Hacker News new | past | comments | ask | show | jobs | submit login

Yeah, and those “PayPal” emails telling me to enter my creds must be legit because they say “PayPal © 2024” at the bottom, with a link to paypal.com.



Actually fake ones will inevitably show "(c)" because they couldn't get authorization for the copyright key. If you zoom in you can see the gaps in the circle betraying the deception.

To be extra cautious, select it to make sure it's real text and not a screenshot of a real copyright notice - this is a common workaround. There is also one known proof of concept exploit using false glyphs in web fonts - this is why many security researchers disable the loading of fonts.

Subscribe to my Practical Cybersecurity newsletter


©©©©©©©©

I just got 8 of those with no authorization


Have you not heard of responsible disclosure!?


Did you steal them cut and paste?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: