YoVDO

Out of Character Use of Punycode and Homoglyph Attacks to Obfuscate URLs for Phishing

Offered By: YouTube

Tags

Phishing Courses Cybersecurity Courses DNS Courses Text Manipulation Courses Browser Security Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Learn about advanced phishing techniques using punycode and homoglyph attacks in this 38-minute conference talk from AIDE 2012. Explore classic URL obfuscation methods, homographs, and the challenges posed by ASCII-based DNS. Discover likely sources for homoglyphs, examine a homoglyph attack generator demo, and understand browser and registrar protections. Investigate canonicalization errors, name spoofing, right-to-left text manipulation, and file name vulnerabilities. Gain insights into useful resources and references for further study on URL obfuscation and phishing prevention.

Syllabus

Intro
Classic Phishing Obfuscations
Homographs
Problem: DNS is ASCII
Likely Sources for Homoglyphs
Slashes?
Homoglyph Attack Generator Demo
Protections Implemented by Browsers
Defenses by Registrar
Approach
Test Strings
Facebook
Canonicalization Errors?
Name Spoofing
Right to left?
What about file names?
Useful Sites
References


Related Courses

Getting and Cleaning Data
Johns Hopkins University via Coursera
Data Structures and Performance
University of California, San Diego via Coursera
Applied Text Mining in Python
University of Michigan via Coursera
Android Basics: Button Clicks
Google via Udacity
Introduction to Python: Absolute Beginner
Microsoft via edX