У нас вы можете посмотреть бесплатно Advanced Phishing Demo & Learning: MFA, BITB & Evasion Tactics - BSides Cyprus 2023 или скачать в максимальном доступном качестве, видео которое было загружено на ютуб. Для загрузки выберите вариант из формы ниже:
Если кнопки скачивания не
загрузились
НАЖМИТЕ ЗДЕСЬ или обновите страницу
Если возникают проблемы со скачиванием видео, пожалуйста напишите в поддержку по адресу внизу
страницы.
Спасибо за использование сервиса ClipSaver.ru
🎥 Join me as we dive deep into the art of sophisticated phishing attacks. 🪝Learn how to craft advanced phishing attacks that bypass MFA, trick users with Browser-In-The-Browser (BITB), fly past spam filters, evade detection engines, and much more. 📝Timestamps: 0:00 Intro 0:32 Live Demo: Advanced phishing of a Microsoft 365 account 5:02 Choosing the right domain 7:08 Blacklists & reputation checks 8:12 Preparing the domain (SSL, SPF, DMARC, DKIM) 9:15 Infrastructure setup 9:54 Evilginx - Intro 12:03 Evilginx - Config 13:00 Evilginx - Easter eggs 14:24 Pure Evilginx phishing page 15:12 Browser-In-The-Browser (BITB) - Intro 16:13 BITB - Improved hyper-realistic version 16:47 Adding Apache2 - Blacklists & bypassing Microsoft client-side security 18:35 Homepage, phishing page & content obfuscation 19:37 Crafting the phishing HTML email 20:30 Basics of dodging spam filters 21:21 Getting ready to send the email 23:13 Testing the phishing email 23:49 Our magic phish - Believable and straight in the inbox 23:58 Our sneaky phish - Flies past security vendors 24:22 Closing thoughts 🎯Key Takeaways: 🔹Live Demo: Watch a convincing real-life phishing attack unfold. 🔹Finding & Setting Up the ideal Phishing Domain 🔹Bypassing MFA with Evilginx 🔹Adding a Hyper-realistic Browser-In-The-Browser (BITB) 🔹Bypassing Microsoft Client-Side Security 🔹Crafting & Sending Sneaky Emails 🔹Evading Spam Filters & Detection Engines 🔹Putting it all together - Advanced & Sneaky Phishing Attacks Don't forget to Like, Share, and Subscribe for content! 🔗Connect on LinkedIn: / waelmas ________ This session was presented on October 7, 2023, at BSides Cyprus. Learn more about the event here: https://bsidescyprus.com/ ________ *Note:* The demo and slides were re-recorded post-event due to technical issues during the live presentation. *Disclaimer:* This presentation/talk/video is intended for educational purposes only. #phishing #hacking #cybersecurity #bitb #spam #evasion #redteaming #multifactorauthentication #phishingattack #bsides #bsidescyprus2023