suguna-ayyappan[.]github[.]io
“Site not found · GitHub Pages”
证据摘要
PhishDestroy identifies suguna-ayyappan.github.io as an active credential harvesting domain masquerading as a legitimate login portal. The site leverages GitHub Pages' reputation to deceive users into submitting sensitive credentials, creating an immediate risk of account takeover and unauthorized access. This domain should be treated as an elevated threat requiring urgency. The site resolves to IP 185.199.108.153 and was registered through GitHub, Inc., likely as part of an abuse of GitHub Pages hosting for malicious purposes. VirusTotal analysis confirms 11 out of 95 security vendors have flagged this domain as malicious, with a presence on 1 blocklist coordinated by OpenPhish, a recognized phishing intelligence feed. While the domain uses a valid Let’s Encrypt SSL certificate, this alone does not indicate trustworthiness, as threat actors routinely abuse free certificates for legitimacy signaling. The registration mechanism via GitHub Pages allows threat actors to rapidly deploy spoofed landing pages without direct domain ownership, increasing operational speed and evasiveness. Given its confirmed credential harvesting intent, users are strongly advised to avoid interacting with any login forms or input fields on this page. Organizations should block this domain at network and DNS levels. If credentials were accidentally submitted, users must immediately reset passwords, enable multi-factor authentication, and monitor for signs of credential stuffing or account compromise. Always verify URLs visually and use bookmarks rather than links for sensitive logins. Report this domain to your security team or via platforms like OpenPhish for collective defense.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of suguna-ayyappan.github.io · checked Mar 29, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控