Weaponised Fonts

https://gardinerbryant.com/r/6775e789

Arguably more security than privacy, but this made me think. I havent considered the use of ambiguous fonts in phishing before. Worth reading.

38 points · 4 comments · view on lemmy.world

4 Comments

AllNewTypeFace@leminal.space · 8 pts · 78d (1 reply)

They could add a lowercase to FE-Schrift (i.e. the German licence plate typeface, which was designed to make it very difficult to make any glyph look like anything but itself) and use that for the URL field.

AnAmericanPotato@programming.dev · 4 pts · 78d

Atkinson Hyperlegible would be a good starting point but I don't know how you could extend it to all of Unicode.

IanTwenty@piefed.social · 4 pts · 78d

In addition, if you attempt to visit a site that is a homograph of one already in your browser history the browser should show a warning, highlight the similarity and force you to confirm you want to proceed.

LodeMike@lemmy.today · 2 pts · 78d

Makes sense that they can't figure out how to instruct people to change their browser's DNS settings