New issue
Advanced search Search tips

Issue 804085 link

Starred by 1 user

Issue metadata

Status: WontFix
Owner: ----
Closed: Jan 2018
EstimatedDays: ----
NextAction: ----
OS: ----
Pri: ----
Type: Bug-Security



Sign in to add a comment

Security: Winning iPhoneX

Reported by qolf...@gmail.com, Jan 20 2018

Issue description

VULNERABILITY DETAILS
When browsing online using google chrome another pop up window with Google logo on it, it appear as real telling me that I won iPhoneX for being a loyal Google customer after answering some survey questions it goes to 4th screen load asking for my email, name, and bank details convincing to claim the iPhoneX reward. 

With the URLs below:

First: http://search-engine.awarded.date/todays-winner/?winner=124.106.137.154&cc=PH&voluumdata=deprecated&eda=deprecated&cep=7VmfNQfd-HV2y51cJW7USrAEgbdsStfFk2o4-71U1Oi6ZYSnRhCTCrsx6Kwv7FWL4RnbJiEAFhLSanFpjr-NOB4UZU09A95PADEk3jOBVxolxV0v3jpfn8lOMRioYF_lfm9ImVNFcZC4oqv3FyRKLdaQVSyXVWqYoG1jv3EwV_NbAA7SmFf2CpsHxmP5OF6OF2SXb-7XDbe7NY_60r_HjvXaO-K25LbS4ZpyLCtnvUQaJe-uIyKzQUMsv3f6LVX2DIFP6AEeo5mtJjx-e5D2hWN81BzGN_iBnx9hnCzwVpxi-qyrzgBNAMLLH8-uDDtdUfu-ivUGt45gFZTbsHbhd2BsE_pmzHp_KnnBALPgdhgCuKpF77sRM66YOrBZn4vkWsJstbG03i6vji0oY0X-Hg&q=10&ci=250&cn=General/Internet/File%20sharing&ff=Desktop/Notebook&sr=1600x1200&ab=0&di=3&i=Philippine%20Long%20Distance%20Telephone

2nd URL : Missed

3rd URL: https://radiospick.net/iphonex15/?transaction_id=102b7d3db063cea5b2b76b98717d73

4th URL: https://radiospick.net/iphonex15/payment.php

Please see the attach file photo. This is a scammer not yet hauled and continuously roaming around online. If you read this post: https://www.ripoffreport.com/reports/radiospick/so-paulo-sao-paulo/radiospick-they-took-62-dollars-from-my-account-saying-only-pay-1-for-i-ph-x-so-paulo-b-1422915

If 'radiospick' responsible for using your Google trademark this must be stopped. For other website to stop taking opportunity to sell their non-sense antivirus like this guy: https://trojan-killer.net/tag/get-the-new-iphone-x-for-only-1-scam/

VERSION: Google Chrome

REPRODUCTION CASE: unknown

Type of crash: none
Crash State: none
Client ID (if relevant): https://bugs.chromium.org/p/chromium/issues/entry?template=Security%20Bug

 
google rewards.png
44.6 KB View Download
google rewards 2.png
43.3 KB View Download
google rewards.png
44.6 KB View Download

Comment 1 Deleted

Status: WontFix (was: Unconfirmed)
Thanks for the report.

This does not reflect a security bug in Google Chrome. Unfortunately, misleading ads are an epidemic on the web and as soon as one is squashed, another one appears.
(I've sent this URL over to our brand protection team.)

Comment 4 by qolf...@gmail.com, Jan 23 2018

Thank you Elawre for a response about my concern.

Cheers!
Project Member

Comment 5 by sheriffbot@chromium.org, Apr 29 2018

Labels: -Restrict-View-SecurityTeam allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment