Hackers using SMiShing with Punycode
ID: a1ca221d-2981-55dd-9875-60f86f00713f
STIX ID: report--a1ca221d-2981-55dd-9875-60f86f00713f
Feed Name: Zscaler Security Research Blog
This Zscaler ThreatLabZ report describes a rise in SMiShing campaigns that use Punycode homograph (IDN) attacks to impersonate legitimate domains on mobile devices, illustrates a WhatsApp-based phishing example mimicking jetairways.com, documents browser differences in displaying IDN vs Punycode, notes recent domain registration activity, and highlights redirects to another domain that may serve malware; it advises caution, use of password managers, and vigilance when clicking links in SMS/IM.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
