Chrome and Safari users warned: ‘rn’ lookalike links fuel a fresh phishing wave

January 26, 2026
Chrome and Safari users warned: ‘rn’ lookalike links fuel a fresh phishing wave

LONDON, 26 January 2026, 12:11 GMT

  • Phishers are swapping the letter “m” with “rn” in web addresses, creating lookalikes that are tricky to catch on phones
  • Cybersecurity sites reported recent campaigns spoofing Microsoft and Marriott
  • Security experts warn against using links received via email to log in and recommend strengthening sign-in protections

Users of Chrome and Safari face new phishing attacks exploiting tiny URL tricks to impersonate trusted brands. The threat worsens on mobile devices, where crucial details often go unnoticed. 1

Timing is crucial since an increasing number of users handle work, travel, payments, and identity verification on their phones. With a smaller browser address bar and links coming via chat and email, the choice to tap—or not—often comes down to a split second.

“The stakes of one distracted tap are way higher now,” Harley Sugarman, CEO of security firm Anagram, wrote in a LinkedIn post. 2

This tactic is known as a “homoglyph” attack—where scammers exploit characters that look alike. Here, the letters “r” and “n” are combined to mimic an “m” when glanced at quickly. According to Dig.watch, researchers have spotted domains like rnicrosoft.com being used in fake security alerts or invoice emails designed to trick users into handing over their credentials. 3

Cybersecurity News revealed that Netcraft, a security company, uncovered a set of domains mimicking Marriott, like rnarriottinternational.com and rnarriotthotels.com. At the same time, another phishing effort focused on Microsoft users with similar deceptive URLs. The report highlighted typical tricks, such as replacing letters with numbers or inserting hyphens to appear more legitimate. 4

The simplest defense for users is straightforward but reliable: avoid signing in through links in unexpected emails or messages, no matter how genuine the logos or wording appear. Instead, use the official app or manually enter the website address to log in safely.

Password managers come in handy here since they usually won’t auto-fill credentials on the wrong domain. That adds a layer of friction when a phishing site looks genuine.

Security teams can cut risk by blocking known lookalike domains at both the network and email gateway levels. They should also train staff to pause and think when messages push urgency around account security or billing.

Passkeys, which use device-based cryptographic sign-ins to replace passwords, also reduce the risk from stolen credentials. Multi-factor authentication (MFA) requires an additional step—like entering a code or responding to a device prompt—before access is allowed.

The real challenge lies in scale and speed. Attackers can swiftly register new lookalike domains, swap characters on the fly, and trick victims into approving login prompts or sharing one-time codes—no passwords needed.

This episode highlights that the issue isn’t a typical “browser bug.” Instead, it’s a human-factor attack exploiting fonts, tiny screens, and rushed behavior—and it succeeds because people tend to skim rather than read carefully.

Technology News

  • MKBHD says MacBook Neo may be Apple's most disruptive product in over a decade
    March 13, 2026, 9:28 AM EDT. Tech review channel MKBHD calls the new MacBook Neo potentially Apple's most disruptive product in the last 10+ years, signaling a departure from prior designs. The hands-on reception is positive even beyond his own expectations. Earlier, 9to5Mac Editor-in-Chief Chance Miller praised the Neo as a 'truly great Mac at an unbelievable price.' Several reviewers echo the upbeat tone, framing the Neo as capable of shaking up the PC market. The review notes the device could appeal to students, photographers and video editors, among others, and there is a sense that the product's impact could extend beyond its price or specs. Readers have several reviews to consult; the full MKBHD video is featured, with emphasis on buyer segments.

Latest Articles

Electro Optic Systems Stock Jumps 18% After $45 Million Counter-Drone Orders

Electro Optic Systems Stock Jumps 18% After $45 Million Counter-Drone Orders

March 14, 2026
Electro Optic Systems shares surged 18.34% to A$11.74 after announcing US$45 million in new counter-drone orders, including a US$42 million deal with a Middle East customer. The ASX 200 slipped 0.14%. EOS’s new contracts follow regulatory scrutiny over past disclosures and recent volatility triggered by short seller activity. The company’s backlog reached A$459.1 million at the end of 2025.
Telstra Share Price Rises as Buyback Keeps Rolling, Outpacing ASX 200

Telstra Share Price Rises as Buyback Keeps Rolling, Outpacing ASX 200

March 14, 2026
Telstra shares closed at A$5.19 Friday, up 1.37%, after the company bought back 3.49 million shares for about A$18 million this week. The S&P/ASX 200 slipped 0.14% and is down 6.32% in March amid inflation and rate concerns. Telstra outperformed rival TPG Telecom, which ended at A$3.91. The buyback program is set to run until June 30 but can be suspended at any time.
Suncorp Stock Rises 2.6% as Buyback, Dividend and Flood Risk Come Into Focus

Suncorp Stock Rises 2.6% as Buyback, Dividend and Flood Risk Come Into Focus

March 14, 2026
Suncorp Group shares closed 2.6% higher at A$15.62 on Friday, outperforming the S&P/ASX 200’s 0.14% drop. The company reported about 480 insurance claims from severe flooding in Queensland and the Northern Territory this week. Suncorp’s interim dividend of 17 cents per share is due March 31. First-half natural-hazard costs reached A$1.32 billion, well above allowance.