For Apple users without latest security updates, the letter 'd' is not always the letter 'd'

Science & Tech 14:09 20.11.2018

Most Apple users install updates, but there's always a small group of people who, for various reasons, lag behind when it comes to installing updates, for one reason or another, legitimate, or not.

If you're one of the users in the latter category, then you should be aware that the letter "d" is not always the letter "d" when displayed inside the Safari address bar.

This might sound like a non-issue, but it's actually a very important problem that all Apple users who don't run the latest OS software need to be aware of, as they could fall victims to what security researchers call "IDN homograph attacks."

IDN homograph attacks happen when someone registers a domain using Unicode characters that look like standard Latin letters, but they are not. For example, coinḃase.com is an IDM homograph attack for coinbase.com (notice the dot above the letter b).

These lookalike domains are usually used for phishing, tricking users into thinking they accessed a legitimate site when they're on a cleverly crafted clone.

IDN homograph attacks have been an issue over the past year, and several incidents have been reported in the security news media about homograph attacks against cryptocurrency exchanges in 2017 and 2018.

Driven by this new wave of homograph attacks, xisigr, a security researcher at Tencent Security Xuanwu Lab, has recently taken a look at how Apple products handle Unicode characters.

What the researcher found is that Apple does a good job with most Unicode characters, except one --which is the letter dum (ꝱ) (U+A771), part of the extended Latin alphabet character set.

The letter looks like a normal Latin lowercase letter 'd', except it comes with a lower apostrophe. But xisigr found that Safari did not render the small lower apostrophe, displaying the letter dum as a Latin letter d.

apple-letter-d-dum.png

The Tencent researcher reported his findings to Apple, who issued security updates in July for Safari, iOS, macOS, tvOS, and watchOS.

Unfortunately, users who have not applied those updates are still vulnerable to phishing attacks. An attacker can record domain names that include the letter dum and he can launch phishing campaigns against Apple users.

Xisigr says the issue should not be ignored because he found that the letter d is part of almost 25 percent of all Top 10,000 domains, providing attackers with a huge phishing surface.

Some of the domains that a phisher could impersonate include LinkedIn, Baidu, Dropbox, Adobe, WordPress, Reddit, or GoDaddy, just to name a few.

Furthermore, even if some domain registrars prevent users from registering domain names that contain Unicode characters, this limitation doesn't apply to the letter dum because it's part of the extended Latin character alphabet, and hence, is considered a standard Latin character.

If Apple users can't update, for the time being, they should at least take notice that the letter "d" in Safari's URL bar may not actually be "d" and they should use another browser to navigate the web until they can apply Apple's July security patches.

Azerbaijan Air Force and Navy Forces held joint tactical exercise in Caspian Sea - VİDEO

News line

Iran and Israel playing with fire as old rules of confrontation are torn up - ANALYSIS
20:50 19.04.2024
'Ukraine is blackmailing the West for this' - Expert reveals the secret details
19:50 19.04.2024
French police arrest attempted suicide bomber
French police arrest attempted suicide bomber
19:30 19.04.2024
'We are witnessing historical events' - Umud Mirzayev on the occasion of the return of Gazakh villages
19:09 19.04.2024
Expert: Israeli Response to Iran Expected to Be Limited, Considers Targeting Neighbor
18:45 19.04.2024
Border delimitation between Azerbaijan and Armenia to be based on Almaty Declaration
18:25 19.04.2024
Defamation against Azerbaijan in the International Court of Justice
18:12 19.04.2024
CIA: Ukraine will lose war without new aid this year
17:58 19.04.2024
Another baseless allegation from a law professor speaking on behalf of Armenia
17:40 19.04.2024
Azerbaijan and Armenia agree on returning of Gazakh's 4 villages
17:21 19.04.2024
President of Azerbaijan and Chancellor of Germany to meet in Berlin
17:00 19.04.2024
Russia won’t allow NATO to move closer in Ukraine — Lavrov
Russia won’t allow NATO to move closer in Ukraine — Lavrov
16:48 19.04.2024
Baku French Lyceum ceases its activity
16:35 19.04.2024
Ilham Aliyev and Vladimir Putin to meet in Moscow
16:27 19.04.2024
G7 Foreign Ministers call Azerbaijan and Armenia to be committed to peace process
16:16 19.04.2024
Mikayil Jabbarov: ‘Ughuryolu career program leads to identifying personnel with higher potential’
Mikayil Jabbarov: ‘Ughuryolu career program leads to identifying personnel with higher potential’
16:01 19.04.2024
US calls on Israel to provide humanitarian aid to Gaza
15:40 19.04.2024
Jeyhun Bayramov discusses situation in Gaza with Prime Minister of Palestine
15:30 19.04.2024
Public hearings on preliminary objections raised by Azerbaijan in International Court of Justice conclude
15:00 19.04.2024
Azerbaijan to create artificial land plots in Caspian Sea for construction
14:02 19.04.2024
Azerbaijan weather forecast for April 20
Azerbaijan weather forecast for April 20
13:21 19.04.2024
Fathers will have right to receive a pension under favorable conditions for their children in Azerbaijan
13:00 19.04.2024
Azerbaijan Air Force and Navy Forces held joint tactical exercise in Caspian Sea - VİDEO
Azerbaijan Air Force and Navy Forces held joint tactical exercise in Caspian Sea - VİDEO
12:40 19.04.2024
No plan for immediate retaliation against Israel, senior Iranian official says - VİDEO/UPDATED
12:25 19.04.2024
Oil prices surge following Israeli airstrike on Iran
12:12 19.04.2024
Final Day of Hearings in 'Armenia vs. Azerbaijan' Case at the Hague Court - LIVE
12:02 19.04.2024
Australia tells citizens to leave Israel
Australia tells citizens to leave Israel
11:50 19.04.2024
'Regrettably, the United States exhibits a biased position regarding peacekeepers' - MP Konul Nurullayeva
11:34 19.04.2024
The US does not want the Zangezur corridor to be opened under these conditions - OPINION
11:20 19.04.2024
Armenian general: Russia is the cause of all troubles
11:02 19.04.2024
Man arrested in Poland over suspected Russian plot to assassinate Zelensky
10:50 19.04.2024
Price of Azerbaijan oil drops
Price of Azerbaijan oil drops
10:35 19.04.2024
Azerbaijani police found numerous weapons and ammunition in Khankandi
10:23 19.04.2024
Chad threatens to kick out US troops
10:00 19.04.2024
Terrorists kill 16 soldiers in Syria
Terrorists kill 16 soldiers in Syria
09:49 19.04.2024
Biden calls China ‘xenophobic’
09:30 19.04.2024
Maduro: Despite US sanctions, Venesuela’s oil industry will develop
09:17 19.04.2024
Kenyan military helicopter crashes, five soldiers killed, police say
Kenyan military helicopter crashes, five soldiers killed, police say
23:45 18.04.2024
Greek PM Mitsotakis to meet Erdogan on May 13 in Ankara
22:55 18.04.2024
Guterres: ‘The Middle East is on a knife-edge’
Guterres: ‘The Middle East is on a knife-edge’
22:33 18.04.2024
Hamısı