PayPal Account Security Measures

ubuntu_fan ulist at gs1.ubuntuforums.org
Tue Feb 15 14:02:50 UTC 2005


Right, I've jsut worked out what I think is going on here.

The 'recent IDN spoof exploit' (http://www.shmoo.com/idn/homograph.txt)
listed a paypal url in the example, so I'm guessnig someone has just
posted it to try some phishing...

>From the url above:

"Clicking on any of the two links in the above webpage using anything
but IE 
should result in a spoofed paypal.com webpage.

The links are directed at "http://www.pаypal.com/", which the
browsers 
punycode handlers render as www.xn--pypal-4ve.com.

This is one example URL - - there are now many ways to display any
domain name 
on a browser, as there are a huge number of codepages/scripts which
look very 
similar to latin charsets."

a.


-- 
ubuntu_fan




More information about the ubuntu-users mailing list