Again, it was to be expected that scammers would jump on the new domains ending in – like .support. The interesting thing now is, that as they own the domain they can fake two thing:
If you mouse-over the link, what you see is what is under the link. So, we trained users for years now that they shall move their mouse over the shown link and if they see a mismatch – never click on it. This does not work anymore as e.g. microsoft.supoort or swisscom.support is good enough to trick a certain percentage of users.
Second, as they own