css-only-chat
evilginx2
css-only-chat | evilginx2 | |
---|---|---|
13 | 30 | |
6,544 | 9,912 | |
- | - | |
0.0 | 7.4 | |
8 months ago | 8 days ago | |
Ruby | Go | |
MIT License | BSD 3-clause "New" or "Revised" License |
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.
css-only-chat
-
Bear Does Analytics with CSS
The idea of using CSS-triggered requests for analytics was really cool to me when I first encountered it.
One guy on twitter (no longer available) used it for mouse tracking: overlay an invisible grid of squares on the page, each with a unique background image triggered on hover. Each background image sends a specific request to the server, which interprets it!
For fun one summer, I extended that idea to create a JS-free "css only async web chat": https://github.com/kkuchta/css-only-chat
- GitHub – kkuchta/CSS-only-chat: A monstrous async web chat using no JavaScript
- 真 TM 技术鬼才: 前端纯 CSS 实现网页聊天
- GitHub kkuchta/CSS-only-chat: A monstrous async web chat using no JavaScript
- 技术鬼才: 用 CSS 实现聊天功能
-
No, CSS isn't a Programming Language
Isn't CSS Turing complete? Someone even implemented a chat client in it: https://github.com/kkuchta/css-only-chat
-
Gov.uk removed jquery and saw some performance improvements as a result
If it's something like a new reply to an issue raised, then you can either have it so these only show when the page reloads. Depending on how critical these notifications are, probably not the best solution. An alternative is to have a page that never stops loading. I've never actually used this approach, but I remember this guy used the approach for a JS-free chat system: https://github.com/kkuchta/css-only-chat
-
Yes, I can connect to a DB in CSS
Here's an actual CSS-only implementation of a chat app that I happened to stumble across yesterday while tinkering: https://github.com/kkuchta/css-only-chat
- Soft skills
evilginx2
-
Google announces passwordless by default: Make the switch to passkeys
No, if you break into a site using passkeys, it gives you literally zero information that can be used to authenticate as any of the users. Think about the prevalence of data breaches in the past decade, and the sharp rise in the effectiveness of password stuffing, and think about why this change might be a good idea.
Also even with traditional 2FA, TOTP can be phished. See https://github.com/kgretzky/evilginx2
WebAuthn almost entirely eliminates phishing risk, and Passkeys are a really nice, clean UX for using WebAuthn.
-
I’ve been stuck on this situation for 3 days, does anyone know how to fix this?
So I downloaded this onto my computer https://github.com/kgretzky/evilginx2 and that took while since I’m new to GitHub and I barely know my way around computers. That went fine, i noticed there was another repository that was pretty much an add on to that same software I downloaded earlier “evilginx2” by another creator, this is the link https://github.com/simplerhacking/Evilginx3-Phishlets
-
friends 2fa being bypassed and Im stumped any advice?
Did your friend clicked on a phising link, if yes a aitm coud be one of the possibilities: https://github.com/kgretzky/evilginx2
-
MFA Just Casually being bypassed?? Anyone else seeing this?
We had a user compromised simiarly the other day, with what I believe to be https://github.com/kgretzky/evilginx2 now. It stole his session cookie and was able to auth. Fortunately, we have Office 365 Defender and he was flagged immediately on the risky user sign-ins and we were able to block and investigate.
-
Accounting got phished. Paid out big bucks
Evilginx kan bypass MFA and hijack your session https://github.com/kgretzky/evilginx2 Only thing that migitates this is fido keys
- User compromised despite MFA?
-
Best way to capture web app traffic for later analysis?
You can try this for web app traffic MIMD: https://github.com/kgretzky/evilginx2
- Main channel hacked
- Any Self Hosted alternatives to cloak.ist?
- MFA Bypass
What are some alternatives?
pyinfra - pyinfra automates infrastructure using Python. It’s fast and scales from one server to thousands. Great for ad-hoc command execution, service deployment, configuration management and more.
Modlishka - Modlishka. Reverse Proxy.
dhall - Maintainable configuration files
muraena - Muraena is an almost-transparent reverse proxy aimed at automating phishing and post-phishing activities.
CSS_SQL_Networking_Tools - Tools used by the SQL Networking Customer Support Team
awesome-lnurl - A curated list of awesome lnurl things.
IntercalScript - The IntercalScript programming language
evilgophish - evilginx3 + gophish
Pulumi - Pulumi - Infrastructure as Code in any programming language. Build infrastructure intuitively on any cloud using familiar languages 🚀
htmx - </> htmx - high power tools for HTML
stylops - Write JSON as CSS
Evilginx2-Phishlets - Evilginx2 Phishlets version (0.2.3) Only For Testing/Learning Purposes