👋 Hey! Were you looking for caixabank.com
?
Well, then you've been tricked 😜
Check your address bar 👁️👄👁️ Do you see caixabank.com
?
Take a closer look at the first a
letter that appears 🔍
It's not actually an a
but an ą
(an a with an ogonek)
A slight visual difference, but a huge difference technically
This domain cąixabank.com
and the legit domain caixabank.com
are completely different domains
And I own this one to warn you that attackers could use this trick against you
But an attacker could use it in a phishing attack, displaying a website that looks alike the legit one but that sends sensitive data to them
This attack is known as an IDN homograph attack