You might like

Best Way to hack Facebook and Social Media Apps

He, Guys hope you are in the well condition. It's my first post about hacking. So I want to tell you about simple but powerful tool NexPhisher which can be used for Facebook hacking to WordPress hacking. For simple phishing, I find it better than  set toolkit but set toolkit has it's own charm. Before going into hacking first of all I want to tell you about NexPhisher.




NexPhisher

NexPhisher is a simple phishing tool that uses Ngrok (generally) to make a fake phishing page similar to different famous websites login page. It is an automated phishing tool made for Linux (preferably Kali Linux) and termux but you can also use in Ubuntu or parrot os. It is similar to zphisher that performs same function. The tool contains almost 37 phishing templates of 30 websites for hacking purpose. There are also 5 port forwarding options (depends on version also) but we will recommend Ngrok although it can down sometimes but chances are very low as Ngrok down in HiddenEye or Blackfish. The simplest solution is to run tool again.

Disclaimer! I am not responsible for any illegal activity. This post is for educational purposes only.


[+] PREQUESTIES

1. Kali Linux (preferably) or any other Linux distribution or termux

2. Stable Internet with Mobile Hotspot

3. Ngrok (will be installed automatically) 


[+] INSTALLATION

Let's begin to install NexPhisher in Kali Linux by firing up kali. The latest kali 2020.4 is recommended but other versions will also do good job. Your system should be updated for this. 

Note! If you are not a root user, use sudo command with all these commands step by step.

STEP 1:

First of all we have to update our system using command below:

apt update

STEP 2:

After this we have to install git repository so that we can download tool. If it is already downloaded on your system then no need to run this. But on termux it is essential.

apt install git -y



STEP 3:
In this step we have to download tool direct from GitHub using git clone that we installed above. We have to run following command in terminal:

git clone https://github.com/htr-tech/nexphisher

STEP 4:
Here, we have to go into nexphisher folder using cd command. cd is command generally used in Linux and Mac systems.

cd nexphisher

STEP 5:
Now we have to run setup command to run tool properly. Using bash command we will setup tool as it will well properly.

bash setup

STEP 6:
Now we can run tool by using command below. If you found any error please let me know. This is my first blog so please comment if you find errors during installation.
 
bash nexphisher

OR Using Single Command

Note!
You can use "sudo su" to enter into root user and then run this single command.

You can also use single command to install NexPhisher. The command is giving below:

 apt update && apt install git -y && git clone https://github.com/htr-tech/nexphisher && cd nexphisher && bash setup && bash nexphisher



[+] USAGE

Note!

 You have to use your hotspot to use this tool. Otherwise, it will not work.

  • Run command  bash nexphisher or ./nexphisher
  • You will see above page on running tool in terminal. For Facebook hacking choose 1.It depends on your interest which page you want to choose.


DON'T FORGET TO READ HOW TO HACK Wi-Fi IN 5 MINUTES
  • Here after selecting you will be prompted to choose a fake page which is shown below:

You can use any fake page here but traditional fake page is good to trap victim and don't use pol login page. It might warn victim to danger.
  • After it we have to select port forwarding option. We will use Ngrok here it will work best. I have tried many times in NexPhisher but this will not work properly on HiddenEye or Blackfish. The screenshot is given below: 

 
  •  After selecting option 2 you will be prompted to fake link which has Ngrok in it. When victim clicks on that link you will get credentials.

  •  You have to send this Ngrok URL to your victim and use social engineering to click on this link.    
  • As soon victim enters details you will find details in fake login page you will get details. The fake page is shown as: 
  •  The details will be shown as:
  •  Victim will be directed to this forgotten password page after entering details. This tool has only this disadvantage that it does not use manual URL to redirect after victim has entered details. But your work has been done. Please let me know if you find any error.
  •  You can also use Maskphish to mask your URL but it will work on only mobile not pc. Please let me know if I am missing something. Thanks.

Post a Comment

8 Comments

  1. I want to know how you will send a fake link to victim.

    ReplyDelete
    Replies
    1. You have to use social engineering for this purpose and make sure which link will make your victim crazy.

      Delete
  2. This tool is not working properly as it should and fake page is not like yours page.

    ReplyDelete
    Replies
    1. This is because you are not using hotspot. You are using WiFi or LAN. Ngrok will work perfectly on WiFi hotspot only.

      Delete
  3. Hello all
    am looking few years that some guys comes into the market
    they called themselves hacker, carder or spammer they rip the
    peoples with different ways and it’s a badly impact to real hacker
    now situation is that peoples doesn’t believe that real hackers and carder scammer exists.
    Anyone want to make deal with me any type am available.

    Available Services

    ..Wire Bank Transfer all over the world

    ..Western Union Transfer all over the world

    ..Credit Cards (USA, UK, AUS, CAN, NZ)

    ..School Grade upgrade / remove Records

    ..Spamming Tool

    ..keyloggers / rats

    ..Social Media recovery

    .. Teaching Hacking / spamming / carding (1/2 hours course)

    discount for re-seller

    Contact: 24/7

    fixitrogers@gmail.com

    ReplyDelete
  4. I’ve been surfing on the web more than 3 hours today, yet I never found any stunning article like yours. It’s alluringly worth for me. As I would see it, if all web proprietors and bloggers made puzzling substance as you did, the net will be in a general sense more beneficial than at whatever point in late memory. best short video app

    ReplyDelete
  5. It's showing ngrok 6022 error... What should I do now?

    ReplyDelete