Shell icon indicating copy to clipboard operation
Shell copied to clipboard

An security alert about this repo has been (accidentally) sent to my github email

Open adpitacor opened this issue 2 years ago • 4 comments

I have nothing to do with either the alert or this repo. I'm just reporting the situation.

The email was sent by [email protected] (but seemed to be dispatched by [email protected]) on Sat Jul 08 2023 06:21 GMT+0800.

Here is a snapshot about it:

untitled.png

A rough translation:

Hello githubuser88:

xiaoN, a contributor from the open source security community, performed a security check on your open source project moudey/Shell at 2023-07-08 18:06:56 and generated a security report.

The test results show that your project relies on some open source components and has security vulnerabilities and license risks.

Get safety report

In case the button don't function properly, you can copy and access the link: https://s.murphysec.com/r/report.html?p=moudey/Shell


Murphy Security Code detection technology is based on the following principles:

  1. Identify all open source components that your code relies on through software component analysis techniques.

  2. Match whether these components have security vulnerabilities with the vulnerability knowledge base built based on large model technology.

  3. Use large model analysis technology to provide vulnerability repair solutions, and can easily repair vulnerabilities with one click.

Product technical documentation: www.murphysec.com/docs

Copyright © 2022 Murphy Future Technology (Beijing) Co., Ltd.

I don't wish to receive it again

adpitacor avatar Jul 08 '23 13:07 adpitacor

Thank you for this alert. The repository will be reviewed as soon as possible

moudey avatar Jul 08 '23 20:07 moudey

我也是,今天莫名其妙收到

heyunan111 avatar Jul 15 '23 16:07 heyunan111

Landed here by Googling the domain of [email protected], as I received an email from the address yesterday. Didn't open, as it looks like spam or phishing, no idea. Just putting it out there for others' info.

margohpolo avatar Sep 13 '23 04:09 margohpolo

The repository is clean and does not contain any malicious files. There may be a false positive test result.

moudey avatar Oct 06 '23 01:10 moudey