攻击者会在特定仓库at用户,触发Github的邮件通知,通知里面包含一个github.io的地址,当你点击之后会跳转到Oauth授权界面 攻击页面存放仓库 https://github.com/info-notify/info-notify.github.io Oauth归属人: https://github.com/the-request 目前已知相关Issues仓库: https://github.com/705039/notification https://github.com/7051294/warning https://github.com/7059823/warning https://github.com/70512093/notification https://github.com/7051294/Security https://github.com/7058492/notification https://github.com/705182/Security https://github.com/705019/notification https://github.com/7052379/warning https://github.com/705214/Security https://github.com/705219/Security https://github.com/705039/Security https://github.com/7059284/warning 1 个帖子 - 1 位参与者 阅读完整话题


  • 情报分类:技术价值
  • 命中依据:GitHub OAuth钓鱼攻击,安全防护提醒
  • 来源:服务器 / LINUX DO - 最新话题
  • 原作者:xddddddd
  • 发布时间:2026/9/9 17:08:54