Fixing the IDN problem in Mozilla

Most people will have come across the IDN vulnerability in Mozilla and other browsers, where www.pаypal.com was registered, with the first “a” actually being a Unicode character, а, that looks like an “a“.
I think Mozilla should fix this by displaying non-ASCII characters in the Location bar in red. So http://www.pаypal.com/ would actually look like http://www.pаypal.com/. This isn’t unfair to non-ASCII users, since their URLs won’t look weird; an entirely Russian URL would be entirely in red, and therefore wouldn’t stand out.

More in the discussion (powered by webmentions)

  • (no mentions, yet.)