Common Visual Deceptions in Phishing URLS

06/26/2025 09:00:09 AM

In a recent Interisle Insights post I explained how phishers choose domain names in such a way as to fool unsuspecting users by making them appear to be valid for the site they think they are reaching.

Phishers take advantage of common user behavior. They know that people often see what they want to read rather than what appears in a message or hyperlink. They know that our brains correct misspellings, that our brains are selectively attentive (we often overlook repeated words), or that we may not read scrupulously “beginning to end” once we encounter the word, name or string that we expect.

Visual deception in phishing attacks is more present today than many care to admit.

In my post Common Visual Deceptions in Phishing URL Composition I show how phishers will manipulate any and every part of a hyperlink to deceive or confuse users.

#phishing #deception #url #hyperlink #socialengineering