They use sponsored Google ads to push these sites to the top of search results
The fake URLs often have slight differences, making them hard to detect (See above pic)
Once guests enter the fake site, hackers can steal sensitive data and contact them directly, falsely requesting new credit card information
The next question on most people's list would be'How can we stop this?'.While Google does its best to keep up with scammers' evolving techniques, it may sometimes be slow to react.Here are Matthijs' suggestions:
Use bookmarks for login pages - train your team never to use Google (or search engines) to find login pages
Enforce two-factor authentication - for ALL your employees
Review which users have access to data in your system - regularly