Earlier quoted context omitted.
Isn’t it time to see more widespread use of encryption in emails? What I’m pertaining to is signing emails to make sure they are coming from correct source.
Encryption doesn’t help Unicode homoglyph attacks. I can send you encrypted messages all day long from google.com, even though they’re not coming from who you think they are.
Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
11–20 of 37 posts
Re: Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
#12Ask HN: How are other VCs dealing with this?
Pretty safe if people actually follow procedures
Re: Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
#13Re: Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
#14Test with the fake Apple domain https://www.xn--80ak6aa92e.com/ .
See "Phishing with Unicode Domains" for more information: https://www.xudongz.com/blog/2017/idn-phishing/ .
Re: Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
#15Earlier quoted context omitted.
Isn’t it time to see more widespread use of encryption in emails? What I’m pertaining to is signing emails to make sure they are coming from correct source.
Encryption doesn’t help Unicode homoglyph attacks. I can send you encrypted messages all day long from google.com, even though they’re not coming from who you think they are.
Re: Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
#16Firefox users: be sure to set "network.IDN_show_punycode" to "true" in about:config. Test with the fake Apple domain https://www.xn--80ak6aa92e.com/ . See "Phishing with Unicode Domains" for more information: https://www.xudongz.com/blog/2017/idn-phishing/ .
Re: Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
#17I'm thinking it might have quite likely been people from inside both the VC firm and the startup to be funded, collaborating to phish the money away from their companies...
Re: Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
#18Firefox users: be sure to set "network.IDN_show_punycode" to "true" in about:config. Test with the fake Apple domain https://www.xn--80ak6aa92e.com/ . See "Phishing with Unicode Domains" for more information: https://www.xudongz.com/blog/2017/idn-phishing/ .
Re: Attackers Used Look-Alike Domains to Steal $1M from a Chinese VC
#19Firefox users: be sure to set "network.IDN_show_punycode" to "true" in about:config. Test with the fake Apple domain https://www.xn--80ak6aa92e.com/ . See "Phishing with Unicode Domains" for more information: https://www.xudongz.com/blog/2017/idn-phishing/ .
Also I'm not sure what effect that will have for Chinese users. It might make many of their URLs look strange to them.
See: https://www.reddit.com/r/firefox/comments/7ul9p3/why_is_netw...