• Home
  • Privacy Policy
  • Terms and Conditions
  • DMCA
  • Disclaimer
  • Contact us
Tuesday, June 17, 2025
No Result
View All Result
NEWSLETTER defal
Lebanon Hub
NEWSLETTER
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
No Result
View All Result
Lebanon Hub
No Result
View All Result

Twitter’s Clumsy Pivot to X.com Is a Gift to Phishers – Krebs on Security

April 11, 2024
in Cyber Security
0
Home Cyber Security
2
VIEWS
Share on FacebookShare on Twitter


On April 9, Twitter/X started routinely modifying hyperlinks that point out “twitter.com” to learn “x.com” as a substitute. However over the previous 48 hours, dozens of recent domains have been registered that display how this modification might be used to craft convincing phishing hyperlinks — similar to fedetwitter[.]com, which till very lately rendered as fedex.com in tweets.

Twitter’s Clumsy Pivot to X.com Is a Gift to Phishers – Krebs on Security

The message displayed when one visits goodrtwitter.com, which Twitter/X displayed as goodrx.com in tweets and messages.

A search at DomainTools.com reveals a minimum of 60 domains have been registered over the previous two days for domains ending in “twitter.com,” though analysis thus far reveals the vast majority of these domains have been registered “defensively” by personal people to stop the domains from being bought by scammers.

These embrace carfatwitter.com, which Twitter/X truncated to carfax.com when the area appeared in person messages or tweets. Visiting this area at present shows a message that begins, “Are you severe, X Corp?”

Replace: It seems Twitter/X has corrected its mistake, and not truncates any area ending in “twitter.com” to “x.com.”

Authentic story:

The identical message is on different newly registered domains, together with goodrtwitter.com (goodrx.com), neobutwitter.com (neobux.com), roblotwitter.com (roblox.com), square-enitwitter.com (square-enix.com) and yandetwitter.com (yandex.com). The message left on these domains signifies they had been defensively registered by a person on Mastodon whose bio says they’re a methods admin/engineer. That profile has not responded to requests for remark.

Numerous these new domains together with “twitter.com” seem like registered defensively by Twitter/X customers in Japan. The area netflitwitter.com (netflix.com, to Twitter/X customers) now shows a message saying it was “acquired to stop its use for malicious functions,” together with a Twitter/X username.

The area talked about at the start of this story — fedetwitter.com — redirects customers to the weblog of a Japanese know-how fanatic. A person with the deal with “amplest0e” seems to have registered space-twitter.com, which Twitter/X customers would see because the CEO’s “space-x.com.” The area “ametwitter.com” already redirects to the actual americanexpress.com.

Among the domains registered lately and ending in “twitter.com” at present don’t resolve and comprise no helpful contact info of their registration data. These embrace firefotwitter[.]com (firefox.com), ngintwitter[.]com (nginx.com), and webetwitter[.]com (webex.com).

The area setwitter.com, which Twitter/X till very lately rendered as “intercourse.com,” redirects to this weblog put up warning in regards to the current adjustments and their potential use for phishing.

Sean McNee, vice chairman of analysis and information at DomainTools, advised KrebsOnSecurity it seems Twitter/X didn’t correctly restrict its redirection efforts.

“Dangerous actors might register domains as a method to divert visitors from official websites or manufacturers given the chance — many such manufacturers within the high million domains finish in x, similar to webex, hbomax, xerox, xbox, and extra,” McNee stated. “Additionally it is notable that a number of different globally in style manufacturers, similar to Rolex and Linux, had been additionally on the listing of registered domains.”

The obvious oversight by Twitter/X was trigger for amusement and amazement from many former customers who’ve migrated to different social media platforms because the new CEO took over. Matthew Garrett, a lecturer at U.C. Berkeley’s College of Data, summed up the Schadenfreude thusly:

“Twitter simply doing a ‘redirect hyperlinks in tweets that go to x.com to twitter.com as a substitute however by chance accomplish that for all domains that finish x.com like eg spacex.com going to spacetwitter.com’ isn’t completely the funniest factor I might think about nevertheless it’s excessive up there.”





Source link

Tags: ClumsygiftKrebsPhisherspivotSecurityTwittersX.com
Next Post
Alternative browsers report uplift after EU’s DMA choice screen mandate

Alternative browsers report uplift after EU's DMA choice screen mandate

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Beirut, LB
14°
Cloudy / Wind
05:4017:50 EET
Feels like: 13°C
Wind: 34km/h SW
Humidity: 65%
Pressure: 1012.19mbar
UV index: 0
FriSatSun
14°C / 9°C
16°C / 11°C
18°C / 12°C
powered by Weather Atlas

Recent News

ACT working to resolve MyWay+ system auto card top-up issue | The Canberra Times

ACT working to resolve MyWay+ system auto card top-up issue | The Canberra Times

June 17, 2025
´Man Utd can win Premier League in 2028´, says chief executive Berrada

´Man Utd can win Premier League in 2028´, says chief executive Berrada

June 17, 2025
Classic Outlook crashing when opening emails? Try Microsoft’s temp fix

Classic Outlook crashing when opening emails? Try Microsoft’s temp fix

June 17, 2025
Hacklink Marketplace Fuels Surge in Covert SEO Poisoning Attacks

Hacklink Marketplace Fuels Surge in Covert SEO Poisoning Attacks

June 17, 2025
Will Jax Taylor Be Fired From The Valley? Insider Speaks as Fans React

Will Jax Taylor Be Fired From The Valley? Insider Speaks as Fans React

June 17, 2025
One Couple Leaves Way Too Soon While The Younger Characters Contemplate Their Futures

One Couple Leaves Way Too Soon While The Younger Characters Contemplate Their Futures

June 17, 2025
SZA Worried Fans Would Want to See Only Kendrick Lamar on Joint Tour

SZA Worried Fans Would Want to See Only Kendrick Lamar on Joint Tour

June 17, 2025
la flambée des frais de scolarité et l’effondrement éducatif au Liban

la flambée des frais de scolarité et l’effondrement éducatif au Liban

June 17, 2025
Lebanon Hub

Get the Latest Lebanon News and world News on LebanonHub.com. Local News, Sports, Technology, Music, Celebrity, Gaming News and Cryptocurrency Updates.

Category

  • Altcoin
  • Australia
  • Bitcoin
  • Blockchain
  • Celebrity
  • Cyber Security
  • Ethereum
  • Exchange
  • Litecoin
  • Local News
  • Mobile
  • Movies
  • Music
  • New Released
  • PC
  • PlayStation
  • Popular
  • Reviews
  • Sports
  • Startups
  • Technology
  • TV
  • XBOX

Recent News

ACT working to resolve MyWay+ system auto card top-up issue | The Canberra Times

ACT working to resolve MyWay+ system auto card top-up issue | The Canberra Times

June 17, 2025
´Man Utd can win Premier League in 2028´, says chief executive Berrada

´Man Utd can win Premier League in 2028´, says chief executive Berrada

June 17, 2025
  • Home
  • DMCA
  • Disclaimer
  • Privacy Policy
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2022 - Lebanon Hub.

No Result
View All Result
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up

Copyright © 2022 - Lebanon Hub.