Hardenize has joined Red Sift! Find out more in our blog post.

Labs

Confusables: Detection of Phishing Hostnames

With the introduction of mandatory Certificate Transparency support for all public certificates, the world gained a valuable repository of data. With this project, we mine all the available information to find evidence of phishing activity and other obfuscation in the DNS. We monitor all public certificates as they are issued, extract the hostnames from them, and analyze each name for obfuscation clues. This page shows a small number of recent discoveries for a selected number of high-profile keywords. The detection techniques we use are described in this blog post. Custom keyword phishing monitoring is a feature of our commercial monitoring platform.

Discovered Time Hostname