How average folks don't stand a chance against phishing, example #78,821,042: Github

• Email from GitHub <[email protected]> with officialegal subject demanding personal information with urgency else undesirable consequences.
• Multiple text links in HTML email including literal "click here to" do not go to known domain, but MSP redirects.
• Visiting https://github.com and looking around shows no sign of this important and urgent change before or after login.
• A web version of the notice can be found on github.blog, but who registered that and when?* whois/Internic doesn't know.

While you and I know how to dig deep enough to validate this kind of thing [or do we just think so?], this is just another in a never-ending stream of emails from companies we trust with our personal information, money, services, etc. training us to fall for phishing far more effectively than any anti-phishing effort can.
As sad as it is to expect this from the usual suspects such as the finance industry (especially mortgage companies), it's sadder to see @github fail this hard.

See also @troyhunt's "Scam" blog posts: https://www.troyhunt.com/tag/scam/

*[Created 2018-05-17, registered to Organization "GitHub, Inc" by the same registrar with which github.com was registered for Organization who-knows-because-privacy (but actually GitHub, Inc. if you ask the registrar), hosted by Knock Knock WHOIS There, LLC, which is the only reason I mention this.]

#Phishing #GitHub #MarkMonitor #whois

Build software better, together

GitHub is where people build software. More than 150 million people use GitHub to discover, fork, and contribute to over 420 million projects.

GitHub

@joepie91 @kelbot @freakazoid #Consolidation and #enshittification has been happening all over the #WebHosting and #domain market. For example, all of the following are just brands of #NewfoldDigital:

#Bluehost
Web.com
#NetworkSolutions (original pre-#ICANN gTLD monopoly)
#HostGator (where I worked)
Register.com
Domain.com
#CrazyDomains
#Markmonitor
#ResellerClub
#iPage
#BigRock
#SiteBuilder
#Vodien
#Yoast
#Yith
#BuyDomains
#SnapNames
#NameJet
#Freeparking

MarkMonitor Wants to Keep Court Transcript Away From “Pro-Piracy” Forces

MarkMonitor's request for a court to seal documents discussing its anti-piracy systems aims to thwart pirates. ISP Cox appears interested.

TF Publishing
Cox Communications: Gericht weist Anfechtung gegen 1 Mrd USD-Urteil zurück

Ein Bundesrichter am US-Bezirksgericht in Virginia wies einen Antrag auf Urteils-Aufhebung von Cox Communications aktuell zurück.

Tarnkappe.info
Anti-Piracy Company Asks Court to Keep Filings Secret as TorrentFreak Might Report On Them

Anti-piracy company MarkMonitor has asked a court to keep filings in a copyright case secret to avoid TorrentFreak reporting on them.

TF Publishing
ISP Wants RIAA and Markmonitor Added to 'False' Piracy Notices Lawsuit * TorrentFreak

ISP Bright House Networks wants to add the RIAA and Markmonitor to the lawsuit it filed over false and deceptive piracy notices.

TorrentFreak
Charter Demands More Evidence from Anti-Piracy Tracking Company * TorrentFreak

ISP Charter wants piracy tracking outfit MarkMonitor to share all evidence it requested as part of an ongoing piracy liability lawsuit.

TorrentFreak