I recently was contacted by 2 web3 scammers they use Bitbucket to share there repo asked to clone and run it I refused. There is bad code in their repo if you clone it and run npm install your system become compromised.
WTH there is no functionality in your product to report these scamming repo like github. Is Atlassian product becoming a safe haven for these crypto scammers?
Scam Repo1:
https://bitbucket.org/eos-block-2025/epl-sports-2026/src/main/
Scam Repo2:
https://bitbucket.org/soldecoder_v2/scratch-game/src/main/
Please fix or make you product more safe to use, also not safe for these scammers.
Also your https://www.atlassian.com/trust/report-abuse does not load fix it too.
Hi @Mukund Soni
Thank you for reporting this. I have raised this with our security team and will get back to you once I have a response from them.
In future, you may also file a report by sending an email to abuse@atlassian.com
Cheers!
- Ben (Bitbucket Cloud Support)
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.