IDN Spoofing Fix for Firefox

grahams - - 1 min read

Much noise was made when the Shmoo group pointed out an obvious flaw (obvious, as in the designers knew all along) in the Internationalized Domain Name system. The long and short of it is that there are characters in other alphabets that look just like letters in our latin alphabet, and you can use these to visually spoof domain names to users, and pretend for instance to be paypal.com. There were a number of suggestions to disable IDN support in Firefox, but almost all of them were temporary fixes (due to bugs in Mozilla). This site has instructions to permanently prevent this from happening using the wonderful Adblock extension for Firefox.