jubilant-octo-guide-nine[.]vercel[.]app
“Naver Sign in”
jubilant-octo-guide-nine.vercel.app — Контент недоступний. Уособлення бренду: Naver; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 18/95 (Criminal IP, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Vercel.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain jubilant-octo-guide-nine.vercel.app was identified as a brand impersonation threat specifically targeting Naver, a widely used South Korean web platform. Analysis confirms the domain hosted a fraudulent login page titled 'Naver Sign in,' designed to harvest user credentials. The threat has since been classified as elevated risk due to its deceptive infrastructure and direct targeting of a major regional service provider. Infrastructure analysis reveals the domain was registered through Vercel Inc. and resolved to the IP address 216.198.79.131, hosted on infrastructure belonging to Amazon.com, Inc. (AS16509) in the United States. Security vendors flagged the domain in 18 of 95 VirusTotal scans, indicating broad recognition of its malicious nature. The domain appeared on two independent security blocklists and was proactively blocked by multiple threat intelligence feeds. The SSL certificate was issued by Google Trust Services under the identifier WR1, a common but not exclusive indicator of legitimate hosting environments repurposed for malicious campaigns. As of the latest assessment, jubilant-octo-guide-nine.vercel.app has been taken offline, reducing immediate exposure risk. However, the infrastructure and tactics observed align with persistent phishing operations targeting regional service providers. Organizations and users are advised to monitor for similar domains using Vercel or other platform-as-a-service providers, particularly those mimicking login portals. Network administrators should update blocklists to include the resolved IP and associated indicators. End users should verify domain authenticity before entering credentials and enable multi-factor authentication on critical accounts to mitigate credential theft risks.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога