Issue #5174Opened June 9, 2023by tomsleeter0 reactions

GrapeJS.com homepage hacked / chained redirect malware

Question

GrapesJS version

  • I confirm to use the latest version of GrapesJS

What browser are you using?

Chrome 114.0.5735.110 (Official Build) (64-bit)

Reproducible demo link

https://grapejs.com *EDIT: This site / domain serves malware, it is missing the "s" in the real grapesjs.com domain

Describe the bug

Upon visiting grapejs.com homepage the browser is sent into a chain of redirects , ultimately on a malware S3 landing page that blows to full screen + audio + popup spam demanding payments.

Reproduced on subsequent visits / chrome incognito. Fairly confident it's not on my side

Code of Conduct

  • I agree to follow this project's Code of Conduct

Answers (2)

tomsleeterJune 9, 20230 reactions

This is intermittent, I'm now getting grapejs.com homepage as expected

tomsleeterJune 9, 20230 reactions

Okay this was my mistake, I mis-typed the URL / domain name-- missing the "s" in grapesjs.com. Visiting URL grapejs.com is a bogus address with a bunch of malware / popups

I believe the incorrect domain redirects to grapesjs.com every other page load making this more confusing.

Closing this out, no issues with the main website.

Related Questions and Answers

Continue research with similar issue discussions.

Paid Plugins That Match This Issue

Curated by issue keywords and label relevance to help you ship faster.

View all plugins

Loading paid plugin recommendations...

Browse Plugin Categories

Jump directly to plugin category pages on the marketplace.