Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

RedAlert.me false positive #2942

Closed
2 tasks
tina-hello opened this issue Jun 18, 2024 · 2 comments
Closed
2 tasks

RedAlert.me false positive #2942

tina-hello opened this issue Jun 18, 2024 · 2 comments
Assignees
Labels
allow Allow domain(s)

Comments

@tina-hello
Copy link

Which AdBlocker/DNS cloud service do you use?

AdGuard Home

Other

No response

ControlD users

  • IMPORTANT - I assure that I have not set the Block Response in ControlD to Custom or Branded and can confirm that the problem still occurs.

NextDNS users

  • IMPORTANT - I can assure that I disabled the block page in NextDNS and can confirm that the problem still occurs.

With which block list(s) does the problem occur?

Threat Intelligence Feeds

Which domain(s) should be unblocked?

redalert.me

Why should the domain(s) be unblocked?

The domain is the legit domain for the rocket alert app in Israel https://redalert.me/. Cloudflare Radar indicate that redalerts.me is a malicious domain https://radar.cloudflare.com/domains/domain/redalerts.me, so the inclusion of the legit domain is probably a typo.

@tina-hello tina-hello added the allow Allow domain(s) label Jun 18, 2024
@tina-hello
Copy link
Author

https://blog.cloudflare.com/malicious-redalert-rocket-alerts-application-targets-israeli-phone-calls-sms-and-user-information/ talked about the malicious redalerts.me (with s), and linked to the legit GitHub repo https://github.com/eladnava/redalert-android, which in turn confirm that the legit domain is indeed redalert.me (without s)

Copy link

Thank you for your support. The domain(s) has/have been added to the allowlist and will be removed with the next full release at the latest. A full release is usually performed every 24 hours.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
allow Allow domain(s)
Projects
None yet
Development

No branches or pull requests

2 participants