IDN

Don’t disable IDN

I couldn’t put it better so I won’t. From Paul Hoffman: Reading the ensuing Slashdot and other coverage gave me the feeling that nearly everyone talking was from the US, UK, or Australia, the three countries that have the least native need for IDNs. It also became clear that few of the folks in the […]

Read More
IDN

IDN and homographs spoofing

There is a published spoofing attack using homographs IDN. By using a Cyrillic SMALL LETTER A (U+430), Securnia is able to pretend to be http://www.paypal.com/. Actually this is well-documented in RFC 3490 under the Security Consideration: To help prevent confusion between characters that are visually similar, it is suggested that implementations provide visual indications where […]

Read More
Telephony VoIP

Warning about VoIP?

US warns on risk of net-based telephony reports FT Internet-based telephony known as voice over internet protocol, or VoIP promises lower costs and greater flexibility by using existing data networks. But a report by the National Institute of Standards and Technology, which develops technology guidelines for US government agencies, warns of the “inherent vulnerabilities” of […]

Read More
Back To Top
+