Imitation may be the sincerest form of flattery, but “immitation”—or “imittation,” or “imitatioon”—may be the sincerest sign of a typosquatting cyberfraudster.
Cybersecurity firm Cado Security recently spotted a suspicious domain that looked identical to its usual site, minus an only slightly misspelled URL.
What concerned Cado solutions engineer Paul Scott more than a typosquatting attack—a longtime tactic used by threat actors to trick users into visiting malicious replicas of a known destination—was the scale of the operation and the number of companies seemingly targeted by one campaign.
“It’s either one person doing this constantly, all the time—or more likely, a small group of people doing this as their way of generating income,” Scott told IT Brew.
Mission imposter-ble. During a recent routine check, the Cado team spotted a site that “bore a striking resemblance,” according to an August 21 blog post, to the cybersecurity company’s corporate domain.
Read the rest here.—BH
|