Infiltr8: Red-Book

Evilginx

MITRE ATT&CK™ Adversary-in-the-Middle - Technique T1557

Theory

Evilginx is a man-in-the-middle attack framework used for phishing login credentials along with session cookies, which in turn allows to bypass 2-factor authentication protection.

Practice

Resources

GitHub - kgretzky/evilginx2: Standalone man-in-the-middle attack framework used for phishing login credentialsgithub.com

On this page