You must Register or Sign in to your Cyware account to perform this action
×Once you are logged in, you will be able to:
Customize your feeds by selecting categories you like
Comment on or Like an article
Receive the latest security stories, trends, and insights in your inbox
Build your profile and login across multiple devices
Bookmark a story and read it later
To use Cyware you must have cookies enabled. By Registering or Signing in, you agree to our Terms and Privacy Policy. You can also signup using Google Account. We will not use your credentials to import contacts or post anything on your account without your permission.For more info, please see Login FAQ.
- Home
- Hacker News
- Identity Theft, Fraud, Scams
- Beware, online shoppers! Cybercriminals have registered over 100,000 look-alike domains that resemble popular retail websites

Beware, online shoppers! Cybercriminals have registered over 100,000 look-alike domains that resemble popular retail websites
Beware, online shoppers! Cybercriminals have registered over 100,000 look-alike domains that resemble popular retail websites- November 19, 2019
- |
- Identity Theft, Fraud, Scams
- These look-alike domains use valid TLS certificates to appear safe and trusted.
- These fake domains have been created to target 20 retailers in the U.S., U.K., Germany, France, and Australia.
As the opportunities for e-commerce platforms increases, threat actors have found multiple ways to trick online shoppers to steal money and sensitive data.
What’s the new trick?
- According to a recent investigation done by Venafi, it has been found that cybercriminals have registered more than 100,000 look-alike domains that closely mimic the legitimate websites of popular retail websites.
- These look-alike domains use valid TLS certificates to appear safe and trusted.
- The number has almost doubled when compared to 2018 and the TLS certificates used are 400% high.
- These fake domains have been created to target 20 retailers in the U.S., U.K., Germany, France, and Australia. One of the top U.S. retailers has over 49,500 look-alike domains targeting their customers.
- Over half (60%) of the look-alike domains studied use free certificates from Let’s Encrypt.
Protection steps
Online retailers should take several steps to protect their customers. This includes:
- Search and report suspicious domains using Google Safe Browsing. It helps the industry to identify and blacklist dangerous websites.
- Add Certificate Authority Authorization (CAA) to the DNS records of domains and subdomains. By adding CAA records retailers can specify which CAs can issue certificates for domains they own.
Customers are also advised to follow a few basic security tips while shopping online. This includes:
- Check the websites with online scanners to find it’s integrity.
- Check the website safety and reputation before adding personal details.
- Check the website spelling, logo and contact details.
- + Aware
Find articles related to :
Typosquatting Domains, Retail Websites, Phishing Pages, Look-alike Domains, Fake Websites
Get such articles in your inbox
News
-
-
Next News Cybersecurity for Webmasters: How Safe is Your Website?
- November 19, 2019
- |
- Malware and Vulnerabilities
Popular News
Related News
-
How to detect a phishing site?
- November 12, 2019
- |
- Malware and Vulnerabilities
Categories
Get such articles in your inbox
News
-
-
Next News Cybersecurity for Webmasters: How Safe is Your Website?
- November 19, 2019
- |
- Malware and Vulnerabilities
Popular News
Related News
-
How to detect a phishing site?
- November 12, 2019
- |
- Malware and Vulnerabilities
Categories

Previous
Judge in India Slams ISP Piracy Warning for Being Deceptive
Next
Judge in India Slams ISP Piracy Warning for Being Deceptive

/https://cystory-images.s3.amazonaws.com/shutterstock_136199795.jpg)
/https://cystory-images.s3.amazonaws.com/shutterstock_626435660.jpg)
/https://cystory-images.s3.amazonaws.com/shutterstock_302129432.jpg)
/https://cystory-images.s3.amazonaws.com/iStock_000083026757_Medium.jpg)
/https://cystory-images.s3.amazonaws.com/shutterstock_423598096.jpg)
/https://cystory-images.s3.amazonaws.com/shutterstock_202780831.jpg)
/https://cystory-images.s3.amazonaws.com/shutterstock_171257957.jpg)
/https://cystory-images.s3.amazonaws.com/shutterstock_370707185.jpg)
/https://cystory-images.s3.amazonaws.com/shutterstock_503279338.jpg)