Security Threat From International Domain Names

WASHINGTON, DC – Website owners have a new security threat to worry about in the form of malicious websites spoofing the web addresses of other, unsuspecting, established websites, through the use of international domain names as a way to garner sales through brand confusion.

A variation of the "homograph attack" which exploits weaknesses in the methods that certain web browsers display domain names using non-English characters. This new threat is used by malicious hackers and criminals bent on identity-theft by luring unsuspecting surfers into divulging their personally identifying, and other sensitive information.

The attacks are carried out in a way that exploits character resemblance. For instance, the number "0" and the letter "O" are similar enough to fool unwary users into believing that a fraudulent site is actually the website the surfer was trying to reach.

The exploit takes advantage of new policies from the Internet Engineering Task Force and other concerned groups that support domain names registered in certain national alphabets that use non-English characters. This Internationalized Domain Name (IDN) program enables many non-English speakers to more easily use the Internet, but does so at the expense of creating such opportunities for hackers to carry out these malicious attacks.

Declaring the vulnerability "moderately critical," Copenhagen-based Secunia warned users of the affected browsers about the new threat following a demonstration of this most recent style of homograph attack at hacker convention ShmooCon, held recently in Washington.

According to the The Shmoo Group, browsers such as Firefox 1.0, Apple's Safari Version 1.2.5, and Opera's Version 7.54, are all susceptible to the IDN homograph form of attack, however, Microsoft's Internet Explorer browser isn't thought vulnerable, despite its popularity as a target for attacks.

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Mark Spiegler Named XBIZ Talk Guest for 2026 LA Conference

XBIZ is pleased to announce that famed talent agent Mark Spiegler, impresario of the the Spiegler Girls agency, will join an exclusive talk session at XBIZ 2026, the latest edition of North America’s largest adult industry conference, set to take place Jan. 12-15 at the Kimpton Everly Hotel in Hollywood.

Gataca Introduces Passkey Integration

Spain-based age verification provider Gataca has debuted its new passkey integration.

GloryPay Announces New Financial App

European fintech company GloryPay has announced the launch of its financial app for industry members.

Creator of Hentaied, Parasited Launches New Site 'MonsterPorn'

Romero Mr. Alien, the creator of Parasited and Hentaied, has launched new paysite MonsterPorn.com.

House of Lords Approves UK Plan to Outlaw 'Choking' Content

The House of Lords, the U.K.’s upper house of Parliament, has agreed to amendments to the pending Crime and Policing Bill that would make depicting “choking” in pornography illegal and designate it a “priority offense” under the Online Safety Act.

Indiana Sues Aylo Over AV, Calls IP Address Blocking 'Insufficient'

Indiana Attorney General Todd Rokita has filed a lawsuit against Aylo, alleging that the company and its affiliates have violated both Indiana’s age verification law and the state’s Deceptive Consumer Sales Act.

House Committee Amends, Advances Federal AV Bill

A U.S. House of Representatives subcommittee voted Thursday to amend the SCREEN Act, which would make site-based age verification of users seeking to access adult content federal law, and to advance the bill for review by the full Committee on Energy and Commerce.

New AI Companion Platform 'SinfulXAI' Launches

SinfulXAI, a new AI companion platform, has officially launched.

FSC Reveals Results of 2026/2027 Board of Directors Election

The Free Speech Coalition (FSC) has announced the results of its 2026/2027 Board of Directors election.

Report: AVS Group Beefs Up AV After $1.3 Million Fine

Adult content provider AVS Group has begun to institute robust age checks on some of its websites after U.K. media regulator Ofcom last week imposed a penalty of approximately $1.3 million for noncompliance with Online Safety Act regulations, the BBC is reporting.

Show More