Tirith Locks Down Shell Commands to Stop Imposter Homoglyph Attacks

1 min read
Source: BleepingComputer
Tirith Locks Down Shell Commands to Stop Imposter Homoglyph Attacks
Photo: BleepingComputer
TL;DR Summary

A new open-source, cross-platform tool called Tirith hooks into major shells to inspect pasted commands for dangerous URLs and other homoglyph tricks, blocking execution locally with sub-millisecond overhead. It defends against homograph domains, terminal injections, pipe-to-shell patterns, dotfile hijacking, insecure transports, supply-chain risks, and credential exposure, while performing analysis offline and without telemetry. It supports Windows, Linux, and macOS and can be installed via Homebrew, apt/dnf, npm, Cargo, Nix, Scoop, Chocolatey, and Docker. It does not hook cmd.exe and has limited independent testing at publication.

Share this article

Reading Insights

Total Reads

1

Unique Readers

3

Time Saved

4 min

vs 5 min read

Condensed

91%

95685 words

Want the full story? Read the original article

Read on BleepingComputer