DEF CON 31 - SpamChannel - Spoofing Emails From 2M+ Domains & Virtually Becoming Satan - byt3bl33d3r

One Phish Two Phish, Red Teams Spew Phish

PHISHING SCHOOLHow to Give your Phishing Domains a Reputation Boost“Armed with the foreknowledge of my own death, I knew the giant couldn’t kill me. All the same, I preferred to keep my bones unbroken” — Big PhishWhen we send out our phishing emails, we are reckoning with giants. Spamhaus, SpamAssassin, SpamTitan, Barracuda, and ... Read More
meterpreter dance

Phish Sticks; Hate the Smell, Love the Taste

Phishing SchoolI’ll Make You Great at Phishing or Your Money BackI am already making you better at phishing.Right now.How could that be possible? Please, don’t worry about specifics right now. Just trust that I am making you better at phishing.Why would I be so selfless to boost your phishing skills free ... Read More
Plenty of Phish in the Sea

Plenty of Phish in the Sea

Phishing SchoolHow to Find the Right Phishing TargetsA weapon is useless unless you have something to aim it at. When we weaponize social engineering, our targets are the humans who have the ability to give us access to the systems and data we want to compromise. In this post, we’ll explore ... Read More
Phishing With Dynamite

Phishing With Dynamite

Token stealing is getting harder. Instead, stealing whole logged-in browser instances may be an easier and more generic approach. One attack, known as “browser-in-the-middle” (BitM), makes it possible to virtually place a user in front of our browser and request them to log in for us. One of my old ... Read More