IDN homograph attack

Using visually similar characters in domain names to deceive users

Nº Q1626204 ★★

Incomum · História

IDN homograph attack

Using visually similar characters in domain names to deceive users

Texto em inglês

An internationalized domain name (IDN) homograph attack (also homoglyph attack) is a method used by malicious parties to deceive computer users about the identity of the remote system they are communicating with. This is achieved by exploiting the fact that many different characters look alike and the user is unlikely to spot a subtle substitution.

Último preço

—

Preço mínimo

—

Mediana 7 d

—

Vendas 30 d

0

Faixa 30 d

—

Em circulação

0

Cotação

Ver tabela
Datamediana MínMáxvendas

Histórico de vendas

Última venda
—
Média 30 d
—
Mínima 30 d
—
Máxima 30 d
—
Vendas 7 d
0
Vendas 30 d
0

Ainda sem vendas.

Vendas anônimas: sem comprador nem vendedor. Os números contam só vendas entre jogadores.

Na Wikipédia

Texto em inglês Ainda não há artigo no seu idioma: trecho em inglês.

An internationalized domain name (IDN) homograph attack (also homoglyph attack) is a method used by malicious parties to deceive computer users about the identity of the remote system they are communicating with. This is achieved by exploiting the fact that many different characters look alike and the user is unlikely to spot a subtle substitution. For example, the Cyrillic, Greek and Latin alphabets each have a letter ⟨o⟩ that has the same shape but have different code points. This kind of spoofing attack is also known as script spoofing. Unicode supports numerous scripts (writing systems), and, for a number of reasons, similar-looking characters (such as Greek Ο, Latin O, and Cyrillic О) each has its own code point despite being homoglyphs. Their incorrect or malicious usage is potentially an opportunity for security attacks. Thus, for example, a regular user of exаmple.com (exаmple.com) may be lured to click on it unquestioningly as an apparently familiar link, unaware that the third letter is not the Latin character ⟨a⟩ but rather the Cyrillic character ⟨а⟩ and is thus an entirely different domain from the intended one. The registration of homographic domain names is akin to typosquatting, in that both forms of attacks use a similar-looking name to a more established domain to fool a user. The major difference is that in typosquatting the perpetrator attracts victims by relying on natural transposition errors commonly made when a URL is entered manually, while in homograph spoofing the perpetrator deceives the victims by presenting visually indistinguishable hyperlinks. Indeed, it would be a rare accident for a web user to type, for example, a Cyrillic letter within an otherwise English word, turning, say, "bank" into "bаnk". There are cases in which an abusive registration can use both typosquatting and homograph spoofing; the pairs of l/I, i/j, and...

Texto: Wikipédia em inglês, CC BY-SA 4.0. · Imagem: CoolCanuck (CC0) ·

Cartas próximas

Confirmação