[cap-talk] Webkeys vs. the web

Karp, Alan H alan.karp at hp.com
Wed Apr 1 16:56:58 EDT 2009


Rob Meijer wrote:
> 
> Wouldn't the visual lexical difference be sufficient?
> People seem to understand not to go and unintendedly share an URI like:
> 
>     ftp://bob:S3cr3t@ftp.alice.com/foo/
>
There's plenty of evidence that most people don't parse URLs.  See http://www.deas.harvard.edu/~rachna/papers/why_phishing_works.pdf.  I know that I didn't see any danger in the URL until I looked a second time.

________________________
Alan Karp
Principal Scientist
Virus Safe Computing Initiative
Hewlett-Packard Laboratories
1501 Page Mill Road
Palo Alto, CA 94304
(650) 857-3967, fax (650) 857-7029
http://www.hpl.hp.com/personal/Alan_Karp




More information about the cap-talk mailing list