What about displaying the organization in front of the security padlock, because it is the organization I trust, or not, and not the domain name. I did this for MultiZilla and it looks like this:

http://multizilla.mozdev.org/screenshots/features/spoofing/secure-host.jpg

A fake site won't be able to use the same organization so it might look like this:

http://multizilla.mozdev.org/screenshots/features/spoofing/fake-host.jpg

I also change the background of the location bar to orange, and it looks like this with MultiZilla installed:

http://multizilla.mozdev.org/screenshots/features/spoofing/unicode-host.jpg

but people blame me on MozillaZine for adding a 'stupid color' which I can't agree less with because Mozilla Firefox already change the background color into a light yellow background color for secure sites, so it can't be that stupid. Btw, with MultiZilla installed it looks like this:

http://multizilla.mozdev.org/screenshots/features/spoofing/plain-host.jpg

Most people are used to traffic lights and a simple color change is dead easy, even for children or newbies, so it won't be hard to get them secure or notified about a possible security problem.

The color blind will still see some sort of change, but might not see the actual color, but the color change is still good, because they know that something isn't right (I know this because I have a color blind brother and he's Ok with my work).

Changing the background color also has another advantage, especially for people that hide the status bar.

/HJ
_______________________________________________
Mozilla-security mailing list
[email protected]
http://mail.mozilla.org/listinfo/mozilla-security

Reply via email to