kgretzky / evilginx2

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
BSD 3-Clause "New" or "Revised" License
10.72k stars 1.94k forks source link

Unauthorised request : #256

Closed Hamzabhh closed 5 years ago

Hamzabhh commented 5 years ago

Hey I try to use Evilginx2 but I can't. When I try to use the phishing url "www.facebook.com.mydomaine.com" firefox, chrome and other says that the redirection isn't properly set. They also say that I may have issues with my cookies (don't think so). In Evilginx there is warning message saying "unauthorized request"

[13:41:04] [war] [facebook] unauthorized request: https://www.facebook.mydomain.com/ (Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Firefox/60.0) [192.168.1.254]

I try to modify my domain parameters and my hosts leafpad but I'haven't been able to resolve this issue :(. Does someone know how to fix this problem ? Thanks ^^

Hamzabhh commented 5 years ago

To fix it I just copy and past what " phishlets get-hosts facebook " returns me in the /etc/hosts leafpad