{"repo":"JoelGMSec/EvilnoVNC","free":true,"listed":false,"github":"https://github.com/JoelGMSec/EvilnoVNC","clone":"git clone https://github.com/JoelGMSec/EvilnoVNC.git","description":"Ready to go Phishing Platform","language":"JavaScript","stars":1172,"topics":["chromium","docker","novnc","phishing","platform","evilnovnc","2fabypass"],"license":"GPL-3.0","category":"deployment-docker-iac","readme_excerpt":"EvilnoVNC EvilnoVNC is a Ready to go Phishing Platform. Unlike other phishing techniques, EvilnoVNC allows 2FA bypassing by using a real browser over a noVNC connection. In addition, this tool allows us to see in real time all of the victim's actions, access to their downloaded files and the entire browser profile, including cookies, saved passwords, browsing history and much more. Requirements - Docker - Chromium Download It's recommended to clone the complete repository or download the zip file.\\ Additionally, it's necessary to build Docker manually. You can do this by running the following commands: Usage The detailed guide of use can be found at the following link: https://darkbyte.net/robando-sesiones-y-bypasseando-2fa-con-evilnovnc Features & To Do - [X] Export Evil-Chromium profile to host - [X] Save download files on host - [X] Disable parameters in URL (like password) - [X] Disable key combinations (like Alt+1 or Ctrl+S) - [X] Disable access to Thunar - [X] Decrypt cookies in real time - [X] Expand cookie life to 99999999999999999 - [X] Dynamic title from original website - [X] Dynamic resolution from preload page - [X] Basic keylogger - [X] Replicate real user-agent and other stuff - [X] Faster than ever - [ ] Crazy new ideas License This project is licensed under the GNU 3.0 license - see the LICENSE file for more details. Credits and Acknowledgments Original idea by @mrd0x: https://mrd0x.com/bypass-2fa-using-novnc \\ This tool has been created and designed from scr","default_branch":null,"files":null,"tree":[],"storefront":"/r/JoelGMSec","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/JoelGMSec/EvilnoVNC/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}