Typosquatting
Like a knockoff store subtly tweaking a letter on its storefront sign, it is a digital trap that preys on tiny typos in your browser's address bar.
Definition Typosquatting is a cyberattack where scammers register fake domains nearly identical to well-known websites, specifically targeting common spelling mistakes made when typing web addresses. When users mistype a URL, they are lured to an imposter site designed to steal financial credentials or spread malware.
A Typo Trap in Your Path
Everyone has accidentally left out a letter or hit an adjacent key while hastily typing a web address for a popular search engine or online store. For instance, aiming for the letter 'o' on a standard keyboard and hitting 'p' or 'i' right next to it instantly creates an entirely wrong address.
Attackers carefully study these common, hurried typing mistakes. They purchase misspelled domains in advance and set up counterfeit websites that look identical to the real thing.
Without realizing they made a typo, visitors enter their sensitive login credentials into the fake login box. This tactic of buying up misspelled domains in advance to exploit keyboard mistakes is called typosquatting.
Three Main Goals of Imposter Sites
Cybercriminals buy misspelled domain names for several clear reasons. The most common motive is phishingโtricking visitors out of personal information and money. By mimicking real banks or payment services, they steal account passwords and credit card numbers.
Another goal is spreading malware. Visitors who land on the wrong address might unknowingly download malicious software or get infected with ransomware that locks their files and demands payment.
Finally, attackers often hijack web traffic to earn ad revenue or extort the original brand to buy the domain back at an inflated price. By capturing thousands of visitors heading to popular sites, they profit from forced ads.
A Closer Look: Visual Trickery
To be precise, typosquatting has evolved beyond simple spelling mistakes into sophisticated visual deception. A classic trick is swapping visually similar characters, such as the lowercase letter 'l', the number '1', or the uppercase letter 'I'.
More recently, attackers have adopted IDN homograph attacks, which use foreign characters that look identical to standard Latin letters but are interpreted completely differently by computers. Even if the address appears legitimate in your browser bar, it directs you to a fraudulent site, making it nearly impossible to spot with the naked eye.
To stay safe, make a habit of accessing frequently used financial sites or portals via bookmarks rather than typing URLs by hand. Searching through trusted search engines or using official apps is another great way to avoid fake links.
๐ค Common misconceptions
Typosquatting is just an accidental user mistake, not a real cyberattack.
It is a premeditated cyberattack where criminals purchase lookalike domains in advance and build convincing fake sites to exploit predictable human errors.
You can avoid typosquatting 100% of the time just by checking the spelling closely.
Some attacks use lookalike characters from different alphabets that appear identical to the naked eye, making visual inspection alone insufficient.
๐งบ Where you meet it
A cyber trap that preys on browser URL typos by setting up imposter websites to steal credentials or money.