OSS PING
If you are interested in the OSS ping list please mail me
The Mozilla foundation has officially release a workaround for this. Turn off IDN, which has been nothing but a pain and if you turned it off after the last issue you're already fine. In case any of you are wondering IDN is the international domain naming (non UTF8) support that Mozilla and Safari use, it can allow spoofing because some characters in other languages look, in English, enough like something else. This is more a problem with the IDN standard than anything else, I don't think it can be implemented without the risk of spoofing.
Maybe if a browser changed the color of the url field if its using non utf8 characters, but I am sure there is a better way to do it.
This particular problem though was not IDN, it was FireFox code itself..
Please add me to your OSS ping list.