Главная
Study mode:
on
1
Intro
2
Classic Phishing Obfuscations
3
Homographs
4
Problem: DNS is ASCII
5
Likely Sources for Homoglyphs
6
Slashes?
7
Homoglyph Attack Generator Demo
8
Protections Implemented by Browsers
9
Defenses by Registrar
10
Approach
11
Test Strings
12
Facebook
13
Canonicalization Errors?
14
Name Spoofing
15
Right to left?
16
What about file names?
17
Useful Sites
18
References
Description:
Learn about advanced phishing techniques using punycode and homoglyph attacks in this 38-minute conference talk from AIDE 2012. Explore classic URL obfuscation methods, homographs, and the challenges posed by ASCII-based DNS. Discover likely sources for homoglyphs, examine a homoglyph attack generator demo, and understand browser and registrar protections. Investigate canonicalization errors, name spoofing, right-to-left text manipulation, and file name vulnerabilities. Gain insights into useful resources and references for further study on URL obfuscation and phishing prevention.

Out of Character Use of Punycode and Homoglyph Attacks to Obfuscate URLs for Phishing

Add to list
0:00 / 0:00