jianjianai / ms-copilot-play

Cloudflare Worker 的 Microsoft Copilot 加速服务。Microsoft Copilot 是基于 OpenAI GPT-4 的强大 AI 并且能够使用 Bing 搜索来解答问题。简单部署即可在国内高速访问原滋原味的 Microsoft Copilot 的几乎全部功能,聊天,笔记本,插件,图像生成,分享等等..
https://copilot.6m6c.cn/?dpwa=1
MIT License
245 stars 320 forks source link

Cloudflare报告有钓鱼攻击 #24

Closed studioj2y closed 4 months ago

studioj2y commented 4 months ago

使用Pages方式部署之后,大约半天,CF写邮件来告知发现存在攻击Microsoft的行为,要求排查及下架涉及内容,邮件内容如下: phishing 正文内容复制如下:

滥用日志或证据:Hello, We have discovered a phishing attack located on your network: [涉及网址] This attack targets our customer, Microsoft, website URL https://www.microsoft.com/. Would it be possible to have the fraudulent content, and any other associated fraudulent content, taken down as soon as you are able to? Additionally, please keep the fraudulent content safe so that our customer and law enforcement agencies can investigate this incident further once the site is offline. More information about the detected issue is provided at https://incident.netcraft.com/dfdbea0343b1/

请问是否是我部署及使用时存在不正确的操作? 可否拨冗协助排查原因,今后通过注入加入额外验证等手段防止? 谢谢您

studioj2y commented 4 months ago

never mind, mentioned somewhere before, seems to be a common issue