<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Typosquatting Archives - L2 Cyber Security Solutions Ltd.</title>
	<atom:link href="https://www.l2cybersecurity.com/tag/typosquatting/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.l2cybersecurity.com/tag/typosquatting/</link>
	<description>#SecuritySimplified</description>
	<lastBuildDate>Sun, 14 Feb 2021 21:07:25 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://www.l2cybersecurity.com/wp-content/uploads/2023/03/cropped-Logo-Only-Favicon-Transparent-32x32.png</url>
	<title>Typosquatting Archives - L2 Cyber Security Solutions Ltd.</title>
	<link>https://www.l2cybersecurity.com/tag/typosquatting/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>#WeekendWisdom 065 Typosquatting</title>
		<link>https://www.l2cybersecurity.com/weekendwisdom-065-typosquatting/</link>
		
		<dc:creator><![CDATA[Liam]]></dc:creator>
		<pubDate>Fri, 12 Feb 2021 02:15:04 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[#SecuritySimplified]]></category>
		<category><![CDATA[#WeekendWisdom]]></category>
		<category><![CDATA[Clare]]></category>
		<category><![CDATA[Cyber Security]]></category>
		<category><![CDATA[Limerick]]></category>
		<category><![CDATA[Malicious Links]]></category>
		<category><![CDATA[Malicious URL]]></category>
		<category><![CDATA[Tipperary]]></category>
		<category><![CDATA[Typosquatting]]></category>
		<guid isPermaLink="false">https://www.l2cybersecurity.com/?p=2449</guid>

					<description><![CDATA[<p>Welcome to #WeekendWisdom number 65. This week we&#8217;re going to talk about Typosquatting. Typoquatting? What&#8217;s that now? What is typosquatting? People are generally very bad at reading and understanding links they receive to websites and lots of people experience this. Can you give me an example? So for example if you were to go to&#8230;</p>
<p>The post <a href="https://www.l2cybersecurity.com/weekendwisdom-065-typosquatting/">#WeekendWisdom 065 Typosquatting</a> appeared first on <a href="https://www.l2cybersecurity.com">L2 Cyber Security Solutions Ltd.</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Welcome to #WeekendWisdom number 65. This week we&#8217;re going to talk about Typosquatting.<span id="more-2449"></span></p>
<div style="width: 1920px;" class="wp-video"><video class="wp-video-shortcode" id="video-2449-1" width="1920" height="1080" preload="metadata" controls="controls"><source type="video/mp4" src="https://www.l2cybersecurity.com/wp-content/uploads/2021/02/WeekendWisdom-065-lo.mp4?_=1" /><a href="https://www.l2cybersecurity.com/wp-content/uploads/2021/02/WeekendWisdom-065-lo.mp4">https://www.l2cybersecurity.com/wp-content/uploads/2021/02/WeekendWisdom-065-lo.mp4</a></video></div>
<h3>Typoquatting? What&#8217;s that now?</h3>
<p>What is typosquatting? People are generally very bad at reading and understanding links they receive to websites and lots of people experience this.</p>
<h3>Can you give me an example?</h3>
<p>So for example if you were to go to the website b-Bravo o-Oscar i-India dot ie you will go to the official Bank of Ireland website, where you can access personal banking and business banking etc.</p>
<p>If you were to be given a link to b-Bravo o-Oscar l-Lima dot ie, that kinda looks like the correct link. It could take you to a clone website that looked like the Bank of Ireland website at that address. You could be fooled into providing lots and lots of personal information and access information to your account.</p>
<blockquote><p>www.boi.ie</p>
<p>www.bol.ie</p></blockquote>
<p>So that&#8217;s how they can potentially compromise you.</p>
<h3>Any others?</h3>
<p>Similarly you might have a situation where you are used to logging into the administration console for your Microsoft or Google accounts. Which would usually be accessed by going to admin.google.com or admin.microsoft.com.</p>
<p>But if you were given a link that says admingoogle.com or adminmicrosoft.com and then you were presented with a login page to access your account. That way, if you did that, these guys could potentially get your credentials for the admin portal and they could wreak a lot of havoc with that.</p>
<blockquote><p>admin.google.com</p>
<p>admingoogle.com</p></blockquote>
<p>In that situation something like a password manager would be very helpful, it would prevent you entering your passwords into that portal.</p>
<p>So that’s it for this week. Lets be careful out there and we’ll talk to you again next week.</p>
<hr />
<h2>How can L2 Cyber Security help you?</h2>
<p>We offer a full range of <a href="https://www.l2cybersecurity.com/training" target="_blank" rel="noopener noreferrer">training programmes</a>, which can be delivered online or in-person<strong>*</strong>.</p>
<p>L2 Cyber Security are also a partner of <a href="https://www.cyberriskaware.com/" target="_blank" rel="noopener noreferrer">CyberRiskAware</a> for online self-directed Cyber Security Awareness training and Phishing testing.</p>
<p>Contact us for more information at <a href="mailto:info@L2CyberSecurity.com" target="_blank" rel="noopener noreferrer">info@L2CyberSecurity.com</a>.</p>
<p><strong>*</strong>With appropriate social distancing and other health and safety measures adhered to.</p>
<hr />
<h2>Follow us on Social media:</h2>
<p>Liam is available on <a href="https://twitter.com/L2actual" target="_blank" rel="noopener noreferrer">Twitter</a>, <a href="https://www.linkedin.com/in/lynchliam/" target="_blank" rel="noopener noreferrer">LinkedIn</a> and <a href="https://www.instagram.com/l2actual/" target="_blank" rel="noopener noreferrer">Instagram</a>.</p>
<p>Follow L2 Cyber on <a href="https://twitter.com/L2Cyber" target="_blank" rel="noopener noreferrer">Twitter</a>, <a href="https://www.linkedin.com/company/l2cyber/" target="_blank" rel="noopener noreferrer">LinkedIn</a>, <a href="https://www.instagram.com/l2cyber/" target="_blank" rel="noopener noreferrer">Instagram</a> and <a href="https://www.facebook.com/L2Cyber/" target="_blank" rel="noopener noreferrer">Facebook</a>.</p>
<p><a href="https://www.l2cybersecurity.com/" target="_blank" rel="noopener noreferrer">© L2 Cyber Security Solutions</a></p>
<p>The post <a href="https://www.l2cybersecurity.com/weekendwisdom-065-typosquatting/">#WeekendWisdom 065 Typosquatting</a> appeared first on <a href="https://www.l2cybersecurity.com">L2 Cyber Security Solutions Ltd.</a>.</p>
]]></content:encoded>
					
		
		<enclosure url="https://www.l2cybersecurity.com/wp-content/uploads/2021/02/WeekendWisdom-065-lo.mp4" length="35324877" type="video/mp4" />

			</item>
		<item>
		<title>How a typo can cause you problems.</title>
		<link>https://www.l2cybersecurity.com/typo-can-cause-problems/</link>
		
		<dc:creator><![CDATA[Liam]]></dc:creator>
		<pubDate>Tue, 13 Jun 2017 14:55:14 +0000</pubDate>
				<category><![CDATA[News]]></category>
		<category><![CDATA[Adobe Flash Player]]></category>
		<category><![CDATA[Adware]]></category>
		<category><![CDATA[Fake]]></category>
		<category><![CDATA[Flash]]></category>
		<category><![CDATA[Flash Player]]></category>
		<category><![CDATA[Fraud]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Scam]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Social Engineering]]></category>
		<category><![CDATA[Spyware]]></category>
		<category><![CDATA[Typo]]></category>
		<category><![CDATA[Typosquatting]]></category>
		<guid isPermaLink="false">http://www.l2cybersecurity.com/?p=747</guid>

					<description><![CDATA[<p>Nobody is perfect and we all make mistakes. One of the most common mistakes, in particular with mobile phones and their small keyboards, is the simple typo. Did you know that the evil doers have got sneaky ways that they try to capitalise on your fumbling fingers? It&#8217;s a technique called &#8220;Typosquatting&#8220;. Essentially this is&#8230;</p>
<p>The post <a href="https://www.l2cybersecurity.com/typo-can-cause-problems/">How a typo can cause you problems.</a> appeared first on <a href="https://www.l2cybersecurity.com">L2 Cyber Security Solutions Ltd.</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p><img decoding="async" class="alignleft size-thumbnail wp-image-748" src="http://www.l2cybersecurity.com/wp-content/uploads/2017/06/Bad-Spelling-150x150.jpg" alt="Typo squatting" width="150" height="150" srcset="https://www.l2cybersecurity.com/wp-content/uploads/2017/06/Bad-Spelling-150x150.jpg 150w, https://www.l2cybersecurity.com/wp-content/uploads/2017/06/Bad-Spelling.jpg 300w" sizes="(max-width: 150px) 100vw, 150px" />Nobody is perfect and we all make mistakes. One of the most common mistakes, in particular with mobile phones and their small keyboards, is the simple typo. Did you know that the evil doers have got sneaky ways that they try to capitalise on your fumbling fingers? It&#8217;s a technique called &#8220;<a href="https://en.wikipedia.org/wiki/Typosquatting">Typosquatting</a>&#8220;.</p>
<p><span id="more-747"></span></p>
<p>Essentially this is where the bad guys have a web page at an address that is very very very close to the spelling of a popular or well known webpage and they count on you having a typo and either missing a letter (e.g. instgram.com) or hitting an adjoining letter (e.g. facebooo.com) in error.</p>
<p><span style="text-decoration: underline;"><strong>Don&#8217;t try this on your desktop/laptop/tablet/phone</strong></span>. I have a separate, sacrificial machine which I can use for such things.</p>
<p>I tried to access www.instgram.com (missing the &#8220;a&#8221; in the middle) and received the following page:</p>
<p><img fetchpriority="high" decoding="async" class="aligncenter size-full wp-image-750" src="http://www.l2cybersecurity.com/wp-content/uploads/2017/06/instgram-1.jpg" alt="instgram.com 1" width="572" height="201" srcset="https://www.l2cybersecurity.com/wp-content/uploads/2017/06/instgram-1.jpg 572w, https://www.l2cybersecurity.com/wp-content/uploads/2017/06/instgram-1-300x105.jpg 300w" sizes="(max-width: 572px) 100vw, 572px" /></p>
<p>Notice the address where it is going to (circled in yellow) &#8211; that is not an Instagram address, but some sort of ad/advertising address.</p>
<p>When I clicked to continue, I got:</p>
<p><img decoding="async" class="aligncenter size-full wp-image-749" src="http://www.l2cybersecurity.com/wp-content/uploads/2017/06/instgram-2.jpg" alt="instgram 2" width="765" height="472" srcset="https://www.l2cybersecurity.com/wp-content/uploads/2017/06/instgram-2.jpg 765w, https://www.l2cybersecurity.com/wp-content/uploads/2017/06/instgram-2-300x185.jpg 300w" sizes="(max-width: 765px) 100vw, 765px" /></p>
<p>I didn&#8217;t continue any further, as I googled gr8musik.com and the results indicated it was a scam site, which if you registered with it, would take money from your credit card, even though you were supposed to be in some kind of a free trial period.</p>
<p>Similarly, I tried www.facebooo.com (an &#8220;o&#8221; instead of the &#8220;k&#8221;) and got the following:</p>
<p><img loading="lazy" decoding="async" class="aligncenter size-full wp-image-751" src="http://www.l2cybersecurity.com/wp-content/uploads/2017/06/facebooo-1.jpg" alt="facebooo 1" width="798" height="409" srcset="https://www.l2cybersecurity.com/wp-content/uploads/2017/06/facebooo-1.jpg 798w, https://www.l2cybersecurity.com/wp-content/uploads/2017/06/facebooo-1-300x154.jpg 300w, https://www.l2cybersecurity.com/wp-content/uploads/2017/06/facebooo-1-768x394.jpg 768w" sizes="auto, (max-width: 798px) 100vw, 798px" /></p>
<p>This was just some kind of survey. But you never know what you will get. A subsequent attempt to go to www.instgram.com brought me to the survey, followed by the survey (again), followed by a sign-up form for mcplayz.com (identical to the above gr8musik.com). So these crooks are randomly sending you to different pages trying to compromise you in someway.</p>
<p>According to this <a href="https://isc.sans.edu/diary/Deceptive+Advertisements%3A+What+they+do+and+where+they+come+from/22494">post</a>, the victim&#8217;s typo sent him to a &#8220;Technical Support&#8221; page, where he was advised that his PC was locked and he needed to telephone for support. If he did this, the scammers at the other end of the line would have talked him through giving them remote access to the PC and then they would have totally locked him out and looked for his credit card details to &#8220;fix&#8221; the problem.</p>
<p>Some pages reached by a typo try to apparently show you a video, but then indicates there is a problem and that you need to download a specific video player to watch it. For example, the following headline is tempting you to watch the video to get your hands on software worth $7,000.</p>
<p><img loading="lazy" decoding="async" class="aligncenter size-full wp-image-753" src="http://www.l2cybersecurity.com/wp-content/uploads/2017/06/videoplayer.jpg" alt="video player not" width="765" height="462" srcset="https://www.l2cybersecurity.com/wp-content/uploads/2017/06/videoplayer.jpg 765w, https://www.l2cybersecurity.com/wp-content/uploads/2017/06/videoplayer-300x181.jpg 300w" sizes="auto, (max-width: 765px) 100vw, 765px" /></p>
<p>These will typically download what is referred to as adware, and if you read our last week&#8217;s <a href="http://www.l2cybersecurity.com/fireball-bigger-than-wannacry/">post</a> about the Fireball adware, you can see  how insidious that adware can be. Adware will take control of your browser and fire ads at you while you are trying to use the internet. It might also re-direct your searches to odd search engines, which will likely attempt to track you and violate your personal privacy on the internet.</p>
<p>So just be careful when typing addresses. Better still use bookmarks.</p>
<p>If you do inadvertently get taken to some page that you never intended to go to, just close the browser immediately by way of the <strong>X</strong> in the top right-hand corner of the window. You might get warnings about losing data, just ignore them and close that browser. It would do no harm to run a spyware check on your PC at this point, in case any adware did manage to sneak in without your knowledge or permission. There are free tools from <a href="https://www.malwarebytes.com/">Malwarebytes</a> or <a href="https://www.safer-networking.org/">Safer Networking</a> that can do this for you, but you might want to also talk to some real life technical support (a techy friend or the IT team in your place of employment) about it and have them give your PC a once over.</p>
<p>Whatever you do, don&#8217;t continue to engage with a website that you weren&#8217;t intending to visit and stay safe.</p>
<p>The post <a href="https://www.l2cybersecurity.com/typo-can-cause-problems/">How a typo can cause you problems.</a> appeared first on <a href="https://www.l2cybersecurity.com">L2 Cyber Security Solutions Ltd.</a>.</p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
