Spammers Abusing Trust in US .Gov Domains(krebsonsecurity.com)
krebsonsecurity.com
Spammers Abusing Trust in US .Gov Domains
http://krebsonsecurity.com/2016/03/spammers-abusing-trust-in-us-gov-domains/
2 comments
It's not hard to not redirect bit.ly but redirect victims that click the link.
Some .gov sites need the redirect for whatever reason, but they could check the referer.
Some .gov sites need the redirect for whatever reason, but they could check the referer.
This is clearly a public safety issue. Private industry should set up a licensing board that regulates government use of technology, contingent on some demonstration of competence.
Ultimately however it would be better to eliminate these insecure redirects because even without bit.ly spammers can use .gov websites to make their link seem more legitimate.