PUBLIC OBSERVATION · V1Tue, Aug 25, 2026 9:06 AM

Link Behavior Trace

https://abnormal.ai/blog/iauthflow-v2-phishing-google-passkeys

Observed result Suspicious signals observed 100% observation completeness
Trace another link
SIGNATURE COMPONENT

LINK BEHAVIOR TRACE

0 transition(s)
1
Final
abnormal.ai https://abnormal.ai/blog/iauthflow-v2-phishing-google-passkeys

Observed signals

3 recorded
Embedded frame observed from a different domain

Observed page structure

LOW
Response cookie observed without the Secure attribute on an HTTPS page

Observed response headers

LOW
Response cookie observed without the HttpOnly attribute

Observed response headers

INFO

Landing behavior

Observed response
HTTP status200
Content typetext/html
Forms1
Password inputs0
External domains6
Binary responseNo

Security header configuration

Good
Recommended headers observed4 / 6

Present

strict-transport-securitycontent-security-policyx-content-type-optionsreferrer-policy

Not observed

x-frame-optionspermissions-policy

Response cookies observed

1 cookie(s) observed — 1 without Secure, 1 without HttpOnly, 0 without a SameSite attribute. Cookie names and values are never observed or stored by this scan.

Configuration, not a security guarantee. This describes which response headers were observed, not whether the site is otherwise secure — a "strong" grade means these specific headers were present, nothing more.