Security Threat From International Domain Names

WASHINGTON, DC – Website owners have a new security threat to worry about in the form of malicious websites spoofing the web addresses of other, unsuspecting, established websites, through the use of international domain names as a way to garner sales through brand confusion.

A variation of the "homograph attack" which exploits weaknesses in the methods that certain web browsers display domain names using non-English characters. This new threat is used by malicious hackers and criminals bent on identity-theft by luring unsuspecting surfers into divulging their personally identifying, and other sensitive information.

The attacks are carried out in a way that exploits character resemblance. For instance, the number "0" and the letter "O" are similar enough to fool unwary users into believing that a fraudulent site is actually the website the surfer was trying to reach.

The exploit takes advantage of new policies from the Internet Engineering Task Force and other concerned groups that support domain names registered in certain national alphabets that use non-English characters. This Internationalized Domain Name (IDN) program enables many non-English speakers to more easily use the Internet, but does so at the expense of creating such opportunities for hackers to carry out these malicious attacks.

Declaring the vulnerability "moderately critical," Copenhagen-based Secunia warned users of the affected browsers about the new threat following a demonstration of this most recent style of homograph attack at hacker convention ShmooCon, held recently in Washington.

According to the The Shmoo Group, browsers such as Firefox 1.0, Apple's Safari Version 1.2.5, and Opera's Version 7.54, are all susceptible to the IDN homograph form of attack, however, Microsoft's Internet Explorer browser isn't thought vulnerable, despite its popularity as a target for attacks.

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Missouri AG Announces Age Verification Rule to Take Effect Nov. 30

Newly appointed Missouri Attorney General Catherine Hanaway announced Friday that the state's recently approved age verification regulation for adult websites will go into effect on Nov. 30.

Aylo, Woodhull Freedom Foundation to Host 'Online Censorship' Event

Aylo and Woodhull Freedom Foundation will co-host a virtual panel addressing online censorship on Sept. 30.

Severe Sex Films Relaunches Site Through YourPaysitePartner

Severe Sex Films has relaunched its official website through YourPaysitePartner (YPP).

Judge Awards Plaintiffs Over $400K in Attorneys Fees in Derek Hay Civil Case

California Superior Court Judge Gail Killefer has awarded former clients of LA Direct Models over $400,000 in attorneys fees and court costs, to be paid by agency founder Derek Hay.

ChickPass Rebrands as 'ChickPass Cinematic Universe'

ChickPass has announced that it has rebranded its network of sites as ChickPass Cinematic Universe.

Brazilian Adult Industry Association ABIPEA Launches

Brazilian Association of the Adult Entertainment Industry and Professionals (ABIPEA) has officially launched its organization.

New Adult Social Media Platform 'Havven' Opens Beta Phase

Havven, a new adult social media platform, has opened its beta phase and will officially launch Oct. 5.

Former Backpage CEO Carl Ferrer Sentenced to 3 Years Probation, $40,000 Fine

Former Backpage.com CEO Carl Ferrer was sentenced in federal court today to three years' probation and a $40,000 restitution fine for a conspiracy conviction related to money laundering through the defunct website.

Pineapple Support to Launch 'Wellbeing by PS' Initiative

Pineapple Support has announced its Wellbeing by PS initiative, naming new team member Amber Madden to head the project.

Playboy Wins $81 Million Judgment in Chinese Licensing Arbitration

Playboy Inc. was awarded $81 million in damages on Monday by the Hong Kong International Arbitration Centre, in a licensing dispute with former partner New Handong Investment (Guangdong) Co. Ltd.

Show More