Earlier quoted context omitted.
It's not just the elderly generation though. Young people mostly use apps and might barely interact with an actual browser. Big browsers de-emphasize the URL bar more and more. Yes, you and I and probably everyone on HN will never have a problem with this, but significant portions of the population will. I think it's a hard problem.
Isn't the simple solution to this to encourage everyone to use the USPS app (and apps for banking, etc.)? Most young people probably do this already.
Phishing Campaigns Targeting USPS See as Much Web Traffic as the USPS Itself
71–75 of 75 posts
Re: Phishing Campaigns Targeting USPS See as Much Web Traffic as the USPS Itself
#72Earlier quoted context omitted.
Isn't the simple solution to this to encourage everyone to use the USPS app (and apps for banking, etc.)? Most young people probably do this already.
This just moves the mimicry to the app stores. Admittedly there's some curation but it's far from perfect
Re: Phishing Campaigns Targeting USPS See as Much Web Traffic as the USPS Itself
#73It might not change anything, but I think the criminal penalties for scams need to be significantly raised. The idea of reaching out to someone you don't know at all and attempting to steal their money by lying and betraying their confidence is morally disgusting. The type of people who can do this hundreds or thousands of times a day are criminals of the worst and least redeemable kind, yet if caught they would like…
Re: Phishing Campaigns Targeting USPS See as Much Web Traffic as the USPS Itself
#74Earlier quoted context omitted.
The Internet has been around long enough at this point. Maybe your parents might never be able to read a URL and there will always be people who get scammed. But we should be taking the obvious steps like enforcing government domains on .gov . Attacks and scams are getting more sophisticated, so I hope when I'm elderly I can atleast check the .gov portion and know it's an actual government website.
It's not just the elderly generation though. Young people mostly use apps and might barely interact with an actual browser. Big browsers de-emphasize the URL bar more and more. Yes, you and I and probably everyone on HN will never have a problem with this, but significant portions of the population will. I think it's a hard problem.
You could do a similar thing with banks. Require them to use a .bank TLD (or .bank.us, .bank.uk, etc.), only let actual, regulated banks register them, and give them special decorations. Use eminent domain if those domains are already taken.
Unlike EV cert validation, it would actually mean something if you restricted decorations to specific known regulated groups.
Re: Phishing Campaigns Targeting USPS See as Much Web Traffic as the USPS Itself
#75Earlier quoted context omitted.
This just moves the mimicry to the app stores. Admittedly there's some curation but it's far from perfect
Just to be clear, the two options in this false equivalence are "no fake USPS app has ever been seen, though it is possible in theory" vs "scam websites see as much traffic as USPS itself".
If I search for whatsapp, in the sponsored section there are 10+ apps with white speech-bubble style icons on green backgrounds that aren't WhatsApp