kgretzky / evilginx2

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
BSD 3-Clause "New" or "Revised" License
10.54k stars 1.91k forks source link

Disable keyless proxying #798

Closed grigorij-mihajlov closed 1 year ago

grigorij-mihajlov commented 2 years ago

Guys, how can I remove the use of the key? I need to proxy my personal sites and don't need key protection. I removed the key in the fishlet, etc. nothing helps. I looked at the code, but I do not know what to comment out. Please help someone who understands where the check for the key is going on.