Gmail Introduces QR Code-Based Two-Step Verification to Enhance Security
Google has announced a major update to Gmail login security by introducing QR code-based two-step verification. This new method will replace the traditional six-digit SMS verification code, aiming to reduce cyber fraud such as phone hacking, SIM swapping, and phishing attacks.

Why Google is Making This Change?
To combat cyber fraud and prevent the creation of fake accounts, Google initially introduced two-step verification, where users received a six-digit code via SMS. However, cybercriminals have exploited this system to carry out scams, including SIM swapping and phishing, leading to security breaches.

Preventing Fraud and Cyber Scams
One of the key reasons behind this decision is to tackle scams like traffic pumping or toll fraud. In such scams, cybercriminals misuse telephone networks or Voice over Internet Protocol (VoIP) systems, tricking users into paying unnecessary and illegal toll charges. Fraudsters earn money from each message sent, making SMS-based authentication a vulnerable target.
Ross Richendrfer, a spokesperson for Gmail, stated that SMS codes pose security risks for users. Google is working to strengthen security measures and prevent hacking attempts. With QR authentication, Gmail accounts will become significantly more secure than before.
How Cybercriminals Hack Gmail Accounts
Rahul Mishra, a cybersecurity advisor to the Uttar Pradesh Police, highlighted various methods cybercriminals use to hack Gmail accounts:
- Phishing Emails and Messages
Hackers send phishing emails or messages pretending to be from trusted organizations like banks or government agencies. These messages often contain malicious links designed to steal login credentials or install malware on users’ devices. - Using Public Devices for Login
Logging into Gmail on public devices, such as library computers or office Wi-Fi, poses a risk. If users forget to sign out, hackers can gain access to their email accounts and passwords. - Guessing Weak Passwords
Many users use easily guessable passwords, such as “12345678” or their birthdate. Hackers can exploit this by attempting common password combinations based on personal information.
What to Do If Your Gmail Account is Hacked?
If your Gmail account is compromised, follow these steps to recover it:
Step 1: Go to the Gmail account recovery page.
Step 2: Enter your email ID and try using your old password.
Step 3: If you forget the password, answer security questions for verification.
Step 4: Use your recovery email or mobile number to receive a security code.
Step 5: Enter the security code and create a new password.
Step 6: Sign in with your new password and update your security settings.
With the introduction of QR code authentication, Google aims to enhance Gmail security and protect users from cyber threats. Users are encouraged to stay vigilant and adopt strong security measures to safeguard their email accounts.