Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
arx_
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
4 ms
·
1.
▲
by
arx_
1y ago
Something being known doesn’t mean a solution exist. Computing the the set of Unicode characters that would result in a homograph of a latin alphabet word is non trivial. Now do this for relevant/trusted domains, now put in place a mec
2.
▲
by
arx_
1y ago
It seems likelier than a @google.com spoof landing in the person’s inbox. Without them providing the headers this is just idle guessing, but I’d argue my guess is likelier to be the truth.
3.
▲
by
arx_
1y ago
The attacker doesn’t need to spoof anything, this is known as a homograph attack: https://en.m.wikipedia.org/wiki/IDN_homograph_attack https://www.xudongz.com/blog/2017/idn-phishing/
4.
▲
by
arx_
1y ago
Per TFA Title: I Was Scammed Out of $130,000 — And Google Helped It Happen Heading: Google failed me in two ways Body: Google has become the vault of our digital lives — and that vault had cracks. If Ford adds seatbelts and you decide to ta
5.
▲
by
arx_
3y ago
Not unless you actually got hired directly by Google. TVCs don’t have the same level of access/responsibility as FTEs. Also, iirc, your contract should state that it’s a breach to represent yourself as a Google employee.