Globalized domains to up phishing attacks

 

Summary

Launch of local language domain names not likely to significantly impact spam rates but can lead to more phishing attacks, warn security experts.

Events

Echelon 2012
June 11 and 12, 2012

University Cultural Centre, National University of Singapore

Startup Asia Jakarta 2012
June 7 and 8, 2012

12th Floor, Annex Building, Wisma Nusantara Complex, Jl. M.H. Thamrin No. 59 Jakarta 10350, Indonesia

MMA Forum Singapore
April 23-25, 2012

Grand Hyatt Singapore

The upcoming launch of internationalized domain names (IDNs) is unlikely to have a significant impact on spam levels but may deliver a spike in phishing, security experts warned.

Momentum to introduce IDNs has stepped up over the last month, following moves by the ICANN (Internet Corporation for Assigned Names and Numbers) that introduced a fast-track process to allow countries and territories to offer non-Latin top-level domain (TLD) names.

Current domain names are based on the ASCII (American Standard Code for Information Interchange) script, which is based on the English alphabet.

In Singapore, the country's national registry for domain names, the Singapore Network Information Center, announced last month it would launch Chinese domains in phases starting from Nov. 23. DotAsia, the registry operator for ".asia", also said it would accept IDN registrations from the second half of 2010.

IT security professionals point out, though, that IDNs could push phishing volumes upward.

Manish Goel, CEO of BoxSentry, noted in an e-mail that widening the use of IDNs could increase the risk of "IDN homograph attacks", where cybercriminals substitute the numeric "1" for the letter "l".

"This may now be extended to the much wider range of homographs that exists across the Unicode character set [in different languages]," Goel said. "If this pans out, then spammers could send proportionately more phishing attacks than they do at present, with the intent of deceiving end-users into divulging their financial or other private credential data."

Concurring, Commtouch's vice president of products Asaf Greiner said certain phishing scams "may become more prevalent with the proliferation of IDNs".

He told ZDNet Asia in an e-mail that scammers are already using non-ASCII characters that are similar to ASCII counterparts. "In one case, scammers used the Cyrillic 'P' to direct users to a fake PayPal site, in hopes of stealing personal banking information," Greiner said.

He added that the company expects spammers to use non-ASCII characters in URLs contained in the body text of unsolicited messages, in a bid to bypass spam filters that do not recognize these characters. Such URLs, he noted, could link to spam and phishing sites or Web pages that carry embedded malware.

However, Ong Geok Meng, McAfee's antimalware research manager for Asia-Pacific and Japan, noted that improvements in URL filtering have led many phishers to employ a different tactics. Rather than ask the recipient to click on a Web site link, phishers attempt to lure the recipient to send their username and password to a specific e-mail address, Ong explained. "[As such,] I do not believe that the no-URL phish trend will be reversed by IDNs," he said in an e-mail.

He added that with the rollout of IDNs will make it more critical now for users to type the URL of a site they wish to visit, instead of simply clicking on a link. "Even if the link looks legitimate, with [IDN being introduced], it very well may not be."

Talkback

Add your opinion

In order to post a comment, you need to be registered. (Sign In or register below)

Post your comment

ZDNet Asia Live

Kodak loses patent ruling against Apple, RIM. http://t.co/N1j7aZ6o

#radio Radio Serbia by EnjoyIT 1.0 http://t.co/nGQFvX2E

Rise in <b>Chinese</b>-funded acquisitions could trigger more hurdles http://t.co/0pXBS1HR

Rise in Chinese-funded acquisitions could trigger more hurdles: By Ellyne Phneah , ZDNet Asia on May 22, 2012 (6... http://t.co/W3SOdw2c

RT @zdnetasia: CFOs increasingly involved in IT investment decisions. http://t.co/8QrfwOSb

CFOs increasingly involved in IT investment decisions http://t.co/XD1LerFq via @zdnetasia #PrivateCloud #SC2012 #CAPEX

Rise in Chinese-funded acquisitions could trigger more hurdles. http://t.co/VC3G3m3o

RT @zdnetasia: Rise in Chinese-funded acquisitions could trigger more hurdles. http://t.co/VC3G3m3o

So much as we know , MTK6575 extremely integrated frequency1GHz ARM Cortex-A9 processor, the superiority of 3G / HSPA Modem, and help the...

1 hour ago by y15822137359 on 5 SaaS adoption speed bumps to avoid

Rise in Chinese-funded acquisitions could trigger more hurdles - ZDNet Asia: Rise in Chinese-funded acquisitions... http://t.co/bZaAQnRL

Rise in Chinese-funded acquisitions could trigger more hurdles http://t.co/mIsuZjnU http://t.co/erFX4aVv #arcavir

http://t.co/VNaZtseV Rise in Chinese-funded acquisitions could trigger more hurdles: "Cash r... http://t.co/N0gZZEdR http://t.co/wiqY9ktt

Rise in Chinese-funded acquisitions could trigger more regulatory clearance issues overseas http://t.co/cvLSpTwo #in

Alibaba seeks $2.3B from shareholders for Yahoo deal. http://t.co/qLRAhRQk

CFOs increasingly involved in IT investment decisions. http://t.co/8QrfwOSb

Quickflix WatchNow 2.0 http://t.co/XWti5VWT

I reckon your view: "CRM is strategy, not software", if a company replicating the approach uses in ERP implementation into CRM, what they...

1 day ago by wykoong on Gartner: Mobile CRM gives better ROI than social

This video will teach you about the Excel fill handle but also provide you with a workook to download... http://www.youtube.com/watch?v=...

1 day ago by TradeBrother on A quick fill handle trick for Microsoft Excel

waiting...

3 days ago by eapete on What should count in a company's market value?

Boy, you've opened a can of worms now.

Wait for the rants & raves.

3 days ago by eapete on What should count in a company's market value?

I was puzzling before this whether to replicate the success formula we executed for a financial institute, and come out with a standard s...

4 days ago by wykoong on Drop the egos, copy ideas, then innovate