visitor@0xll.sh:~$ ls -la ~/blog
blog/
field notes · offensive security · write-ups
blog
2026-09-02
One VPS, Many Operators: Building a Multi-Tenant Phishing Server for Red Team Engagements
How I run per-operator GoPhish instances, OAuth2 SMTP relays, and a WireGuard-only admin surface from a single box — and why everything else stays off the internet.
#red-team#phishing#infrastructure#opsec
2026-08-26
highBrowser in the Browser: How BitB Phishing and Evilginx Slip Past MFA and common sense
Two techniques — a fake browser window drawn in HTML, and a reverse proxy that relays your login in real time — turn 'just check the URL' and 'I have MFA' into false comfort. Here's how they work, and what actually stops them.
#phishing#mfa#evilginx#bitb#aitm