added HSTS bypass as demonstrated by Leonardo Nve at blackhat

This commit is contained in:
byt3bl33d3r 2014-10-11 13:09:06 +02:00
commit 82739bba9f
11 changed files with 765 additions and 18 deletions

View file

@ -0,0 +1,7 @@
#here you can configure your domains to bypass HSTS on
#the format is real.domain.com = fake.domain.com
accounts.google.com = account.google.com
mail.google.com = gmail.google.com
www.facebook.com = social.facebook.com
accounts.google.se = cuentas.google.se