vamanjyoti[.]github[.]io
“Site not found · GitHub Pages”
PhishDestroy identifies an active credential-harvesting campaign operating from vamanjyoti.github.io. The domain resolves to IP address 185.199.108.153 and is served over a Let’s Encrypt SSL certificate, lending it an air of legitimacy that masks its true purpose. This is not a generic phishing lure; early telemetry confirms the site is actively prompting victims to surrender usernames, passwords, and multi-factor tokens under the guise of a legitimate service login portal. The campaign is designed to harvest credentials in real time and immediately replay them against targeted organizations, increasing the risk of follow-on account takeovers. This domain was flagged by PhishDestroy with seed e20792. Intelligence reveals zero detections on VirusTotal (7/95 engines), registration through GitHub, Inc., and continued availability on the live web. These indicators suggest the threat actor is leveraging reputable hosting and trusted certificates to bypass automated spam filters and browser warnings. Because the site remains active and undetected by most antivirus engines, users who interact with it face immediate credential compromise and potential lateral-movement attacks within their organizations. If you visited vamanjyoti.github.io and entered any credentials, immediately rotate the exposed passwords and revoke any active session tokens or API keys. Enable phishing-resistant multi-factor authentication wherever possible, and review account login histories for anomalous activity. Report the domain to your security team and block both the domain and the underlying IP 185.199.108.153 at the network perimeter. Continue monitoring for follow-on spear-phishing messages that leverage the harvested credentials.
ネットワークセキュリティインテリジェンス
脅威対応 Pipeline
ブロックリストの確認範囲
10 件の情報源 · 2026年8月10日 に同期
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of vamanjyoti.github.io · checked Mar 26, 2026
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください