Return-Path: Received: from eikenes.alvestrand.no ([unix socket]) by eikenes.alvestrand.no (Cyrus v2.1.11-Mandrake-RPM-2.1.11-1mdk) with LMTP; Wed, 16 Feb 2005 01:48:48 +0100 X-Sieve: CMU Sieve 2.2 Return-Path: Received: from localhost (localhost.localdomain [127.0.0.1]) by eikenes.alvestrand.no (Postfix) with ESMTP id BE07D61BDB for ; Wed, 16 Feb 2005 01:48:48 +0100 (CET) Received: from eikenes.alvestrand.no ([127.0.0.1]) by localhost (eikenes.alvestrand.no [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 03060-08 for ; Wed, 16 Feb 2005 01:48:46 +0100 (CET) Received: from psg.com (psg.com [147.28.0.62]) by eikenes.alvestrand.no (Postfix) with ESMTP id 9623561B9A for ; Wed, 16 Feb 2005 01:48:46 +0100 (CET) Received: from majordom by psg.com with local (Exim 4.44 (FreeBSD)) id 1D1DKt-0009tr-6X for idn-data@psg.com; Wed, 16 Feb 2005 00:46:35 +0000 Received: from [63.247.74.122] (helo=montage.altserver.com) by psg.com with esmtp (Exim 4.44 (FreeBSD)) id 1D1DKp-0009tY-Td for idn@ops.ietf.org; Wed, 16 Feb 2005 00:46:32 +0000 Received: from lns-p19-4-idf-82-65-252-32.adsl.proxad.net ([82.65.252.32] helo=jfc.afrac.org) by montage.altserver.com with esmtpa (Exim 4.44) id 1D1DKl-0004In-0q; Tue, 15 Feb 2005 16:46:29 -0800 Message-Id: <6.1.2.0.2.20050216013649.02ec2c20@mail.jefsey.com> X-Sender: jefsey+jefsey.com@mail.jefsey.com X-Mailer: QUALCOMM Windows Eudora Version 6.1.2.0 Date: Wed, 16 Feb 2005 01:43:51 +0100 To: "Kane, Pat" , ' "Martin v. LXwis" ' , tedd From: "JFC (Jefsey) Morfin" Subject: RE: [idn] homograph attacks Cc: idn@ops.ietf.org, ericj@shmoo.com In-Reply-To: References: Mime-Version: 1.0 Content-Type: text/plain; charset="iso-8859-1"; format=flowed Content-Transfer-Encoding: 8bit X-AntiAbuse: This header was added to track abuse, please include it with any abuse report X-AntiAbuse: Primary Hostname - montage.altserver.com X-AntiAbuse: Original Domain - ops.ietf.org X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12] X-AntiAbuse: Sender Address Domain - jefsey.com X-Source: X-Source-Args: X-Source-Dir: Sender: owner-idn@ops.ietf.org Precedence: bulk X-Virus-Scanned: by amavisd-new at alvestrand.no X-Amavis-Alert: BAD HEADER Non-encoded 8-bit data (char F6 hex) in message header 'To' To: ...isign.com>,\n\t' "Martin v. L\366wis" ' VeriSign does prevent domains with the Russian language tag from commingling >A-Z with the Cyrillic characters. It does permit 0-9 and the dash to be >used. This filter also applies to other Cyrillic based languages such as >Belarusian, Ukrainian, Serbian, Macedonian and Bulgarian. > >There are other languages that are listed within ISO 639-2 that today use a >combination of Latin and Cyrillic as they were originally Latin based (Tajik >was Arabic prior to being Latin based), migrated to Cyrillic during the >Soviet era and today are migrating back to Latin. It is common to use Latin >and Cyrillic characters in Tajik, from what I understand not being a native >speaker. Granted there are not a lot of registrations in com net that are >Tajik, but this is just the point of an IDN. > >Pat Kane > > >-----Original Message----- >From: owner-idn@ops.ietf.org [mailto:owner-idn@ops.ietf.org] On Behalf Of >"Martin v. Löwis" >Sent: Tuesday, February 15, 2005 2:02 PM >To: tedd >Cc: idn@ops.ietf.org; ericj@shmoo.com >Subject: Re: [idn] homograph attacks > >tedd wrote: > > You all knew this was going to happen. > > > > http://www.p&1072;ypal.com > >Indeed. However, I am somewhat disheartened that this could >happen. IMO, Verisign should have never have registered that >domain - the registrar should have provided a language for >the label, that language should have been "Russian" (or >else &1072; should not have been allowed), and this combination >of Cyrillic and Latin letters should not be allowed for the >Russian language. > >Regards, >Martin