Observed role
Observed domain
Role derived only from stored classifications and tags.
Indicator investigation
Loading the current evidence view. Navigation and account controls remain available.
Loading verdict, provenance, relationships and sightings.
Indicator
Type domain · source intel_report_ingest
MENTIONED — 1 report, unverified
Domain investigation
Live registration, certificate, or DNS context is available, but no direct malicious attribution appears in this snapshot. That describes current coverage; it is not a guarantee that the domain is safe.
Observed role
Observed domain
Role derived only from stored classifications and tags.
Registration
2015 (11 years ago)
2015-06-07 · Metaregistrar BV
Certificate history
64 certificates
Let's Encrypt, CN=E5, Let's Encrypt, CN=E6, Let's Encrypt, CN=E7
Current DNS
1 current IPv4 address
178.21.23.200 · observed 2026-08-07
Corpus evidence
1 connectors · 1 citations
Generic co-tags were excluded to avoid false relationships.
Observation window
2026-07-20 → 2026-07-20
First and last appearance in the local corpus, not global activity dates.
Findings stay bounded to named sources and observable infrastructure.
Domain indicator: git.disroot.org
Mentioned in The Hacker News research ingest
Screenshot of the actual page, via urlscan.io. Hover to view full.

via urlscan.io· scanned 2026-07-20
Exploitation status and malware-family attribution from stored fields.
Neighborhood topology. Open the graph for interactive pivots.
Loading connected indicators, reports and entities.
High-signal pivots without leaving the thread you started in search.
Structured pivots from local graph context.
Full investigation canvas with neighbor expansion.