let's divide into the world of hacking now, shall we.
Facebook, is a hard nut to crack believe it or not, though is hard doesn't mean its impossible. The only thing easy to hack is the Facebook users.
Using a fake login page, like that of Facebook, can trick users into logging in using the fake login page and once they do, then you have their login details.
You only need to come up with something catchy to get them to click on the link and open it.
WHAT IS SHELLPHISH
Shellphish is a phishing package, used for cloning websites like Facebook, Instagram etc
It is one of the easiest and convenient way of tricking your victims into getting their login credentials.
HOW SHELLPHISH WORKS
Using shellphish, you can generate a fake login page for social media site and a link will be given to you, which you will send to the victim, and wait for him/her to login.
NOTE: THIS IS FOR EDUCATIONAL PURPOSE ONLY, I WILL NOT BE HELD RESPINSIBLE FOR ANY MISUSE.
Step 1: Upgrade Termux using "apt update && apt upgrade"
Step 2: git clone https://github.com/AbirHasan2005/ShellPhish
Step 3: change directory using 'cd shellphish'
Step 4: grant access using 'chmod +x shellphish.sh'
HOW TO USE SHELLPHISH
After giving access to shellphish.sh
Step 1: run shellphish by using "bash shellphish.sh"
Step 2: Many options will be open for you to use, carefully select the number of the site you want to clone.
Step 3: This should be the most important part, turn on your hotspot.
Now select the 2nd option, which is 'Ngrok' and select port forwarding as 02
Step 4: You will get a link, which is what you will send to the victim and wait for him/her to open and immediately the credentials will be sent to 'Termux'
SHELLPHISH IN ACTION BELOW
Below you will see some harvested credentials using shellphish.






0 Comments