Skip to content

SECURITY ADVISORY: Project Abandoned & Official Domain (deepfence.io) Hijacked #2429

@linuxpy76

Description

@linuxpy76

It appears the Deepfence project and company are no longer active, and their primary domain deepfence.io has been hijacked.

Evidence:

Domain Hijack: As of early 2026, deepfence.io resolves to a Swedish gambling affiliate site. WhoIs data shows the domain was re-registered on December 31, 2025, via NameCheap to an entity in Belize. ThreatMapper page is intact but the domain's home page hosts content for a Swedish gambling blog.

Stagnant Activity: GitHub commits across all repos effectively ceased in April 2025.

Company Status: LinkedIn data shows a mass exodus of senior developers and staff around late 2025.

DNS Red Flags: The domain currently has no MX, SPF, or DKIM records—only A records pointing to the hijacked landing page.

Impact: > Do not trust documentation or installation scripts hosted on deepfence.io. Take caution visiting the site! While this GitHub repo remains, it is unmaintained and likely contains unpatched vulnerabilities. Users should migrate to active alternatives (e.g., Wazuh, Trivy, or Falco).

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't workingneeds-triageIndicates that issue is not yet triaged and assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions