首页> 外文会议>International conference on information secyruty >Soundsquatting: Uncovering the Use of Homophones in Domain Squatting
【24h】

Soundsquatting: Uncovering the Use of Homophones in Domain Squatting

机译:声音抢注:发现域名抢注中使用同音机

获取原文

摘要

In this paper we present soundsquatting, a previously unre-ported type of domain squatting which we uncovered during analysis of cybersquatting domains. In soundsquatting, an attacker takes advantage of homophones, i.e., words that sound alike, and registers homophone-including variants of popular domain names. We explain why soundsquatting is different from existing domain-squatting attacks, and describe a tool for the automatic generation of soundsquatting domains. Using our tool, we discover that attackers are already aware of the principles of soundsquatting and are monetizing them in various unethical and illegal ways. In addition, we register our own soundsquatting domains and study the population of users who reach our monitors, recording a monthly average of more than 1,700 non-bot page requests. Lastly, we show how sound-dependent users are particularly vulnerable to soundsquatting through the abuse of text-to-speech software.
机译:在本文中,我们介绍了声音抢注,这是我们在分析域名抢注域时发现的一种以前未报告的域抢注类型。在抢注中,攻击者利用了同音字,即听起来相似的单词,并注册了同音字,包括流行域名的变体。我们将说明为何声音抢注与现有的域名抢注攻击有所不同,并描述了自动生成声音抢注域的工具。使用我们的工具,我们发现攻击者已经意识到了抢占原则,并正在以各种不道德和非法的方式将其货币化。此外,我们注册了自己的声音抢注域,并研究了达到我们显示器的用户总数,每月平均记录了1,700多个非漫游器页面请求。最后,我们展示了声音依赖型用户如何通过滥用文本到语音软件特别容易遭受声音抢注。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号