kgretzky / evilginx2

Standalone man-in-the-middle attack framework used for phishing login credentials along with session cookies, allowing for the bypass of 2-factor authentication
BSD 3-Clause "New" or "Revised" License
10.72k stars 1.94k forks source link

evilginx2 phishing page not loading inside the iframe browser #899

Open Garysaru opened 1 year ago

Garysaru commented 1 year ago

Uploading iframe issues.mp4…

iframe issues

Hey guys anyone can help out on how to load evilginx2 phishing page url inside the iframe browser. i try severally afect building my iframe browser but the phishing url won't load up inside the iframe border rather it keep redirecting and load outside the iframe border. can anyone help please.

scoleman0802 commented 1 year ago

same issue im experiencing

darkxlord0147 commented 1 year ago

iframe works well on sameorigin when used as redirector with some phishlets but refused to work with 0365. cookies are disabled on chrome when tested with non hosted html file , but the non hosted html file works with firefox without cookie issue. conclusion the iframe feature is only supported in firefox browser but blocked in other browser and not compatible with some phishlets like 0365.

Gta0147 commented 1 year ago

help i keep getting

The page isn’t redirecting properly

An error occurred during a connection to login.xxxxxxxx

This problem can sometimes be caused by disabling or refusing to accept cookies.

after updating phishlets with cookies enabled one

Garysaru commented 1 year ago

iframe works well on sameorigin when used as redirector with some phishlets but refused to work with 0365. cookies are disabled on chrome when tested with non hosted html file , but the non hosted html file works with firefox without cookie issue. conclusion the iframe feature is only supported in firefox browser but blocked in other browser and not compatible with some phishlets like 0365.

Hey have you got a working o365 that grab login cookies.