RE: The What and Why of Phishing, and How to Avoid It

You are viewing a single comment's thread from:

The What and Why of Phishing, and How to Avoid It

in security •  8 years ago 

That chrome-extension phish is a really nasty one and was probably super easy to do... chrome should totally be adding some builtin protection for things like that because it's particularly insidious. They should probably have a CA and associated cert generated by the browser in-memory on each startup to sign all local pages which will display a special padlock indicator so you at least have a visual prompt for when you're not on your actual settings pages.

Or something more sensible.

Authors get paid when people like you upvote their post.
If you enjoyed what you read here, create your account today and start earning FREE STEEM!
Sort Order:  

Agreed, thankfully LastPass has taken some steps to make it harder to pull off.