evilginx2
S9003 · IaaS, Identity Provider, Office Suite, SaaS
evilginx2 is an open-source adversary-in-the-middle (AiTM) attack framework based on the open-source nginx web server. evilginx2 can be used as a reverse proxy between victims and legitimate web services to intercept and capture credentials, authentication tokens, and session cookies.
ATT&CK S9003
Sigma rules0
YARA rules0
Live IOCs0