Sigh. I am sad SourceHut keeps getting attacked. I do enjoy using them as my main Git repo/CI tool. Hope the team can fix the DDoS soon.
PSA:
Phishing campaign targetting SourceHut users | sr.ht status
https://status.sr.ht/issues/2026-04-27-phishing-campaign/
Phishing campaign targetting SourceHut users | sr.ht status
A phishing campaign is targetting SourceHut users, impersonating SourceHut founder Drew DeVault and stating that SourceHut plans to be shut down following the DDoS attacks which have been affecting service recently. These emails are not authentic. Emails sent by SourceHut are sent from addresses at sr.ht or a subdomain of sr.ht, and signed with our public key. Drew DeVault uses [email protected] and signs his emails with his own key. Occasionally we will use @sourcehut.org as well. The best way to assess the authenticity of an email from us is by verifying our PGP signatures.



