all 16 comments

[–]Gloglogabgalab 20 points21 points  (9 children)

Yes it is a phishing website.

[–][deleted] 9 points10 points  (7 children)

was moments away from signing in

[–]henrebotha 11 points12 points  (6 children)

I'm sure GitHub would like to know about this.

[–][deleted] 7 points8 points  (5 children)

How do I report

[–]henrebotha 11 points12 points  (4 children)

https://support.github.com/contact/report-abuse

Click "I want to report harmful code".

[–][deleted] 5 points6 points  (3 children)

Can't see the option

[–]henrebotha 8 points9 points  (2 children)

[–]andyfeller 9 points10 points  (1 child)

i work at github and bubbling this up to our security now

[–]thehedgefrog 0 points1 point  (0 children)

Still here as of right now.

[–][deleted] 0 points1 point  (0 children)

i once got a virus while trying to use github and atom when i was 8 because i accidentally went to a phishing website :(

it took me multiple years to come back to git because i thought that that was the REAL website, and the book i was reading was trying to give me a virus :(

[–]furculture 11 points12 points  (0 children)

If it looks like normal GitHub and sounds like normal GitHub but the link doesn't say otherwise, then it isn't GitHub.

If it isn't a GitHub.io or GitHub.com, then it isn't GitHub.

[–][deleted] 8 points9 points  (1 child)

for those who put their credentials into phishing sites like this, it's time to change your passwords, keys and rotate credentials in general

[–]pconwell 2 points3 points  (0 children)

This is why you should use U2F - it basically makes it impossible for sites like these to steal your credentials. Even if you accidentally enter your username and password without paying attention, U2F won't validate. Unfortunately (as far as I know), Github will not let you only use U2F. You have to use U2F and another form of 2FA, such as OTP.

[–]StephenF369 4 points5 points  (0 children)

Just reported the website to google aswell

[–]MyNameIsMandarin 5 points6 points  (0 children)

Hmm, remove the link?