” and “janesmith@gmail.com” deliver to the identical mailbox. Robinhood, conversely, recognizes these as distinct account identifiers.

    Criminals exploited this discrepancy by registering Robinhood profiles with modified versions of victim email addresses featuring removed dots. This manipulation triggered Robinhood’s automated notification system to deliver messages to the intended target’s actual inbox.

    Technical Details of the HTML Injection Method

    To insert malicious links within these automated communications, threat actors injected HTML markup into Robinhood’s discretionary “device name” input during registration. Gmail’s email client interpreted this markup as legitimate formatting code.

    This process generated an authentic message originating from “noreply@robinhood.com” containing deceptive warnings and functional phishing elements. These emails successfully cleared all conventional email verification protocols.

    Eckelberry emphasized that merely accessing the fraudulent website posed minimal danger. Actual compromise occurs exclusively when users submit credentials or authentication information through the fake interface.

    Robinhood’s customer support presence on X addressed the situation on Monday. The phishing messages carried the subject line “Your recent login to Robinhood.”

    Official Statement from Robinhood

    The financial platform characterized the incident as exploitation of their registration workflow rather than a security compromise. Robinhood emphasized that customer information and account balances remained completely unaffected.

    Robinhood recommended users remove the suspicious emails immediately and refrain from interacting with questionable links. Individuals who engaged with the phishing content received instructions to reach out to Robinhood exclusively through verified channels within the official application or website.

    This incident follows blockchain security organization Hacken’s findings identifying phishing and social engineering tactics as the primary cryptocurrency threat during Q1 2026.

    Hacken’s analysis indicated these attack methodologies resulted in approximately $306 million in financial damages throughout the quarter’s initial three months.

    Robinhood has yet to disclose planned modifications to their account registration procedures following this security incident.

    Share. Twitter LinkedIn Email Telegram
    Oliver Dale
    • Website
    • X (Twitter)
    • LinkedIn

    Editor-in-Chief of Computing.net and founder of Kooc Media, A UK-Based Online Media Company. Believer in Open-Source Software, Blockchain Technology & a Free and Fair Internet for all. His writing has been quoted by Nasdaq, Dow Jones, Investopedia, The New Yorker, Forbes, Techcrunch & More. Contact Oliver@blockonomi.com

    Related Posts

    Senate Releases Complete Clarity Act Text: Crypto Regulation Bill Faces Critical Vote

    May 12, 2026

    Bitcoin Holds $81K While Burry Flags Nasdaq Bubble and Oil Surges Past $105

    May 12, 2026

    Binance AI Systems Thwart $10.5 Billion in Cryptocurrency Fraud Attempts Over 15 Months

    May 12, 2026

    Galaxy Digital Partners with Sharplink on $125M Ethereum DeFi Yield Strategy

    May 12, 2026

    Kiyosaki’s 2026 Economic Forecast: His Investment Strategy for Silver, Bitcoin and Ethereum

    May 12, 2026

    Brent Crude Surges Past $100 Following Trump’s Dismissal of Iran Proposal

    May 11, 2026
    Add A Comment

    Comments are closed.

    Latest

    Nvidia Stock Soars to New Record at $219.44 Ahead of May 20 Earnings

    May 12, 2026

    Rocket Lab Shares Surge Past $120 Following Wave of Analyst Upgrades

    May 12, 2026

    GM Shares Decline Following 600 IT Layoffs Amid Strategic AI Workforce Transformation

    May 12, 2026

    SES Delivers €847M Q1 Performance as Intelsat Integration and Aviation Deals Fuel Expansion

    May 12, 2026

    Trump Dismisses Iran Peace Proposal — Oil Markets React as Hormuz Remains Restricted

    May 12, 2026
    • Facebook
    • Twitter

    Latest Reviews

    Meta Platforms Shares Tumble 8% Despite Strong Q1 Performance Amid AI Investment Surge

    April 30, 2026

    Flush.com Review: Casino & Sportsbook With 275% Welcome Bonus

    March 7, 2026

    Katsubet Review: Crypto Casino With 300% Welcome Bonus & Free Spins

    March 7, 2026

    7Bit Review: Crypto Casino With 325% Bonus & 250 FS

    March 7, 2026

    Mega Dice Review: Crypto Casino With 200% Bonus & 50 Free Spins, Legit?

    March 7, 2026


    Home / Privacy Policy / Terms & Conditions

    Computing.net © 1996 - 2026 Kooc Media Ltd. All rights reserved. Registered Company No.05695741

    Type above and press Enter to search. Press Esc to cancel.