OWASP / QRLJacking

QRLJacking or Quick Response Code Login Jacking is a simple-but-nasty attack vector affecting all the applications that relays on “Login with QR code” feature as a secure way to login into accounts which aims for hijacking users session by attackers.
GNU General Public License v3.0
1.35k stars 615 forks source link

QR code not loading #202

Open hak98 opened 1 year ago

hak98 commented 1 year ago

QR Code not loading in firefox or another browser. When enabling debug and running the code whatsapp "add device" code pops up but it is not the attack it is directly from whats app. <ule(grabber/whatsapp) > debug [+] Debug mode enabled!

<ule(grabber/whatsapp) > run [+] Using the default useragent [+] Running a thread to keep the QR image [whatsapp] [+] Waiting for sessions on whatsapp [+] Running a thread to detect Idle once it happens then click the QR reload button [whatsapp] [+] Initializing webserver... [whatsapp]

<ule(grabber/whatsapp) >

0YunusHasan commented 1 year ago

i have also the same problem did you find the solution?

Derosarie commented 1 year ago

Code QR

krlabs commented 4 months ago

if open localhost:port, QR dont loading, but in automatic selenium browser web.whatsapp.com displaying original page Whatsapp Web with qr code.