> As such you shouldn't depend on the DNS to return reliable data, if > it matters encrypt it using established chains of trust, be it GPG or > HTTPS.
That's the problem here. You can buy a valid SSL certificate for your homographic domain. The chain of trust is broken. Certificate agencies should immediately introduce procedures to prevent frivolous homograph domains from being certified.
Arthur