Skip to content
This repository was archived by the owner on Dec 7, 2025. It is now read-only.

Not able to spoof 2fa ip location, facebook. Device based 2fa location retrieves evilginx host ip location instead of actual client ipΒ #18

@ghost-hub1

Description

@ghost-hub1

Hello guys,

Is there anyone that can help as to how to modify the http_proxy.go file in evilginx core cos when facebook sends 2fa auth to the device, it shows the location of the server hosting evilginx instead of retrieving the actual client's ip address but ua is good, issue is with the ip address somehow and after inspecting facebook network over and over, they dont use headers for ip address otherwise, this would have been very easy...

Please πŸ™ anyone with help??? every other thing works so far just that when it is time to approve 2fa and you see another location?? that is definitely a problem.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions