TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Behold, a password phishing site that can trick even savvy users

43 pointsby incompleteabout 3 years ago

5 comments

soaredabout 3 years ago
Creating fake dialogue boxes and windows is nothing new, that has been around forever. Maybe using css to determine the os/browser and mimic each one’s style is the new concept. I’ll believe it when someone can show me a webpage that proves it live.
评论 #30759776 未加载
评论 #30759385 未加载
tcbawoabout 3 years ago
This is another reason I use a password manager. I will rarely ever manually type or paste my password anywhere.
评论 #30761908 未加载
Zuiderabout 3 years ago
The article does provide a test to distinguish authentic login pages from ones spoofed via CSS:<p>&gt;Genuine OAuth or payment windows are in fact separate browser instances that are distinct from the primary page. That means a user can resize them and move them anywhere on the monitor, including outside the primary window.
riidomabout 3 years ago
Using an uncommon browser with non-default settings on an uncommon OS makes me a good target for finger-printing. Seems this kind of stuff is the upside now, where I would easily spot the differences (probably, would also like to interact with a working example).
titaniumtownabout 3 years ago
I&#x27;ll definitely see the difference with my gtk theme lol