 ClmsnTgrFanThrifty, Not CheapPremium join:2001-06-02 Crestview, FL | reply to CrookedSmile
Re: The state of homograph attacks said by CrookedSmile:I get a blank screen that says "meeow" when I click either of those links in the demo page. I'm not ruling out the possibility of the ghost of a evil cat webmaster haunting my pc but it looks nothing like paypal. This problem must've been fixed in the 7.54u2 release of Opera for linux. That is the proof of concept page. Note that the URL bar shows "http://www.paypal.com" or "https://www.paypal.com". The Schmoo guys put "meeeow" on the page to show you that it is not paypal but instead the page they spoofed you to. Imagine if they copied PayPal's HTML and made the page look identical ... you would have no way of knowing you were not really at the PayPal site.
In other words, your Opera version is vulnerable. |