New Device Signed In Email Scam: Fake Gmail Login Alert

Share this post on social...

Receiving an email claiming that a new device has signed in to your Gmail account can be alarming. Cybercriminals know that people are likely to react quickly when they believe someone has accessed their email.

Scammers are increasingly using fake “New Device Signed In”, “New Login Detected”, and “Suspicious Sign-In” emails to impersonate Google and trick recipients into revealing their Gmail or Google Account login details.

The goal is usually simple: convince you to click a link, visit a fake Google login page, and enter your email address and password.

However, it is important to understand that Google really does send security alerts when it detects important activity, including sign-ins from new devices. This makes fake alerts particularly convincing.

What Is the New Device Signed In Email Scam?

The New Device Signed In email scam is a phishing campaign designed to imitate a legitimate Google security notification.

The message may claim that your Gmail or Google Account was accessed from an unfamiliar device, browser, location, or IP address.

It may contain wording such as:

  • “New device signed in”
  • “Someone just signed into your account”
  • “Suspicious login detected”
  • “Your account was accessed from a new device”
  • “Was this you?”
  • “Secure your account now”
  • “Verify your identity”
  • “Your account is at risk”

The email usually includes a button such as Review Activity, Secure My Account, Verify Account, or Check Login.

Unfortunately, the button may lead to a fraudulent website designed to look like Google’s login page.

How the Scam Works

The scam generally follows a simple phishing process.

1. You receive a fake security alert

The message is designed to look like an official Google notification. It may contain Google’s logo, familiar colors, security-related wording, and information about a supposed login.

2. The message creates urgency

The scammer wants you to believe that someone is currently trying to access your Gmail account.

You may be told that your account will be suspended, compromised, or permanently locked unless you act immediately.

3. You are encouraged to click a button

The email may contain a link asking you to review the supposed login activity.

This is where the scam becomes dangerous.

4. You are taken to a fake login page

The fraudulent website may closely resemble a genuine Google sign-in page.

It can request your:

  • Gmail address
  • Google Account password
  • Phone number
  • Verification code
  • Recovery information

5. Your information is sent to the scammer

If you enter your password into the fraudulent page, the attacker may receive it.

The stolen credentials could then potentially be used to attempt access to Gmail and other services where the same password has been reused.

Google specifically warns users not to enter their Google Account password after following a link in a suspicious message.

Is Every “New Device Signed In” Email a Scam?

No.

This is an important distinction.

Google legitimately sends security alerts when it detects important activity, including a sign-in from a new device.

Therefore, receiving a new-device notification does not automatically mean that the email is fraudulent.

The safest approach is to verify the activity independently rather than clicking the link inside the email.

If you are concerned about an alert, open your Google Account directly and review your security activity.

Google Account Security Checkup

You can also review devices that have recently accessed your account through Google’s device-management page. Google explains that this allows users to review signed-in devices and sign out of devices they do not recognize.

How to Identify the New Device Signed In Scam

Look for the following warning signs.

1. The email asks for your password

This is one of the biggest red flags.

Google states that Gmail will not ask you to provide your password through email.

Never reply to the message with your password or enter it into a website reached through a suspicious email.

2. The link doesn’t go to Google

Move your mouse over the button or link without clicking it.

Look carefully at the destination address.

Scammers may use domains that contain words such as:

  • Google
  • Gmail
  • Security
  • Account
  • Login
  • Verify

A suspicious website may look convincing while having nothing to do with Google.

3. The message uses unusual urgency

Be cautious when an email tells you that you must act immediately to prevent your account from being deleted or suspended.

Scammers frequently use urgency to prevent people from carefully checking the message.

4. The sender address looks suspicious

Don’t rely only on the sender’s display name.

A message may display a name such as Google Security while the underlying email address belongs to an unrelated domain.

Google recommends checking whether the sender name and email address match and examining suspicious links before clicking them.

5. It asks for verification codes

Never provide Google verification codes to someone who contacts you unexpectedly.

A legitimate security process should not require you to disclose sensitive authentication information to an unknown person through email.

6. The page looks slightly different from Google

Fake login pages may contain:

  • Poor grammar
  • Strange spacing
  • Broken images
  • Unusual domain names
  • Excessive pop-ups
  • Fake security warnings
  • Unnecessary requests for personal information

Some fraudulent pages, however, can look extremely convincing, so appearance alone should never be considered proof that a website is legitimate.

How to Check Whether Someone Actually Signed Into Your Gmail Account

Instead of clicking the button in the email, open your Google Account directly.

Check your Google Account devices

Google allows you to review devices and sessions that have recently accessed your account.

Look for:

  • Devices you don’t recognize
  • Unfamiliar browsers
  • Unexpected locations
  • Unusual sign-in times
  • Security-setting changes
  • Unknown applications with account access

If you find activity that wasn’t yours, follow Google’s account-security instructions.

Google Account Help: Unfamiliar activity

What to Do If You Clicked the Link

Don’t panic.

If you clicked the link but did not enter any information, close the suspicious webpage and avoid downloading anything it offered.

Then review your account security directly through Google.

If you entered your Gmail password, take action immediately.

Change your Google Account password

Go directly to your Google Account rather than returning through the suspicious email.

Change your Google Account password

Choose a strong, unique password that you don’t use on other websites.

Google also recommends changing passwords on other accounts if you reused the compromised password elsewhere.

Review your devices

Check your account for unfamiliar devices and sessions.

Review Google Account devices

Sign out of devices that you don’t recognize.

Enable 2-Step Verification

Two-Step Verification provides an additional layer of protection if your password is stolen.

Google 2-Step Verification

Google also recommends stronger authentication options such as passkeys as part of account protection.

Check your Gmail settings

If you believe someone accessed your account, check for suspicious changes to:

  • Email forwarding
  • Filters
  • Delegation
  • Recovery information
  • Connected applications
  • Security settings

An attacker who gains access to Gmail may attempt to change settings so they can continue receiving copies of your messages.

What If You Can No Longer Sign In?

If a scammer changed your password or otherwise took control of your Google Account, use Google’s official account-recovery process.

Google Account Recovery

Avoid websites or individuals claiming they can “recover” your Gmail account for a fee unless you can independently verify that they are legitimate.

How to Report the New Device Signed In Scam

If you receive a suspicious phishing email in Gmail, Google provides a built-in option for reporting phishing.

Open the message, select the More menu, and choose Report phishing.

Google’s official guide to reporting phishing emails

If you encounter a fraudulent webpage designed to steal personal information, you can also report phishing to Google Safe Browsing.

Google Safe Browsing phishing report

How to Stay Safe From Fake Google Security Emails

Follow these simple security habits:

  • Don’t click security links in unexpected emails.
  • Don’t enter your Google password after clicking an email link.
  • Check your Google Account directly when you receive a security alert.
  • Use a unique password for your Google Account.
  • Enable 2-Step Verification.
  • Consider using a passkey.
  • Regularly review your signed-in devices.
  • Remove unfamiliar third-party applications.
  • Keep your browser and operating system updated.
  • Be suspicious of messages demanding immediate action.
  • Never share verification codes with strangers.
  • Report suspicious phishing emails through Gmail.

Google recommends going directly to the service you want to use rather than following suspicious links in messages.

Final Verdict

The New Device Signed In Email Scam is a phishing threat that takes advantage of legitimate Google security notifications.

Because Google genuinely sends alerts about new-device sign-ins, these fraudulent messages can appear especially believable.

However, you should never assume that an email is genuine simply because it contains Google’s branding or claims that your account has been compromised.

Do not click suspicious links or provide your Gmail password through an email. Instead, open your Google Account directly, review your recent security activity and devices, and take appropriate action if you find anything unfamiliar.

If you have already entered your password on a suspicious website, change it immediately and review your account security.

Frequently Asked Questions

Is the “New Device Signed In” Gmail email real?

It can be. Google legitimately sends security alerts when it detects important account activity, including sign-ins from new devices. However, scammers can imitate these alerts, so verify the activity directly through your Google Account.

Does Google ask for your Gmail password by email?

No. Google advises users not to provide their password through email and warns against entering a password after clicking a suspicious message link.

How can I check if someone logged into my Gmail?

Go directly to your Google Account and review your recent security activity and signed-in devices.

Google Account Devices

What should I do if I entered my Gmail password on a fake website?

Change your Google Account password immediately, review your signed-in devices and security settings, and enable 2-Step Verification.

Can scammers steal my Gmail account with my password?

A stolen password can potentially allow an attacker to attempt to access your Google Account, particularly if additional security protections are not enabled. If you believe your password has been exposed, change it immediately.

Should I click “Secure Account” in the email?

If the email is unexpected, don’t use its link. Open your Google Account directly and check your security activity instead.

How do I report a fake Google security email?

In Gmail, open the suspicious message, select the More menu and choose Report phishing.

Internal Links

Similar Posts

Leave a Reply

Your email address will not be published. Required fields are marked *