#Evilginx
🚨 Evilginx Pro is finally here! 🚨🎣🐟

This is it! After over two years of development, countless delays, and hundreds of manual company verifications, Evilginx Pro is finally live!

Thank you all for your invaluable support 💗

breakdev.org/evilginx-pro...
Evilginx Pro is finally here!
After over two years of development, Evilginx Pro reverse proxy phishing framework for red teams is finally live!
breakdev.org
March 12, 2025 at 3:29 PM
Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365
Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365
thehackernews.com
July 13, 2026 at 8:50 AM
Local defcon meetup tonight. Bypassing mfa with evilginx yay!
May 21, 2026 at 10:26 PM
Evilginx Pro Update:

Tool is ready and awaits release.

I'm now creating an online shop engine, because why not 😜

I hope one day it becomes Steam for cybersecurity tools with Evilginx Pro its first release, like Half-Life 2 on Steam exactly 20 years ago.

Red team tools unite!
November 19, 2024 at 4:57 PM
Stealing user credentials with evilginx : news.sophos.com/en-us/2025/0...
April 5, 2025 at 11:26 AM
🚨 BLACK FRIDAY 50% OFF 24-HOUR SALE 🚨

Today I'm running the biggest sale, since the course release in 2023!

Get Evilginx Mastery course with lifetime access for 199 EUR ONLY today! 🤩

Upgrade your phishing skills before Evilginx Pro drops!

🔗Link: academy.breakdev.org/evilginx-mas...
November 28, 2024 at 10:22 PM
Hackers Leverage Evilginx to Undermine MFA Security Mimicking Legitimate SSO Sites
Hackers Leverage Evilginx to Undermine MFA Security Mimicking Legitimate SSO Sites
cybersecuritynews.com
December 2, 2025 at 7:44 PM
The BREAKDEV RED software shop engine is finally finished 🎉

Out of respect to all Evilginx fans, the purchase experience will be as friendly and fair as possible:

- Floating licenses ONLY
- No minimum cap for license purchases

Evilginx Pro release date: February 2025

Merry Christmas everyone! 🎄
December 20, 2024 at 3:23 PM
New blog post

The Evilginx Threat: Protecting your credentials with Phishing Resistant MFA

IMPORTANT DISCLAIMER:
The information provided in this blog post is intended for educational and demonstration purposes only.

cloudbuild.co.uk/the-evilginx...
December 11, 2024 at 6:21 PM
We've been using password managers' ability to detect domains and prompt for credential fill as a defense against things like Evilginx reverse proxies, since those domains will not result in a password manager prompt. This move takes that valuable signal away.
November 26, 2025 at 2:06 PM
🪝 US universities hit by a major phishing wave using more than seventy fake domains plus an Evilginx kit that bypasses MFA posing serious credential theft risk.

Read: hackread.com/us-universit...

#Cybersecurity #Phishing #Infosec #Evilginx #EducationSector
Over 70 Domains Used in Months-Long Phishing Spree Against US Universities
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
hackread.com
December 8, 2025 at 11:37 AM
Russian Hackers Breach 20+ NGOs Using Evilginx Phishing via Fake Microsoft Entra Pages
Russian Hackers Breach 20+ NGOs Using Evilginx Phishing via Fake Microsoft Entra Pages
thehackernews.com
May 27, 2025 at 1:03 PM
Misconfigured Server Reveals Three Evilginx Phishing Operations Targeting Microsoft 365 #cybersecurity #hacking #news #infosec #security #technology #privacy thehackernews.com/20...
July 13, 2026 at 8:41 AM
Unfortunately, that was only a matter of time!

This video combines two of the most dangerous tools at the moment associated with phishing - and it's surprisingly simple!
www.youtube.com/watch?v=Dp1z...

Do we have defense options? Read on 👇
TokenSmith Meets Evilginx: Token Theft Combined with Entra Conditional Access Bypass
YouTube video by SYNACK Time
www.youtube.com
January 17, 2025 at 7:21 AM
You can learn more about Evilginx and his phishing course is 🔥

🎣 BREAKDEV Blog → breakdev.org
🎣 Evilginx Pro → evilginx.com
🎣 Evilginx Mastery Course → academy.breakdev.org...
BREAKDEV - Offensive Security Tools & Research
Home of high quality offensive security tools & research to aid you in your red teaming endeavours.
breakdev.org
March 19, 2025 at 11:37 AM
I was there when the Poster’s Madness began. Those days in which we did not know what it was. A great and terrible time.
September 17, 2024 at 11:29 AM
Yikes! Both Github and NPM have temporary sticky MFA…

www.malwarebytes.com/blog/news/20...
Attackers have a new way to slip past your MFA
Attackers are using a tool called Evilginx to steal session cookies, letting them bypass the need for a multi-factor authentication (MFA) token.
www.malwarebytes.com
December 4, 2025 at 12:16 PM
🎙️ Folks, episode #2 of the Entra.Chat podcast is out!

This one is with the one and only @mrgretzky

Subscribe/watch this episode at👇

entra.news/p/bypassi...

March 19, 2025 at 11:37 AM
❤️ @mrgretzky - Creator of EvilGinx

💚 Martin Sandren - Product leader at Ikea

💜 Samantha 🦚 Kloos-Kilkens - Ex-Microsoftie & Entra guru!

💙 @NathanMcNulty - Need I say more? 😂

❤️ Dhanyah K - Product Manager, Microsoft Entra for Connect Sync and Cloud Sync

+ many more...
March 10, 2025 at 11:01 PM
🚨 ScreenConnect admins under siege

Since 2022, stealthy spear-phishing campaigns target #ScreenConnect super-admins via compromised Amazon SES emails and EvilGinx proxy pages.

Stolen credentials enable lateral movement and #ransomware deployment.

#ransomNews #CredentialHarvest #RMMThreat
August 28, 2025 at 7:37 PM
An incredible firsthand glimpse into threat actor operations from Huntress:
An Attacker’s Blunder Gave Us a Look Into Their Operations | Huntress
An attacker installed Huntress onto their operating machine, giving us a detailed look at how they’re using AI to build workflows, searching for tools like Evilginx, and researching targets like software development companies.
www.huntress.com
September 9, 2025 at 6:04 PM
Infoblox Threat Intelligence uncovers Evilginx-based SSO phishing using subdomains that mimic university portals, targeting at least 18 US institutions since April 2025, and finds nearly 70 related domains for future tracking. blogs.infoblox.com/threat-intel...
December 2, 2025 at 11:10 AM
The Evilginx phishing tool impersonates real sign‑in pages so everything looks normal, allowing attackers to steal login details and session cookies even after MFA.
Attackers have a new way to slip past your MFA
Attackers are using a tool called Evilginx to steal session cookies, letting them bypass the need for a multi-factor authentication (MFA) token.
bit.ly
December 3, 2025 at 4:15 PM
The top Red Team tools are battling for a spot in the Final Four. Who moves on? You decide.

• Sliver vs. Metasploit
• BloodHound vs. GhostPack
• AzureHound vs. MicroBurst
• Scapy vs. EvilGinx

Voting is live through Monday! bishopfox.com/redteam-tool...
March 24, 2025 at 3:18 PM