{"id":161,"date":"2017-04-18T20:33:59","date_gmt":"2017-04-18T20:33:59","guid":{"rendered":"http:\/\/shoelessdesigns.com\/blog\/?p=161"},"modified":"2017-04-18T21:05:38","modified_gmt":"2017-04-18T21:05:38","slug":"phishing-attack-uses-known-domain-urls","status":"publish","type":"post","link":"https:\/\/shoelessdesigns.com\/blog\/phishing-attack-uses-known-domain-urls\/","title":{"rendered":"Phishing Attack Uses Known Domain URLs"},"content":{"rendered":"<p>As you know it&#8217;s always a good idea to never follow any links on pages or in email messages that you don&#8217;t trust 100%.\u00a0 Best practice is to always open a new browser window or tab and manually type the address in the address bar.\u00a0 That couldn&#8217;t be more important now with the phishing attack that uses unicode to register domains that look identical to real domains. The fake domains look exactly like the real domain URL in the address bar and can fool users into signing into a fake website which then gives the login details to an attacker.<\/p>\n<h2>Firefox fix:<\/h2>\n<p>In your firefox location bar, type \u2018about:config\u2019 without quotes.<\/p>\n<p>Do a search for \u2018punycode\u2019 without quotes.<\/p>\n<p>You will see a message that &#8220;This might void your warranty&#8221; and an &#8220;I accept the risk&#8221; button &#8211; click that.<\/p>\n<p>You should see a parameter titled:\u00a0<strong>network.IDN_show_<wbr \/>punycode<\/strong><\/p>\n<p>Change the value from\u00a0<strong>false\u00a0<\/strong>to\u00a0<strong>true. <\/strong>( double click that line )<strong><br \/>\n<\/strong><\/p>\n<h2>Chrome fix:<\/h2>\n<p>Chrome is said to have a release coming out &#8211; if it&#8217;s not already. I believe <a href=\"https:\/\/chrome.google.com\/webstore\/detail\/punycode-alert\/odbbcdajedbapmgpgfacfigdpbdahenh?hl=en-GB\" target=\"_blank\">this extension<\/a> should work too &#8211; or search for <strong>Punycode alert<\/strong> in the Chrome extension store.<\/p>\n<p>Until you have a fix on your browser if you are on a site and want to make sure it&#8217;s the real site before you login or submit sensitive information, you can copy the URL in the location bar and paste it into Notepad or TextEdit on Mac.<\/p>\n<p>&nbsp;<\/p>\n<p>Read more info on the Wordfence.com site&#8217;s blog &#8211;\u00a0 <a href=\"https:\/\/www.wordfence.com\/blog\/2017\/04\/chrome-firefox-unicode-phishing\/\" target=\"_blank\">here <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>As you know it&#8217;s always a good idea to never follow any links on pages or in email messages that you don&#8217;t trust 100%.\u00a0 Best practice is to always open a new browser window or tab and manually type the address in the address bar.\u00a0 That couldn&#8217;t be more important now with the phishing attack&hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[6],"tags":[],"_links":{"self":[{"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/posts\/161"}],"collection":[{"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/comments?post=161"}],"version-history":[{"count":8,"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/posts\/161\/revisions"}],"predecessor-version":[{"id":169,"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/posts\/161\/revisions\/169"}],"wp:attachment":[{"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/media?parent=161"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/categories?post=161"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/shoelessdesigns.com\/blog\/wp-json\/wp\/v2\/tags?post=161"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}