- Disable User
- Posts
- š Evilginx: The Cybersecurity Game-Changer
š Evilginx: The Cybersecurity Game-Changer
You can't defend against something you don't understand

Guess whoās back, back again. DUās back - tell a friend.

Letās just pretend that I didnāt quit writing for 3 weeks and pick up where we left off.
Hi! and welcome to another Security weekly. Where we laugh, we cry and share the latest and greatest in security and tech news.
In this week's edition:
š Evilginx: The Cybersecurity Game-Changer
š° Bits & Bytes
ā Disable User explains: Session Cookies
š„ meme of the week
Reading time: 02:21

Evilginx: The Cybersecurity Game-Changer

Evilginx. It sounds like something a Bond villain would use, doesn't it?
But in the world of cybersecurity, it's not just a fancy name; it's a tool that has revolutionized how we understand cyber threats.
Iāve known the tool for a while but I saw they released a Mastery course so I couldnāt resist..
..Until I found out the Mastery costs 399,- YIKES.
So thatās why I decided to write a newsletter about it. With the sponsorship from the good people of Vanta, that 399 feels less like an obstacle.
So letās dive in. Because knowing your "enemy" is half the battle won.
First things first: what is Evilginx?
Evilginx, in simple terms, is an advanced phishing tool. But calling it just a phishing tool is like calling a Swiss Army knife a mere can opener.
It's a man-in-the-middle attack framework that makes the process of stealing credentials and session cookies as smooth as possible.

Unlike your run-of-the-mill phishing attacks, Evilginx bypasses common security measures like two-factor authentication (2FA).
By proxying victim's traffic through a phishing site, it can capture credentials and session cookies without raising alarms. This stealth mode operation makes it a formidable tool for understanding advanced threats.

What proxying looks like. Pic by BreakDev.
Evilginx can be tailored to target any website, it's not picky. Banking sites, Microsoft 365, Google; you name it, theyāve got it.
Why understanding Evilginx matters
You can't defend against something you don't understand. Itās as simple as that.
In a world where everyone (and their moms) have adopted MFA, proxy attacks are on the rise.
Think of it like this:
By understanding how Evilginx operates, cybersecurity professionals can develop more robust defense mechanisms.
Educating employees and the public about sophisticated threats like Evilginx can lead to more vigilant online behavior.
In the arms race of cybersecurity, staying ahead is vital. Understanding tools like Evilginx helps in anticipating and mitigating future threats.
In conclusion, while Evilginx might not be used for world domination, understanding its mechanisms is crucial for the world of cybersecurity.
In the wise words of Sun Tzu, "Know thy enemy and know yourself; in a hundred battles, you will never be in peril."
God I feel wise today.
Iāll be posting an update later on with some hands on experience after Iāve finished the course.

Bits & Bytes
Microsoft extends Windows Server 2012 ESUs to October 2026 - Donāt do it people, just upgrade to Server 2022.
Microsoft Warns of Fake Skills Assessment Portals Targeting IT Job Seekers - So youāre telling me Iām not fit to the a fortune500 CISO? Lies.
The New 80/20 Rule for SecOps: Customize Where it Matters, Automate the Rest - 80/20 aināt new, but an interesting article about why you can never fully automate your SecOps.
ChatGPT: OpenAI Attributes Regular Outages to DDoS Attacks - The OpenAI outage mustāve been a tough time for Online Marketeers worldwide. WinkWink ;)
YouTubeās ad blocking crackdown is facing a new challenge: privacy laws - Privacy laws are a double edged sword. I haaaaate doing privacy stuff, but I love them when they work in my favour.
Google ads push malicious CPU-Z app from fake Windows news site - Iāll let the meme do the talking.


Session Cookies
Session cookies are small data files stored on your computer by a website to keep track of your online activities during a single visit.
Think of session cookies like festival wristbands. They give you access to different tents (web pages) without making you prove your ticket (login credentials) every time. But, just like the wristband, they lose their magic when the festival (your browsing session) ends.


Meme of the week

