suguna-ayyappan[.]github[.]io
“Site not found · GitHub Pages”
ملخص الأدلة
PhishDestroy identifies suguna-ayyappan.github.io as an active credential harvesting domain masquerading as a legitimate login portal. The site leverages GitHub Pages' reputation to deceive users into submitting sensitive credentials, creating an immediate risk of account takeover and unauthorized access. This domain should be treated as an elevated threat requiring urgency. The site resolves to IP 185.199.108.153 and was registered through GitHub, Inc., likely as part of an abuse of GitHub Pages hosting for malicious purposes. VirusTotal analysis confirms 11 out of 95 security vendors have flagged this domain as malicious, with a presence on 1 blocklist coordinated by OpenPhish, a recognized phishing intelligence feed. While the domain uses a valid Let’s Encrypt SSL certificate, this alone does not indicate trustworthiness, as threat actors routinely abuse free certificates for legitimacy signaling. The registration mechanism via GitHub Pages allows threat actors to rapidly deploy spoofed landing pages without direct domain ownership, increasing operational speed and evasiveness. Given its confirmed credential harvesting intent, users are strongly advised to avoid interacting with any login forms or input fields on this page. Organizations should block this domain at network and DNS levels. If credentials were accidentally submitted, users must immediately reset passwords, enable multi-factor authentication, and monitor for signs of credential stuffing or account compromise. Always verify URLs visually and use bookmarks rather than links for sensitive logins. Report this domain to your security team or via platforms like OpenPhish for collective defense.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of suguna-ayyappan.github.io · checked Mar 29, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب