Our fellow BREAKDEV RED member @jackbutton_ has published the long awaited guide on how to protect your Evilginx instances βΌοΈ
Find out how to deploy an additional Cloudflare layer in front, for extra protection! π₯π£
A must read for all phishermen! πͺπ
https://t.co/gpDV4Y2Bim
@HackingDave Followed you on here for a good while - have always loved the cyber content but also a big fan of all the awareness you've raised around health too π You shared a blog post of mine a while back and it made my day! Would love a follow when you get the time. Cheers!
This time next week I'll be arriving at DEF CON 32, with the rest of the @OmniCyber_Sec Red Team. Incredibly excited about the talks and workshops on this year, ready to be inspired. Drop us a message if you're out there too, would be great to link up! #defcon#defcon32#redteam
Evilginx π Gophish
The long-awaited official integration of Evilginx with Gophish has finally arrived with the Evilginx 3.3 update. πͺπ
The update includes lots of quality-of-life improvements as well.
Enjoy and happy phishing! π€
https://t.co/Cqma4vpRFm
@EricaZelic Glad you've found it useful! I should have probably split the advice in the post to read as: domain older than 30 days to stop firewalls/email protection blocking and not 'brand new' e.g. less than 3 day old certs so you don't have you inf hammered by web scanners. Good Luck π£
Browser In The Browser (BITB) attacks are back for 2024 π. HTML and CSS wizardry to bypass framebusters π§ββοΈπ£
GitHub repo here by @waelmas01 https://t.co/UBrmymqeID
π¨ New Phishing Attack: Frameless BITB + Evilginx (2024 edition)
πFull tutorial on how to set up one of the most believable phishing attacks using a new Browser In The Browser + Evilginx attack that bypasses even the most advanced framebusters.
https://t.co/QMjYK5OxzR
My writeup on how to protect your Evilginx server from the dreaded 'Deceptive site ahead' warning when conducting Red Team and Social Engineering engagements π£ https://t.co/gqcw3jeMcg