TER General Board

Interesting security finding about mistyped URLs
36363jensen 4 Reviews 357 reads
posted

Reading a security blog and came across an interesting study finding.

Infoblox found parked websites are benign if the visitor arrives at the site using a virtual private network (VPN), or else via a non-residential Internet address. For example, Scotiabank.com customers who accidentally mistype the domain as scotaibank[.]com will see a normal parking page if they’re using a VPN, but will be redirected to a site that tries to foist scams, malware or other unwanted content if coming from a residential IP address. Again, this redirect happens just by visiting the misspelled domain with a mobile device or desktop computer that is using a residential IP address.
Have not read the whole bit but seems to add to the value of using a VPN way beyond just protection from trackers and ads or prying eyes. Not sure if the mobile VPNs work the same but would think that is likely.

Yep typosquatting domains have been around for 10+ years but I didn’t know VPN’s can reduce their negative impact. Glad I always use a VPN. And yes, they should help with mobile VPNs too.

Here’s another interesting article about the recent Pornhub breach. Early news says bad guys only got session data, but it could still be used for extortion campaigns. Again, VPN’s help mask session data. And hopefully, nobody is using emails with firstname.lastname type addresses.

I always use DuckDuckGo or Brave browsers. I don’t really need TOR or its browser. I like the ‘Burn’ feature in DDG, I can open a new browser window, surf to my content, then burn it down with two mouse clicks.

Register Now!