Check out my post at Techie Report about stopping Punycode phishing attacks.
No matter how much I learn, I’m surprised by the fragility of software and hardware. Punycode was one of my biggest surprises. It has legitimate uses, especially for people who don’t use English as their primary language, but it leaves a hole in the internet’s security.
If you haven’t heard of Punycode, then you’ll want to check out my post on Techie Report. I still have a hard time believing that such a vulnerability exists.