Web attack vector

The social engineer toolkit comes with the powerful functionality of cloning whole websites and then locally hosting them. There is an advantage to having an exact clone of a website, people will not be hesitant to give their details. Let's say that we have a clone of the PayPal login page. We can use this page to get people to enter their actual PayPal logins. Since the website will look similar to the official PayPal website, very few will have doubts of whether the site is legit. There is laxity in users to verify the URLs of the sites they visit, especially when these are provided through shortened URLs.

Also, it is very cheap and easy to host a website with a fake but similar URL. There are also some tricks that can ...

Get Learn Social Engineering now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.