serverless-dns / blocklists

An opinionated collection of blocklists for RethinkDNS.
https://rethinkdns.com/configure
Mozilla Public License 2.0
84 stars 24 forks source link

Block all IDNs #109

Open ignoramous opened 1 year ago

ignoramous commented 1 year ago

As in, block all domains that begin with xn--?

Ref: https://github.com/serverless-dns/blocklists/pull/100

Ex: https://raw.githubusercontent.com/DandelionSprout/adfilt/master/Special%20security%20lists/IDNHomographProtectionTotal.txt

Also: https://github.com/cbuijs/accomplist/blob/master/homograph/plain.black.domain.list

cbuijs commented 1 year ago

Mind that the ace/punnycode based IDN domains, can have xn-- anywhere in the domain-name, not only at the beginning.