Analysis as of July 29, 2026 flags the domain judiblessing21-ship-it.github.io as an active generic phishing site. The domain is registered through GitHub, Inc., and its authoritative name server records are unavailable (NS_NOT_FOUND). DNS resolution points to the GitHub Pages IP address 185.199.108.153, indicating that the attacker is leveraging GitHub’s free hosting service. The domain appears on one external security blocklist and is explicitly listed by the PhishDestroy filtering service, confirming that it has been observed in malicious traffic.
VirusTotal has processed the domain with 91 commercial scanners; none reported a detection, but the lack of detections does not imply benign intent. No SSL certificate details, HTTP response codes, or page title information are currently available, limiting deeper content analysis. Consequently, the primary confidence rests on the blocklist presence, hosting on a known free‑service IP, and the classification as generic phishing.
Defenders should immediately block the FQDN and the associated IP at perimeter and DNS layers, incorporate the domain into web‑filtering and threat‑intel feeds, and monitor for any newly observed subdomains or similar GitHub‑Pages‑based URLs. Continuous re‑scanning with sandbox or URL‑analysis tools is advised to capture any payload changes. Because the infrastructure relies on a widely used hosting provider, any false‑positive mitigation should be validated before broad application.