Closed elite-user closed 2 years ago
Try to set insecureSkipVerify = true
in the TLS configuration file.
I did this, and still having same issues @ohpe
Check your configuration, the target is not well configured. You should define the domain only not the full URL.
This is my config file
[proxy]
Phishing domain
#
Proxy's replacement rules
# [transform]
#
Proxy's wiping rules
# [remove]
#
Proxy's crafting rules
# [craft] [craft.add] [craft.add.request] [[craft.add.request.headers]]
name = "User-Agent"
#
Rudimental redirection rules
# [[drop]] path = "/logout" redirectTo = "https://outlook.com"
[[drop]] path = "/signout" redirectTo = "https://outlook.com"
#
LOG
# [log] enabled = true filePath = "muraena.log"
#
DB (redis)
# [redis] host = "127.0.0.1" port = 6379 password = ""
#
TLS
# [tls] enabled = true
#
CRAWLER
# [crawler] enabled = false depth = 3 upto = 20 externalOriginPrefix = "www-" externalOrigins = [ "*.anotherdomain.site", "example.dev" ]
#
NECROBROWSER
# [necrobrowser] enabled = false endpoint = "http://necrobrowser.url/xyz" profile = "./config/instrument.necro"
#
STATIC SERVER
# [staticServer] enabled = false port = 8080 localPath = "./static/" urlPath = "/evilpath/"
#
WATCHDOG
# [watchdog] enabled = true
Monitor rules file changes and reload
#
TRACKING
# [tracking] enabled = false
but anytime i run muraena with ./muraena -config config/config.toml i get this in my muraena.log
24 Mar 22 00:48 UTC inf watchdog Watchdog rules reloaded successfully 24 Mar 22 00:48 UTC inf Muraena is alive on 207.148.4.123:443 [ https://nyben.xyz ] ==> [ https://knitsy.ddns.net/wp-admin ] 24 Mar 22 00:49 UTC inf [172.98.33.85:24685] - [GET][https://nyben.xyz(https://nyben.xyz)/] 24 Mar 22 00:49 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/ 24 Mar 22 00:49 UTC inf [172.98.33.85:22355] - [GET][https://nyben.xyz(https://nyben.xyz)/favicon.ico] 24 Mar 22 00:49 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/favicon.ico 24 Mar 22 01:24 UTC inf watchdog Watchdog rules reloaded successfully 24 Mar 22 01:24 UTC inf Muraena is alive on 207.148.4.123:443 [ https://nyben.xyz ] ==> [ https://knitsy.ddns.net/wp-admin ] 24 Mar 22 01:24 UTC inf [45.132.115.182:31103] - [GET][https://nyben.xyz(https://nyben.xyz)/] 24 Mar 22 01:24 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/ 24 Mar 22 01:24 UTC inf [45.132.115.182:8615] - [GET][https://nyben.xyz(https://nyben.xyz)/favicon.ico] 24 Mar 22 01:24 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/favicon.ico 24 Mar 22 01:25 UTC inf Redirecting HTTP to HTTPS: https://207.148.4.123/ 24 Mar 22 01:25 UTC inf Redirecting HTTP to HTTPS: https://207.148.4.123/HNAP1/ 24 Mar 22 01:29 UTC inf [45.132.115.182:4561] - [GET][https://207.148.4.123(https://207.148.4.123)/] 24 Mar 22 01:29 UTC err [errHandler] x509: cannot validate certificate for 207.148.4.123 because it doesn't contain any IP SANs in request GET 207.148.4.123/ 24 Mar 22 01:29 UTC inf [45.132.115.182:4561] - [GET][https://207.148.4.123(https://207.148.4.123)/favicon.ico] 24 Mar 22 01:29 UTC err [errHandler] x509: cannot validate certificate for 207.148.4.123 because it doesn't contain any IP SANs in request GET 207.148.4.123/favicon.ico 24 Mar 22 08:19 UTC inf watchdog Watchdog rules reloaded successfully 24 Mar 22 08:19 UTC inf Muraena is alive on 207.148.4.123:443 [ https://nyben.xyz ] ==> [ https://login.live.com ] 24 Mar 22 08:25 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 08:25 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 08:25 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 08:25 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 08:34 UTC inf [45.132.115.229:24155] - [GET][https://nyben.xyz(https://nyben.xyz)/] 24 Mar 22 08:34 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/ 24 Mar 22 08:34 UTC inf [45.132.115.229:12701] - [GET][https://nyben.xyz(https://nyben.xyz)/favicon.ico] 24 Mar 22 08:34 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/favicon.ico 24 Mar 22 08:37 UTC inf Redirecting HTTP to HTTPS: https://207.148.4.123/hudson 24 Mar 22 08:47 UTC inf [176.53.219.141:40153] - [GET][https://nyben.xyz(https://nyben.xyz)/] 24 Mar 22 08:47 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/ 24 Mar 22 08:47 UTC inf [176.53.219.141:40153] - [GET][https://nyben.xyz(https://nyben.xyz)/favicon.ico] 24 Mar 22 08:47 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/favicon.ico 24 Mar 22 09:02 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 09:06 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 09:06 UTC err watchdog Blocked visitor [220.244.160.52/curl/7.79.1] 24 Mar 22 09:07 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 09:07 UTC inf [52.23.95.110:45416] - [GET][https://nyben.xyz(https://nyben.xyz)/] 24 Mar 22 09:07 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/ 24 Mar 22 09:07 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 09:07 UTC inf [18.206.128.24:50590] - [GET][https://nyben.xyz(https://nyben.xyz)/] 24 Mar 22 09:07 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/ 24 Mar 22 09:08 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 09:08 UTC inf [38.202.2.157:59371] - [GET][https://nyben.xyz(https://nyben.xyz)/] 24 Mar 22 09:08 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/ 24 Mar 22 09:08 UTC inf [38.202.2.157:59371] - [GET][https://nyben.xyz(https://nyben.xyz)/favicon.ico] 24 Mar 22 09:08 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/favicon.ico 24 Mar 22 09:08 UTC inf Redirecting HTTP to HTTPS: https://nyben.xyz/ 24 Mar 22 09:08 UTC inf [64.120.29.201:55717] - [GET][https://nyben.xyz(https://nyben.xyz)/] 24 Mar 22 09:08 UTC err [errHandler] x509: certificate signed by unknown authority in request GET nyben.xyz/ 24 Mar 22 09:10 UTC inf Redirecting HTTP to HTTPS: https:/// 24 Mar 22 09:20 UTC inf Redirecting HTTP to HTTPS: https://www.nyben.xyz/ 24 Mar 22 09:38 UTC inf Redirecting HTTP to HTTPS: https://www.nyben.xyz/