Wordfence Research and News

Blog icon
Newest

Chrome and Firefox Phishing Attack Uses Domains Identical to Known Safe Sites

Update on April 19th at noon Pacific time: Chrome has just released version 58.0.3029.81. We have confirmed that this resolves the issue and that our ‘epic.com’ test domain no longer shows as ‘epic.com’ and displays the raw punycode instead, which is ‘www.xn--e1awd7f.com’, making it clear that the domain is not ‘epic.com’. We encourage all Chrome users to …
Read More

Emergency Bulletin: Firefox 0 day in the wild. What to do.

Update at 2:32pm PST / 5:32pm EST: Firefox released a fix for this a few minutes ago.