suguna-ayyappan[.]github[.]io
“Site not found · GitHub Pages”
Kanıt özeti
PhishDestroy identifies suguna-ayyappan.github.io as an active credential harvesting domain masquerading as a legitimate login portal. The site leverages GitHub Pages' reputation to deceive users into submitting sensitive credentials, creating an immediate risk of account takeover and unauthorized access. This domain should be treated as an elevated threat requiring urgency. The site resolves to IP 185.199.108.153 and was registered through GitHub, Inc., likely as part of an abuse of GitHub Pages hosting for malicious purposes. VirusTotal analysis confirms 11 out of 95 security vendors have flagged this domain as malicious, with a presence on 1 blocklist coordinated by OpenPhish, a recognized phishing intelligence feed. While the domain uses a valid Let’s Encrypt SSL certificate, this alone does not indicate trustworthiness, as threat actors routinely abuse free certificates for legitimacy signaling. The registration mechanism via GitHub Pages allows threat actors to rapidly deploy spoofed landing pages without direct domain ownership, increasing operational speed and evasiveness. Given its confirmed credential harvesting intent, users are strongly advised to avoid interacting with any login forms or input fields on this page. Organizations should block this domain at network and DNS levels. If credentials were accidentally submitted, users must immediately reset passwords, enable multi-factor authentication, and monitor for signs of credential stuffing or account compromise. Always verify URLs visually and use bookmarks rather than links for sensitive logins. Report this domain to your security team or via platforms like OpenPhish for collective defense.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of suguna-ayyappan.github.io · checked Mar 29, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin