awesome-repositories.com
Blog
MCP
awesome-repositories.com

Discover the best open-source repositories with AI-powered search.

ExploreCurated searchesOpen-source alternativesSelf-hosted softwareBlogSitemap
ProjectMCP serverAboutHow we rankPress
LegalPrivacyTerms
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
Ignitetch avatar

Ignitetch/AdvPhishing

0
View on GitHub↗
3,112 stars·818 forks·Hack·19 views

AdvPhishing

AdvPhishing is a tool for social engineering simulations and credential harvesting testing. It generates deceptive web interfaces, including cloned service provider pages and pre-made layouts that mimic payment and social media platforms, to capture user login details.

The tool manages the end-to-end deployment of phishing campaigns by routing captured credentials to a specified email address via an integrated SMTP mail delivery mechanism. It includes utilities for exposing a local development server to the public internet through secure tunneling and redirects users to legitimate third-party destinations after data capture to hide deceptive activity.

Broad capabilities cover deceptive page generation, mail identity configuration for data exfiltration, and network traffic management.

Features

  • Credential Harvesting Simulations - Mimics login portals to test organizational susceptibility to credential theft and phishing.
  • Data Exfiltration - Employs techniques to move captured sensitive credentials out of the network via email.
  • Event Capture - Intercepts form submission events to extract user-inputted data for credential harvesting.
  • Phishing Campaign Orchestrators - Coordinates the deployment of deceptive pages and the routing of captured data in security simulations.
  • Data Exfiltration Tools - Provides an integrated SMTP mechanism to exfiltrate captured credentials to a remote recipient.
  • Web Form Credential Captures - Captures login details directly from deceptive web pages for transmission to an email address.
  • Social Engineering Simulations - Creates deceptive login and landing sites to simulate and test human vulnerabilities in security.
  • Phishing Page Generators - Creates realistic, deceptive login interfaces used to simulate credential harvesting attacks.
  • Deceptive Pages - Generates deceptive web interfaces using pre-defined layouts to trick users into revealing data.
  • Local Server Tunnels - Exposes a local development server to the public internet via a secure tunnel.
  • Automatic Traffic Redirection Handlers - Implements application-layer redirection to forward users to a legitimate site after a phishing request.
  • Phishing Templates - Provides pre-made HTML and CSS layouts that mimic popular social media and payment platforms.
  • Service Provider Clones - Generates cloned login pages for various service providers to deceive users into submitting credentials.
  • URL Redirections - Redirects users to legitimate third-party URLs after data capture to mask deceptive activity.

Star history

Star history chart for ignitetch/advphishingStar history chart for ignitetch/advphishing

AI search

Explore more awesome repositories

Describe what you need in plain English — the AI ranks thousands of curated open-source projects by relevance.

Start searching with AI

Frequently asked questions

What does ignitetch/advphishing do?

AdvPhishing is a tool for social engineering simulations and credential harvesting testing. It generates deceptive web interfaces, including cloned service provider pages and pre-made layouts that mimic payment and social media platforms, to capture user login details.

What are the main features of ignitetch/advphishing?

The main features of ignitetch/advphishing are: Credential Harvesting Simulations, Data Exfiltration, Event Capture, Phishing Campaign Orchestrators, Data Exfiltration Tools, Web Form Credential Captures, Social Engineering Simulations, Phishing Page Generators.

What are some open-source alternatives to ignitetch/advphishing?

Open-source alternatives to ignitetch/advphishing include: undeadsec/socialfish — SocialFish is a credential harvesting tool and phishing framework designed to intercept usernames, passwords, and… trustedsec/social-engineer-toolkit — The Social-Engineer Toolkit is a social engineering framework and penetration testing suite designed to simulate… jaykali/maskphish — Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network… thewhiteh4t/seeker — Seeker is a social engineering location tool and browser geolocation capture system. It provides a framework for… htr-tech/nexphisher — Nexphisher is a command-line security utility and social engineering simulation framework designed for capturing… gophish/gophish — Gophish is an open-source phishing toolkit and simulation framework designed to test organizational security awareness…

Open-source alternatives to AdvPhishing

Similar open-source projects, ranked by how many features they share with AdvPhishing.
  • undeadsec/socialfishUndeadSec avatar

    UndeadSec/SocialFish

    4,764View on GitHub↗

    SocialFish is a credential harvesting tool and phishing framework designed to intercept usernames, passwords, and two-factor authentication codes through deceptive web pages. It functions as a social engineering platform and information gathering tool used to collect target data and system information for security research and penetration testing. The system utilizes a reverse proxy to tunnel network traffic and capture real-time HTTP requests and session cookies. It features a live operator panel for intercepting one-time passwords and employs browser-based cloning to replicate authenticatio

    CSS
    View on GitHub↗4,764
  • trustedsec/social-engineer-toolkittrustedsec avatar

    trustedsec/social-engineer-toolkit

    14,984View on GitHub↗

    The Social-Engineer Toolkit is a social engineering framework and penetration testing suite designed to simulate human-centric security attacks. It serves as a phishing simulation tool and credential harvesting utility to evaluate personnel awareness and organizational resilience. The toolkit provides specialized tooling for phishing campaign testing and credential theft simulation. It enables the creation of deceptive emails and landing pages to identify vulnerabilities in how users handle sensitive account information. The system includes capabilities for security awareness training and br

    Python
    View on GitHub↗14,984
  • jaykali/maskphishjaykali avatar

    jaykali/maskphish

    3,020View on GitHub↗

    Maskphish is a comprehensive security toolkit that integrates capabilities for digital forensics, network vulnerability scanning, open-source intelligence, penetration testing, and social engineering. It functions as a multi-purpose framework for automating reconnaissance and executing security audits across diverse network environments. The project features a specialized phishing and social engineering toolkit used for cloning websites, masking URLs, and deploying deceptive pages to capture user credentials. It also includes a remote access Trojan builder for generating platform-specific exe

    Shellhackhackinghacking-tool
    View on GitHub↗3,020
  • thewhiteh4t/seekerthewhiteh4t avatar

    thewhiteh4t/seeker

    9,598View on GitHub↗

    Seeker is a social engineering location tool and browser geolocation capture system. It provides a framework for capturing precise GPS coordinates and device metadata by hosting deceptive webpages that prompt users for location permissions. The project includes an HTML phishing template engine for deploying custom or predefined website clones designed to trick users into granting sensitive permissions. It further utilizes a device fingerprinting tool to collect hardware specifications, operating system details, and screen resolution from visiting clients. The system incorporates network reco

    CSSaccuracyaltitudegeolocation
    View on GitHub↗9,598
  • See all 30 alternatives to AdvPhishing→