Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Code Project
  1. Home
  2. Other Discussions
  3. The Insider News
  4. Why Google's new .zip domain is so dangerous

Why Google's new .zip domain is so dangerous

Scheduled Pinned Locked Moved The Insider News
comdevopsquestion
3 Posts 3 Posters 3 Views 1 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D Offline
    D Offline
    Dan Neely
    wrote on last edited by
    #1

    [Bobbyr @ Medium](https://medium.com/@bobbyrsec/the-dangers-of-googles-zip-tld-5e1e675e59a5):

    Can you quickly tell which of the URLs below is legitimate and which one is a malicious phish that drops evil.exe? https://github.com∕kubernetes∕kubernetes∕archive∕refs∕tags∕@v1271.zip https://github.com/kubernetes/kubernetes/archive/refs/tags/v1.27.1.zip

    If the previous article left you thinking .zip wasn't any worse than other garbage fire TLDs like .biz or .info; it's actually much worse.

    Did you ever see history portrayed as an old man with a wise brow and pulseless heart, weighing all things in the balance of reason? Is not rather the genius of history like an eternal, imploring maiden, full of fire, with a burning heart and flaming soul, humanly warm and humanly beautiful? --Zachris Topelius

    N E 2 Replies Last reply
    0
    • D Dan Neely

      [Bobbyr @ Medium](https://medium.com/@bobbyrsec/the-dangers-of-googles-zip-tld-5e1e675e59a5):

      Can you quickly tell which of the URLs below is legitimate and which one is a malicious phish that drops evil.exe? https://github.com∕kubernetes∕kubernetes∕archive∕refs∕tags∕@v1271.zip https://github.com/kubernetes/kubernetes/archive/refs/tags/v1.27.1.zip

      If the previous article left you thinking .zip wasn't any worse than other garbage fire TLDs like .biz or .info; it's actually much worse.

      Did you ever see history portrayed as an old man with a wise brow and pulseless heart, weighing all things in the balance of reason? Is not rather the genius of history like an eternal, imploring maiden, full of fire, with a burning heart and flaming soul, humanly warm and humanly beautiful? --Zachris Topelius

      N Offline
      N Offline
      Nelek
      wrote on last edited by
      #2

      Select link, save as... First is html Second is a real zip file But I see your point. One has to be damn careful when clicking a link and I guess a huge amount of people will step in the trap sooner or later.

      M.D.V. ;) If something has a solution... Why do we have to worry about?. If it has no solution... For what reason do we have to worry about? Help me to understand what I'm saying, and I'll explain it better to you Rating helpful answers is nice, but saying thanks can be even nicer.

      1 Reply Last reply
      0
      • D Dan Neely

        [Bobbyr @ Medium](https://medium.com/@bobbyrsec/the-dangers-of-googles-zip-tld-5e1e675e59a5):

        Can you quickly tell which of the URLs below is legitimate and which one is a malicious phish that drops evil.exe? https://github.com∕kubernetes∕kubernetes∕archive∕refs∕tags∕@v1271.zip https://github.com/kubernetes/kubernetes/archive/refs/tags/v1.27.1.zip

        If the previous article left you thinking .zip wasn't any worse than other garbage fire TLDs like .biz or .info; it's actually much worse.

        Did you ever see history portrayed as an old man with a wise brow and pulseless heart, weighing all things in the balance of reason? Is not rather the genius of history like an eternal, imploring maiden, full of fire, with a burning heart and flaming soul, humanly warm and humanly beautiful? --Zachris Topelius

        E Offline
        E Offline
        englebart
        wrote on last edited by
        #3

        I think their is a proposed RFC to make the @ part of the URL throw a hard error and not navigate.

        1 Reply Last reply
        0
        Reply
        • Reply as topic
        Log in to reply
        • Oldest to Newest
        • Newest to Oldest
        • Most Votes


        • Login

        • Don't have an account? Register

        • Login or register to search.
        • First post
          Last post
        0
        • Categories
        • Recent
        • Tags
        • Popular
        • World
        • Users
        • Groups