HUGE Google issue with search PayPal

Discussion in 'Reviews' started by schlottke, Feb 26, 2007.

  1. #1
    schlottke, Feb 26, 2007 IP
  2. NYDAz

    NYDAz Peon

    Messages:
    685
    Likes Received:
    9
    Best Answers:
    0
    Trophy Points:
    0
    #2
    nice article ....
     
    NYDAz, Feb 26, 2007 IP
  3. inman

    inman Peon

    Messages:
    615
    Likes Received:
    28
    Best Answers:
    0
    Trophy Points:
    0
    #3
    Unbelievable. Cant believe Google allows this.
     
    inman, Feb 26, 2007 IP
  4. vic_msn

    vic_msn Well-Known Member

    Messages:
    2,233
    Likes Received:
    125
    Best Answers:
    0
    Trophy Points:
    155
    #4
    once i received a mail(spam) stating i had tried to login to paypal but my password was wron so it asked to login in a new link thank god firefox "warned me" ironically i really tried my passsword many times that morning ?
    that website is a IDN domain name too bad PayPal didn't buy that domain too.
     
    vic_msn, Feb 26, 2007 IP
  5. protocol96

    protocol96 Peon

    Messages:
    413
    Likes Received:
    7
    Best Answers:
    0
    Trophy Points:
    0
    #5
    Good find, but wrong article

    The site's is has a text which says he's prepared to give back the domain, so the article suggesting that
    [qoute]Imagine if someone did this for banks, trading websites, and even eBay, etc….[/quote] is utter rubbish.

    I think i m missing something here, he's email address is xn--pypal-4ve.com
    but google search shows up as www.paypal.com, mite be some kinda redirect trick i dunno off, Can some1 tell me wat it is about??
     
    protocol96, Feb 26, 2007 IP
  6. schlottke

    schlottke Peon

    Messages:
    2,185
    Likes Received:
    63
    Best Answers:
    0
    Trophy Points:
    0
    #6
    No, I realize the site doesn't actually do anything Illegal, I'm simply talking about the possibilities of someone misusing this exploit to do that.

    Imagine doing it with a bank, paypal, itrade, etc... if they did this, and created a page that was identical to the coinciding real page, they could easily steal information- MUCH easier than the Phishing email messages...
     
    schlottke, Feb 26, 2007 IP
  7. schlottke

    schlottke Peon

    Messages:
    2,185
    Likes Received:
    63
    Best Answers:
    0
    Trophy Points:
    0
    #7
    More on this:

    The links are directed at "http://www.pаypal.com/", which the browsers punycode handlers render as www.xn--pypal-4ve.com.

    This is one example URL - - there are now many ways to display any domain name on a browser, as there are a huge number of codepages/scripts which look very similar to latin charsets.
     
    schlottke, Feb 27, 2007 IP
  8. KingofKings

    KingofKings Banned

    Messages:
    5,975
    Likes Received:
    143
    Best Answers:
    0
    Trophy Points:
    0
    #8
    Thanx for the article... I never knew this...
     
    KingofKings, Feb 28, 2007 IP
  9. superimpose

    superimpose Peon

    Messages:
    99
    Likes Received:
    2
    Best Answers:
    0
    Trophy Points:
    0
    #9
    server is kinda slow here.
     
    superimpose, Mar 2, 2007 IP