How do i get fluxion page to work with wifiphisher ?

Discussion in 'Scripts & Commands' started by moooon, 23 Jan 2020.

  1. moooon

    moooon New Member

    Joined:
    23 Jan 2020
    Messages:
    2
    Likes Received:
    0
    It's the fluxion en generic page
    I tried to copy it to wifiphisher pages folder then it worked ... but the page looks a bit buggy and the password doesn't get caught!


    "Logging credentials
    In order for wifiphisher to know which credentials to log, the values of the 'name' HTML attributes need to be prefixed with the 'wfphshr' string. During POST requests, wifiphisher will log all variables that are prefixed with this string.

    Example
    Here's a snippet from a template (index.html):

    In this example, 'victim_name' and 'ISP' variables come from config.ini, while 'target_ap_vendor' variable is from the beacon frames. Both "wphshr-username" and "wphshr-password" will be logged."

    although i have tried what's mentioned above from the wiki still the post request is sent by key1 name i have tried to edit it in main.js and index.html nothing changed ...
    you can give it a shot and see if you can work it out ...
    and i think if the handshake parameter wasn't used the check.php should be replaced to final.html but i don't know what to change if the parameter is used as the script may be able to check the password but the page wouldn't be able to know if it's wrong to show error.html or it's correct to show final.html

    Here is the latest one of the frimware upgrade page from wifiphisher

    Login or Signup to view links / downloads


    I have looked into the page and found that the compatible string
    Is wfphshr-wpa-password and not wphshr

    Looks like they haven't updated their wiki since a long ago

    even if it catches it how do i get the script to tell the page the password was wrong or correct so it shows error or final page ?
     

Share This Page

Loading...
  • About Us

    We are a community mixed with professionals and beginners with an interest in wireless security, auditing and pentesting. Feel free to check out and upload resources.


    You can also find us on: Twitter and Facebook

  • Donate to Us

    Did you find our forums useful? Feel free to donate Bitcoin to us using the form below. Those who donate the equivlent of $10 USD or more will be upgraded to VIP membership. Don't have Bitcoin? Use your credit card to GO VIP here. Don't want to fork out some coin? There are other ways to GO VIP. Bitcoin: 1LMTGSoTyJWXuy2mQkHfgMzD7ez74x1Z8K