Spotting a fake Korean visa site in ten seconds — read the end of the domain

WeBring ·

Sites impersonating a "visa, entry permit or booking agent" look identical to the real thing. You will not catch them by looking at the page. Before you hand over a passport number and card details, spend ten seconds on the URL.

Fake visa website detection — a 10-second URL checklist (WeBring information graphic)

Three checks before paying or entering a passport number

  • Check the very end of the domain — is it .go.kr or .gov
  • Stop if one letter looks off (typosquatting)
  • Look the address up with Google Safe Browsing

How the trick works

It comes down to one thing. The real domain is the part at the end.

  • Prefixing — k-eta.go.kr.some-site.com is some-site.com. Everything before it is decoration
  • One-letter swaps — k-eta to k-etaa, gov to g0v, booking to bo0king with a zero
  • Hyphens and subdomains piled up to look official, like official-keta-apply.com
  • Shortened links from an unknown source — you cannot see the end at all
Dispute and scam prevention — handling club disputes and spotting fake visa sites (WeBring information graphic)

There are only two official addresses

Do not tap links that arrive by text or email. Type these two in yourself. That single habit defeats every trick above, because none of them survive you typing the address.

Do this now

  • Bookmark both addresses
  • If you have already entered card details somewhere, call your card issuer to freeze it

Worked examples and how to report a site are on the WeBring blog.

Questions on this topic