github.com / denniskniep
denniskniep/ DeviceCodePhishing
Go·15 files·commit 89b5315·scanned 1h ago·cached ✓
0/100
SAFE
No malicious patterns found. Repo signals are consistent with a legitimate project.
verdict accurate?
threat-state: safelive
FINDINGS ░▒▓
CLEAN
No malicious patterns found across 8/15 content-scanned files.
Static analysis only — treat as “nothing found”, not a guarantee.
Static analysis only — treat as “nothing found”, not a guarantee.
Scores are heuristics. A “safe” verdict means no known-malicious patterns were found — clever malware can look boring. Wrong verdict? Flag it above; confirmed false positives become regression tests.
8 files scanned @ 89b5315 | 9/25/2026 | heuristic scan — always review manually
risk by category
code execution0
network & exfiltration0
file system access0
obfuscation0
supply chain0
owasp / injection0
telemetry
files 8/15rules hit 0engine v6commit 89b5315
github
denniskniep/DeviceCodePhishing
This is a novel technique that leverages the well-known Device Code phishing approach. It dynamically initiates the flow when the victim opens the phishing link and instantly redirects them to the authentication page. No authentication method, not even FIDO, is able to protect against this type of attack.
210
28
526d
15 files
8 scanned(53%)
89b5315
architecture░▒▓
entry (1) flagged (0) pkg (10)
18 nodes · 17 edgesscroll to zoom · click node to jump to finding