kgretzky / evilginx2

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
BSD 3-Clause "New" or "Revised" License
10.54k stars 1.91k forks source link

'redirect_uri' is not valid #789

Closed DanMinihanNACS closed 1 year ago

DanMinihanNACS commented 2 years ago

Full error: We're unable to complete your request invalid_request: The provided value for the input parameter 'redirect_uri' is not valid. The expected value is a URI which matches a redirect URI registered for this client application.

I'm getting this error after entering an office 365 email using the o365.yaml phishlet. It seems to be an issue with not registering my web page with Azure app registrations. Is there any way around this without registering my app on Azure?

Trippleson commented 2 years ago

bro....the tool has been programmed already.....you would have to edit it....for it to work on O365,gmail and some other financial institution websites

jeffaf commented 2 years ago

As far as I can tell the o365 phishlet doesn't work anymore. I assume something has changed on Microsoft's side.

Support-1535 commented 1 year ago

Hello! If you were already able to resolve your doubts and achieve your goals, close the issue so that we know which ones are pending.

Thank you!