Skip to main content

Don’t mistype that URL, as it could lead to malware

researchers use ambient light sensor data to steal browser exhausted man computer problems desk hacking hackers malware frust
Shutterstock
Typo prone? You may want to clean up your act. In a malicious trend known as typosquatting, hackers are now taking advantage of our fast fingers and careless errors, attempting to send malware onto Macs by way of mistyped URLs. According to the security company Endgame, a whopping 300 popular .com sites have been registered in Oman, whose top level domain is .om. But this is only a cover — the .om sites try to load OS X malware known as Genieo onto the Apple devices of unsuspecting users.

Endgame first came across typosquatting when an employee made a typo in “www.netflix.com,” instead typing, “netflix.om.” As Endgame notes, “He did not get a DNS resolution error, which would have indicated the domain he typed doesn’t exist.  Instead, due to the registration of “netflix.om” by a malicious actor, the domain resolved successfully.” Luckily, being an Endgamer, he was able to spot the malware, and “retreated swiftly, avoiding harm.”

Other less savvy users, however, may not have been as lucky. The malware Genieo, Endgame notes, is a rather “common OS X malware/adware variant” that “typically infiltrates the user’s system by posing as an Adobe Flash update.” If the user accepts the update, then Genieo “entrenches itself on the host by installing itself as an extension on various supported browsers (Chrome, Firefox, Safari).”

Typosquatting isn’t all that new — indeed, malware has previously been delivered by way of mistyped addresses. But Endgame does say that it hasn’t previously come across “.om abuse.” So how concerned should we be? The security firm suggests, “Our research also indicates that .om domains associated with the vast majority of major brands may be unregistered. It does not appear that are widely including the .om in their typosquatting mitigation strategies. We strongly recommend doing so.”

So be careful when you’re typing, friends. This is one type of “om” you want nothing to do with.

Editors' Recommendations

Lulu Chang
Former Digital Trends Contributor
Fascinated by the effects of technology on human interaction, Lulu believes that if her parents can use your new app…
Don’t buy the new MSI Claw handheld — at least not yet
Sonic Superstars running on the MSI Claw.

Don't buy the new MSI Claw handheld, at least not yet. After being announced in January, MSI confirmed that its Windows-based handheld gaming PC would launch on March 8 through the official MSI store -- today, if you're reading this article the day it's published. It says units will start shipping on March 12, with retailers selling them by March 15. MSI has confirmed that there won't be any reviews for the handheld in the near future, unless a media outlet happens to get their hands on what is described as a "very limited" initial run.

Buying any new product before third-party reviewers can poke and prod it is problematic, but the MSI Claw is an even riskier venture. It's not only MSI's first handheld gaming PC ever, but it's also launching with one of Intel's Core Ultra CPUs. We don't know how this chip will perform inside the Claw, and that's a problem for the Claw without any independent reviews.
A new challenger

Read more
Whatever you do, don’t buy a MacBook Air right now
Apple's 15-inch MacBook Air placed on a desk with its lid closed.

Got your eye on a shiny new MacBook Air? We can’t blame you, they're fantastic laptops. But before you pull the trigger, you should consider holding off for a few more weeks.

At some point in March, Apple is expected to unveil a new generation of the MacBook Air, either at an event or via a press release. This forthcoming laptop will reportedly come loaded with Apple’s new M3 chip, giving the MacBook Air a notable performance boost.

Read more
I never knew I needed this mini Mac app, but now I can’t live without it
Apple MacBook Pro 16 downward view showing keyboard and speaker.

Switching apps is something I do countless times every day on my Mac, so much so that I don’t ever think anything of it. That is until recently, when I discovered a new app that has me flipping windows in a new (and much-improved) way.

That app is called Quick Tab, and it’s designed to make app switching a little more painless. Now, I’ll admit that I’ve never thought of the traditional Command-Tab key combination as all that painful, but Quick Tab has swiftly shown me what I’ve been missing.

Read more