Be wary of the Internet addresses you type or click on in an email: some URLs are deliberately faked to lead you to fraudulent sites in order to mislead and defraud you!
You may have already had the bitter experience of this:
you are on another website, an imitation intended to deceive you. In fact, you have probably made a typo, a spelling mistake, reversed, added or forgotten letters, and you came across a typosquatting (or typosquatting).The goal of typosquatting is to
relies on confusion or simple human error, such as a typo (gogle.com instead of google.com, indeeed.fr instead of indeed.fr), a spelling error (amazonne.fr instead of amazon .fr), the addition or removal of a hyphen (iledefrance.mobilites.fr instead of iledefrance-mobilites.fr), a bad domain extension (impots.gouv.com instead of impots.gouv .fr), etc. It happened quickly!The typosquatting technique to feed fraudulent sites
well-optimized pages containing ads or pornographic content, which generate high revenue streams for their owners. Sometimes they also harbor malware, like
Hackers can also use typosquatting for their phishing campaigns. They then pretend to be an official organization such as Social Security, the Tax Center or the Family Allowance Fund, and send you a message by email or SMS inviting you to update data or identify yourself to resolve a technical problem and resolve a situation. To do this, you are invited to click on a link leading to a fraudulent site. Thanks to typosquatting, its URL is very close to the official address, which can give you confidence and make you lower your guard. Here are some examples of deceptive Internet addresses whose domain names have already been registered by hackers in the past in order to set up scams:
- amanzon.fr
- almeli.fr
- amleli.fr
- applle.fr
- applr.fr
- cdiscounte.fr
- chronopostfr-suivi-colis.fr
- colisssimo.fr
- spaceclientcanl.fr
- fenac.fr
- free-box.fr
- gogole.fr
- google.fr
- jacquietmichel.fr
- lebomcoin.fr
- labanquepotale.fr
- lacaf.fr
- wwwimpotsgouv.fr
- wwwlaretraite.fr
In short, you understand the principle! To avoid being fooled, remember to always check the site address and pay attention to its spelling before clicking on it. Do not hesitate toPharos.
check that the visited site is secure and authenticated by an SSL certificate: if there is no small padlock in front of the URL and it begins with “ – ” -, therefore the . Finally, don’t forget to report any fraudulent messages to the Signal Spam services and