Attacks Using the Newly Released .ZIP Domain Showcased by Researcher

Following Google’s decision to offer a new wave of eight top-level domains
(TLDs), including .zip, a security researcher showed how attackers could use
this domain in a phishing scheme.

The TLDs Google made available are .dad, .phd, .prof, .esq, .foo, .zip, .mov,
and .nexus. From a cybersecurity perspective, the most interesting one is .zip
because it makes way for new attacks.

Security researcher mr.d0x showed how criminals could imitate the looks and
functionality of a file-archiving softwar