Thanks, I was not aware that ipfs is peer network (I did not hear about it before my phishing case), that makes it hard to find out who actually host the phishing site :-/
I guess the best I can then is to block the entire ipfx.io network in the firewall :-/
But that will only protect onprem users.
Rather, I would suggest to block the path rather than whole service.
IPFS is good service. But just because of some nasty users, we should not expel the whole IPFS network.
Bu on the other hand ipfs needs to figure some workaround to this problem, cuz links are changing on each phishing mail which is pretty annoying and forcing security people to block whole domain even if they don’t really want.