🎣 Phishing Alert!
Malicious attackers use lookalike domains to trick you into clicking fake links. These sites steal logins, banking info & more.
🛡️ Stay safe:
🔹 Double-check URLs
🔹 Don’t log in via links
🔹 Bookmark official sites
👉 Check the full guide: tuta.com/blog/how-to-prevent-p…
Stay alert this #CyberSecurityMonth
How to prevent email phishing attacks - a quick guide. | Tuta
Email phishing scams are one of the most severe cyber threats in our digital world. Here is how to keep your online accounts safe from hackers.Tuta
Torx
in reply to Tuta • • •Tuta
in reply to Torx • • •Cybarbie
in reply to Tuta • • •Kaito
in reply to Tuta • • •RejZoR
in reply to Tuta • • •Desert Camel
in reply to Tuta • • •p̷t̵r̴a̵c̷e̶
in reply to Tuta • • •@nyovaya
@Tutanota the domain RFC doesn't really enforce a specific encoding. So the society adopted a limited subset of ASCII. But there's also a Punycode RFC which allows any UTF character:
en.wikipedia.org/wiki/Punycode
method of representing Unicode with the limited character subset of ASCII (letters, digits, and hyphen-minus) supported by the Domain Name System; e.g. 日本語 → wgv71a119e; München → Mnchen-3ya
Contributors to Wikimedia projects (Wikimedia Foundation, Inc.)Luna Anni
in reply to Tuta • • •Tuta
in reply to Luna Anni • • •Ox1de
in reply to Tuta • • •LΞX/NØVΛ
in reply to Tuta • • •WilsonSmith
in reply to Tuta • • •Kerplunk
in reply to Tuta • • •Hackers use lookalike domains to trick you into clicking fake links.
Troubling, the second url looks completely normal to people like me and a few million other persons who are English native speakers and writers
Citibank users might want to block the second domain in UBlock or if running Linux in etc/hosts
And use 2 factor Authorization for Banking.
Payment systems like PP and Sites like E Bay Amazon
NEVER USE AUTO FILL FOR PASSWORDS. Or save form data in the browser
Torf und Schnee
in reply to Tuta • • •Anthony Dardis
in reply to Tuta • • •@jnl that second `a' might be from a Cyrillic font, but both letterforms are legitimate for writing in Cyrillic, as they are for the Roman alphabet
en.wikipedia.org/wiki/Cyrillic…
FWIW Citibank's url is citi.com.
I'm often uneasy about clicking anything that comes by email, like my phone or electric bill. I don't retype the url; either I have it in a browser bookmark or it's in my password manager.
writing system developed in Bulgaria and used for various oriental Eurasian languages
Contributors to Wikimedia projects (Wikimedia Foundation, Inc.)Ɩƚ
in reply to Tuta • • •El Duvelle
in reply to Tuta • • •jfor
in reply to Tuta • • •Tuta
in reply to jfor • • •Michał "rysiek" Woźniak · 🇺🇦
in reply to Tuta • • •Tuta
in reply to Michał "rysiek" Woźniak · 🇺🇦 • • •Michał "rysiek" Woźniak · 🇺🇦
in reply to Tuta • • •thank you, I appreciate that.
So, when are you editing the image in the original toot that still promotes that misconception?
Ian Campbell 🏴
in reply to Michał "rysiek" Woźniak · 🇺🇦 • • •@rysiek seconded, as a paid account holder and hacker. :)
Fwiw, it’s good to warn folks like this, Tuta (i have a pinned tweet about IDN homoglyph attacks because it’s a pet peeve masto.deoan.org/@neurovagrant/… ) - just keep in mind hackers protecc, not always attacc.
I hope the image is swapped out soon. I expect some level of corporate approval may be delaying action.
Ian Campbell 🏴 (@neurovagrant@masto.deoan.org)
masto.deoan.orgTuta
in reply to Ian Campbell 🏴 • • •