Security researchers have uncovered ongoing phishing attacks that leverage Google Drive. The latest attack builds on previous techniques by adding advanced code obfuscation. The new attack again uses phishing web pages hosted on Google Drive to lend them an air of credibility in order to fool even security trained users. By using Google Drive, attackers are already making it difficult for security solutions to detect the attack using IP address-based blacklisting. This latest attack mucks up the security detection process by hiding the HTML source code and taking in-line scanning off the table.”]
Source: https://www.darkreading.com/cloud/new-phishing-campaign-leverages-google-drive

