Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

⚠Phishing Website Warning!!! There are phishing website links in the document. #28839

Closed
ouweiya opened this issue Apr 15, 2024 · 6 comments · Fixed by reactjs/react.dev#6754

Comments

@ouweiya
Copy link

ouweiya commented Apr 15, 2024

Phishing Website Warning!!! There are phishing website links in the document.

Document address:
https://react.dev/learn/referencing-values-with-refs#adding-a-ref-to-your-component

This domain is very cunning, redirecting to different websites based on the region of the request. If it's a user from the United States, it redirects to https://nearestnabors.com/. If it's from an Asian country, it redirects to a gambling website.

Phishing website:
http://rachelnabors.com/

chrome_fhsWySDmjC.mp4

IP USA:

usa.mp4

IP HongKong:

hongkong.mp4
@ouweiya ouweiya added the Status: Unconfirmed A potential issue that we haven't yet confirmed as a bug label Apr 15, 2024
@TheJarX
Copy link

TheJarX commented Apr 15, 2024

Just checked. Seems to be fixed now. It redirects to the updated domain.

@TheJarX
Copy link

TheJarX commented Apr 15, 2024

Something with your DNS server maybe?
image

@ouweiya
Copy link
Author

ouweiya commented Apr 15, 2024

Just checked. Seems to be fixed now. It redirects to the updated domain.

I have updated the issues, please check again.

@kassens kassens added Type: Bug and removed Status: Unconfirmed A potential issue that we haven't yet confirmed as a bug labels Apr 15, 2024
@kassens
Copy link
Member

kassens commented Apr 15, 2024

I still see some ad page on http://rachelnabors[dot]com/
My guess is the domain expired and we should update it.

@rickhanlonii
Copy link
Member

It looks like the github pages CNAME for rachelnabors.com is being squatted:

When the CNAME in the real repo changed to 2024.rachelnabors.com, github started to resolve the root domain (without the 2024) to the fake repo. @rachelnabors you can fix this CNAME attack by Verifying your custom domain so only your repos can set a CNAME for that domain.

@TheJarX
Copy link

TheJarX commented Apr 15, 2024

Nice catch @rickhanlonii. Repo reporte for visibility 👍🏻

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging a pull request may close this issue.

4 participants