ca-portal-test[.]pages[.]dev
“Conditional Access Assessment Portal”
Kanıt özeti
Analysis indicates that the domain ca-portal-test.pages.dev is an active phishing portal targeting Conditional Access authentication workflows. The domain was registered on June 15, 2026, through Cloudflare, Inc., and currently resolves to the IP address 188.114.96.3. The page title, 'Conditional Access Assessment Portal,' suggests an attempt to mimic enterprise identity and access management (IAM) systems, though the exact content and targeted brand remain unconfirmed due to lack of direct inspection. Infrastructure analysis reveals the use of Cloudflare hosting, HTTP/3, and HSTS, which may be employed to lend legitimacy or evade detection. The SSL certificate is issued by Google Trust Services, a common but not inherently malicious provider. As of July 12, 2026, the domain is flagged by 9 of 95 security vendors on VirusTotal and appears on one security blocklist, including PhishDestroy. The Gridinsoft trust score of 0/100 further supports its classification as malicious. Defenders should treat this domain as high-risk. The combination of a recently registered domain, Cloudflare hosting, and a page title indicative of IAM phishing warrants immediate blocking at the DNS or proxy level. Network logs should be reviewed for connections to 188.114.96.3 or the domain name, particularly from endpoints with access to enterprise authentication systems. No evidence of a specific phishing kit or targeted brand has been identified in available intelligence, so additional forensic analysis may be required if compromise is suspected.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
VirusTotal
0 → 9
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of ca-portal-test.pages.dev · checked Jul 13, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin