Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

chrome keeps both domain and subdomain black, which makes this kind of phishing easy. Firefox have a better approach of keeping black only the main part, and graying out everything else. Yet better solution would be to highlight domain with green color instead of https://, and to scroll urls with very long subdomain to make domain viible.

I rather liked how this[1] firefox addon added a bubble around domain, but kept url as selectable text.

[1] https://addons.mozilla.org/en-US/firefox/addon/smart-text/



An approach like greying out the path would be a good idea if it were in any way desirable for the path to be user-visible by default, but it isn't.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: