tejal-hande[.]github[.]io
“Site not found · GitHub Pages”
证据摘要
PhishDestroy identifies tejal-hande.github.io as an active LinkedIn credential harvesting domain. The site purports to mimic LinkedIn’s login interface to deceive visitors into surrendering corporate and personal credentials. The campaign is currently live, leveraging GitHub Pages to host spoofed content and collect harvested authentication data. Targets are likely engaged via spear-phishing emails impersonating LinkedIn corporate communications.
This domain was flagged by 17 of 95 VirusTotal security vendors as malicious, indicating early-stage but growing detection across major endpoint protection platforms. It resolves to IP 185.199.108.153 and is registered through GitHub, Inc., a known hosting provider frequently abused in low-friction phishing operations due to Swift page deployment and minimal abuse response times. The domain employs a Let’s Encrypt SSL certificate to enhance authenticity, increasing the likelihood of user trust and credential submission. Based on passive DNS and certificate transparency logs, the domain appears recently registered, but no public creation date is available due to GitHub’s default WHOIS masking.
As of threat review, tejal-hande.github.io remains actively accessible and unresolved in major blocklists. PhishDestroy assesses risk as elevated due to the combination of live hosting, social engineering targeting, and partial detection coverage. Immediate remediation is required: organizations should block the domain at DNS and network levels using exact domain matching (tejal-hande.github.io), block the underlying IP (185.199.108.153), and update email security gateways to detect LinkedIn-themed lures. Users who may have entered credentials should reset passwords immediately, enable multi-factor authentication across all LinkedIn accounts, and scan for follow-on spear-phishing attempts. This site is part of a broader GitHub Pages phishing cluster currently undergoing takedown efforts by GitHub Trust & Safety.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月10日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of tejal-hande.github.io · checked Mar 26, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控