C:\Users\mr.d0x> whoami_

Phishing With Google's Domain

October 20, 2021

A quick and easy way to bypass link analyzers by hiding behind Google’s domain.


The way I ran into this bug (or feature, you can decide for yourself) was completely by accident. I wasn’t hunting for bugs on Google this time, I actually needed to use the Google Translate service. I knew there was a way to translate domains I just couldn’t remember how. After a quick search it turns out all you have to do is type in the domain name and you get a link to the translated domain as shown below.


Masquerading Google’s Domain

Clicking on the link shown in the previous image will take you to the translated domain with an interesting domain name.


Domain Name Format

The translated domain is showing under * and so the format looks something like this:

Removing The Google Translate Bar

The only issue we have left is that annoying menu bar at the top of the screen. I played around with the URL was able to remove the menu bar.

Reverting Back To The Original Domain Name

One last thing to point out is that when a user clicks on another link within the domain, the URL will revert back to the real domain name.



This was a quick and easy way to hide your domain behind Google’s domain to bypass domain filtering, domain reputation checks etc.

If you’ve been keeping up with my posts you know I generally don’t report phishing-related bugs (or features) to companies as they almost never pay out for it.