Observed arrival · 2026-08-28
The IDN Homograph Attack Explorer
An educational cybersecurity lesson showing how Unicode lookalikes and Punycode can make a malicious domain resemble a trusted one.
Field notes
The lesson moves from Unicode lookalikes to the attack sequence, then compares characters directly and discusses browser handling. One example identifies Latin “a” as U+0061 and Cyrillic “а” as U+0430, while the checklist flags non-ASCII characters, mixed writing systems, and xn-- Punycode labels. The page also links to Unicode UTS #39, ICANN guidance, and research, and separately offers an interactive tool whose behavior is not visible in the extract.
Observed signals
Read the marks
Editorial observations of this landing page, not a rating.
One card from the complete issue