No Homo-Graph

Checks for homo-graphs in the domain name of the current website to prevent phishing.

No Homo-Graph: Preventing Homograph Attacks | Edge Add-on

'No Homo-Graph' is an Edge add-on designed to combat homograph attacks - deceptive tactics where domain names use non-standard character sets to impersonate established websites. This add-on cross-references visited domains with a user-defined list, alerting users if a potential threat is identified. It is not foolproof, but it offers an active line of defense against these insidious scams, raising user awareness and promoting safer browsing.

Add-on stats

By: em_te
Users: 456
18
Rating: 3.50
(2)
Version: 0.2.4 (Last updated: 2020-03-18)
Creation date: 2020-03-18
Risk impact: Moderate risk impact
Risk likelihood:
Manifest version: 2
Permissions:
  • <all_urls>
  • activeTab
  • webNavigation
  • storage
Size: 28.37K

Other platforms

No Homo-Graph (v0.2.5)
0.00 (0) 62
Not available on Android
Not available on Firefox
Want to check extension ranking and stats more quickly for other Edge add-ons? Install Chrome-Stats extension to view Edge-Stats data as you browse the Edge Add-on Store.

Add-on summary

Analyze keywords

About this Add-on: Using computer algorithms, No Homo Graph checks in real-time to see if websites you visit are spelled similar to a user-defined list of domains. If similar matches (a.k.a. homo-graphs) are found, a modal dialog is shown preventing you from interacting with the website until you indicate awareness of the risks involved. The modal dialog is modal to the website only and doesn't prevent you from switching tabs or replacing it with another website altogether. The user-defined list of domains is populated with popular domains like PayPal, Western Union, Google, Yahoo, MyEtherWallet and MoneyGram and the user is free to add and remove from the list.

For example, it will catch things like "paypaᶘ.com" if you have "paypal.com in your list.

How No Homo Graph Works: When you visit a website, this add-on parses the second-level and third-level domain from the URL and calculates the difference between them and the domains in your user-defined list. If the domains are puny-code encoded, they will be converted to Unicode. If the domains contain Cyrillic characters that look like Ascii characters, they will be converted into Ascii. If the difference is below a threshold (2 permutations if the domain is less than 7 characters excluding the TLD), it will alert the user that a match was found.

What are the Limitations?: This add-on is not fool-proof. An attacker can simply make more changes to the domain until it is different enough. But then it becomes easier to spot with the naked eye.

How is my Information Stored?: All info is stored locally on your computer.

What are Homo-Graph Attacks?:

See more

User reviews

不知道有什么用
by , 2021-03-20

by 子恒, 2020-07-17
View all user reviews

Add-on safety

Risk impact

No Homo-Graph requires a few sensitive permissions. Exercise caution before installing.

Risk likelihood

No Homo-Graph has earned a fairly good reputation and likely can be trusted.

Upgrade to see risk analysis details