cross-posted from: https://suppo.fi/post/9183817
A sophisticated phishing campaign is currently leveraging a subtle typographical trick to bypass user vigilance, deceiving victims into handing over sensitive login credentials. Attackers utilize the domain “rnicrosoft.com” to impersonate the tech giant.
By replacing the letter ‘m’ with the combination of ‘r’ and ‘n’, fraudsters create a visual doppleganger that is nearly indistinguishable from the legitimate domain at a casual glance.
This technique, known as typosquatting, relies heavily on the font rendering used in modern email clients and web browsers.
3 Comments
dephyre@lemmy.world · 13 pts · 271d
So it was Microsoft.corn. 🤦
Macchi_the_Slime@piefed.blahaj.zone · 5 pts · 271d
No in this case it'd be rnicrosoft.com. The m in Microsoft in the domain is the one they replace with rn hoping targets won't notice.
Manifish_Destiny@lemmy.world · 9 pts · 271d
Ahh yes. The dreaded .corn TLD. The moniker of all the 1337 hackers in Iowa.