Discussion
Loading...

Post

  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Tuta
@Tutanota@mastodon.social  ·  activity timestamp 11 hours ago

🎣 Phishing Alert!

Hackers use lookalike domains to trick you into clicking fake links. These sites steal logins, banking info & more.

🛡️ Stay safe:
🔹 Double-check URLs
🔹 Don’t log in via links
🔹 Bookmark official sites

👉 Check the full guide: https://tuta.com/blog/how-to-prevent-phishing

Stay alert this #CyberSecurityMonth

#CyberSecurity #Phishing

Image of a hacker with the text:

Spot the difference?

citibank.com
VS
citibank.com

The "a" in the second url is a cyrillic letter, directing to a hacker's website.
Image of a hacker with the text: Spot the difference? citibank.com VS citibank.com The "a" in the second url is a cyrillic letter, directing to a hacker's website.
Image of a hacker with the text: Spot the difference? citibank.com VS citibank.com The "a" in the second url is a cyrillic letter, directing to a hacker's website.
  • Copy link
  • Flag this post
  • Block
jfor
@fae2535@mstdn.social replied  ·  activity timestamp 4 hours ago

@Tutanota

But how to remember to look out for that?

  • Copy link
  • Flag this comment
  • Block
Ɩƚ
@Ttragic@mastodon.social replied  ·  activity timestamp 6 hours ago

@Tutanota I've had to warn some elderly friends of similar phishing scams. Usually pretending to be a verified company. Nice share. 👏

  • Copy link
  • Flag this comment
  • Block
Torf und Schnee
@torf@c.im replied  ·  activity timestamp 8 hours ago

@Tutanota Unicode domain names are probably the worst idea for cybersecurity since the flash drive autorun in earlier Windows versions. They probably wanted to be "multicultural" and "non-Western-centric" but ended up with a heaven for scammers with marginal legitimate usage. In principle, any browser and email program should show A BIG RED WARNING in presence of that in URL...

  • Copy link
  • Flag this comment
  • Block
Kerplunk
@Kerplunk@mastodon.scot replied  ·  activity timestamp 9 hours ago

@Tutanota
Hackers use lookalike domains to trick you into clicking fake links.

Troubling, the second url looks completely normal to people like me and a few million other persons who are English native speakers and writers

Citibank users might want to block the second domain in UBlock or if running Linux in etc/hosts

And use 2 factor Authorization for Banking.
Payment systems like PP and Sites like E Bay Amazon

NEVER USE AUTO FILL FOR PASSWORDS. Or save form data in the browser

  • Copy link
  • Flag this comment
  • Block
Ox1de
@Ox1de@mastodon.social replied  ·  activity timestamp 9 hours ago

@Tutanota sneaky! I'm not sure I'd see it if they weren't side by side.

  • Copy link
  • Flag this comment
  • Block
WilsonSmith
@WilsonSmith@c.im replied  ·  activity timestamp 9 hours ago

@Tutanota

That “a” is not just for Cyrillic but on many other FONTS of other programs too.

  • Copy link
  • Flag this comment
  • Block
p̷t̵r̴a̵c̷e̶
@worstprgr@social.tchncs.de replied  ·  activity timestamp 10 hours ago

@nyovaya
@Tutanota the domain RFC doesn't really enforce a specific encoding. So the society adopted a limited subset of ASCII. But there's also a Punycode RFC which allows any UTF character:

https://en.wikipedia.org/wiki/Punycode

  • Copy link
  • Flag this comment
  • Block
Desert Camel
@desertcamel@mastodon.social replied  ·  activity timestamp 10 hours ago

@Tutanota That's why I type banks url.

  • Copy link
  • Flag this comment
  • Block
RejZoR
@rejzor@mastodon.social replied  ·  activity timestamp 10 hours ago

@Tutanota Always visit your important webpages like banking and e-mail services through links obtained through reputable search engines and is best to have them bookmarked afterwards. If you get e-mail about your Citibank, visit the website from your bookmark, not from the received e-mail. If there is something important, it will be on actual Citibank webpage. If not, then it's not that important.

  • Copy link
  • Flag this comment
  • Block
Kaito
@kaito02@mastodon.social replied  ·  activity timestamp 10 hours ago

@Tutanota

"They're the same picture" meme
"They're the same picture" meme
"They're the same picture" meme
  • Copy link
  • Flag this comment
  • Block
Torx
@Torx@social.tchncs.de replied  ·  activity timestamp 11 hours ago

@Tutanota That, indeed, is a though one

  • Copy link
  • Flag this comment
  • Block
Tuta
@Tutanota@mastodon.social replied  ·  activity timestamp 10 hours ago

@Torx Indeed. :)

  • Copy link
  • Flag this comment
  • Block
Cybarbie
@nf3xn@mastodon.social replied  ·  activity timestamp 10 hours ago

@Tutanota @Torx not for a computer

  • Copy link
  • Flag this comment
  • Block
Log in

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.0-rc.3.13 no JS en
Automatic federation enabled
  • Explore
  • About
  • Members
  • Code of Conduct
Home
Login