Typosquatting Wave Shows No Signs of Abating
ID: 3daa72b9-277d-5fa1-b4bb-0c2d26f9b8ea
STIX ID: report--3daa72b9-277d-5fa1-b4bb-0c2d26f9b8ea
Feed Name: Dark Reading
This article analyzes the persistence and evolution of typosquatting/look‑alike domains used for phishing, malware delivery, and fraud, highlighting vendor telemetry (e.g., tens of thousands of suspicious domains weekly) and recent examples including Bifrost variants using fake VMware domains, fake job and hotel booking sites, and disaster donation scams. It details techniques such as homograph attacks and malicious package typos and recommends layered defenses—DNS protections, log review, and user awareness—while noting that both automated and manual detection struggle to keep pace with the volume of new registrations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
