LockPhish — Phishing Attack on Lock Screen

LockPhish — Phishing Attack on Lock Screen

LockPhish is the first phishing tool that can grab Windows credentials, Android PIN and iPhone Passcode using a https link. This tool is originally developed by TheLinuxChoice.

LockPhish - Phishing Attack on lock screen
Phishing attack on Lock Screen

This creates a fake lock-screen on target devices whenever target puts credential it captures it and sends to attacker using a ngrok tunnel. This tool automatically detect the device. Also track victim’s IP address.

Key Features of LockPhish

  • Lock screen phishing page for Windows, Android and iPhone.
  • Auto detect device.
  • Port Forwarding by Ngrok.
  • IP Tracker.

Lets starts the installation process.

First we open our terminal window and type following command to clone this tool from it’s GitHub repository:

git clone https://github.com/kali-linux-tutorial/lockphish

Then it will start the cloning process as shown in following screenshot.

git clonning lockphish

After finishing the process we need to go to LockPhish directory by using cd command:

cd lockphish

We need to give lockphish root access before run. To do that we apply following command:

sudo chmod +x lockphish.sh

 
Then we need to run the tool by using following command:

./lockphish.sh

The main menu of LockPhish will open as showing in the following screenshot:

lockphish main menu


Here we need to put the redirecting website’s link after phishing. The default value is set to YouTube. YouTube is good for social engineering or we can put other links. Here for an example we keep it default and hit the Enter button.

Then it will download ngrok in our Kali Linux system, and configure the phishing servers on our localhost and finally give us the Phishing URL.

Now we can send this link to our target with some social engineering techniques. When our target opens this link it will ask to redirect on YouTube.

When our target clicks here to be redirected on YouTube, the device shows following kind of screen:

Phish the lockscreen
Phishing attack on device’s lock-screen

After our victim inputs his Unlock PIN we got it on our terminal.

PIN received
PIN received

The same thing will work on Windows PC and iPhone, we just need to send the link it will automatically detect the type of device (Android, Windows, iPhone)

This is how we can use the phishing attack on devices lock-screen and get the login credentials.

Warning:-  This tutorial is for educational purpose
only. It shows how the modern day phishing attack works. Phishing is a serious crime. If anyone do any
illegal activity then we are not responsible for that.

If you liked our this tutorial then follow our blog regularly for more good quality Kali Linux tutorials. Follow us on Twitter and Medium for quick updates. Faced any problem or have any thoughts with this article then leave a comment below, we always replay.

KP AKA Koushik Pal is a Security researcher and specialist focused on educating about Linux for cybersecurity and URL‑masking vulnerabilities. Creator of MaskPhish, a well‑known open‑source bash-based URL‑masking tool. Linux enthusiasts Active speaker, trainer, and advocate for secure web practices.

38 comments

comments user
Anonymous

please tell bro, how to identify A device location with IMEI number.

comments user
Kali Linux

This is gonna be tough. Articles on Google will lead you to fake articles. We wil try to write an article about it.

comments user
Anonymous

plz bro, try to do the article as soon as possible, eagerly waiting for your article. thak you bro.

comments user
Kali Linux

Hi, we have researched about this. This requires permissions from Network Service Providers. They have access the devices IMEI numbers with SIM cards and they can track location of devices by using signaling towers. Even law enforcement needs help of these service providers to do this kind of location tracking. This is possible but not for everyone, who have high authority permissions in network providers services can do this.

comments user
black_snow

hey…i am not getting the direct link after everything is complete…am i doing something wrong?

comments user
Kali Linux

You can try after sometime.

comments user
alpha

what error does it bring

comments user
Kali Linux

The direct links are provided by some free online ssh services. The server might be down because of heavy load.

comments user
Aryan kaushik

is it not possible locate our device if we lost or someone stole it.And the fucking police they never help to find such devices that does not cost high. is there any solution to do it on ourself

comments user
Kali Linux

This tool is not created for finding or locating phones. You should insure your mobile device.

comments user
Anonymous

its not showing the pin phising page

comments user
Anonymous

Yeah!! I am facing the same issue

comments user
Kali Linux

This tool doesn't created by us. The creator of this tool is discontinued this project so we re-uploaded this work. This seems not working.

comments user
JaaM Arif

THANKS FOR INFO MORE INO WAHATSAPP PLEASE

comments user
Kovid Srivart

i am unable to create the direct link

comments user
Päwäñ ßäï

I can't access it in my mobile some of that commands are not working for me how can I do.

comments user
Kali Linux

Can you please specify the error.

comments user
cyberdigital

i am unable to create the direct link
check here: https://subefotos.com/ver/?d26b182ba851ec7257529d7690d07813o.png

comments user
Kali Linux

Sorry to say but this project is discontinued.

comments user
cyberdigital

thank you…

comments user
Unknown

Not getting a direct link… are servers down?

comments user
Kali Linux

Might be servers are down. If you are using termux then try to run lockphish during mobile wifi hotspot on.

comments user
iamKK

how come it did not gave a direct link url adress it shows blank in terminal

comments user
wishdurgapuja

I solved the problem after replacing ngrok

comments user
HijrahHoleescht

Hi bro I Pretty 👍 just visiting the nice article and clear info bout it then your response comment are hint me,what ur said bout google yeah i agree with that,

comments user
Kali Linux

Thanks a lot. Got lots of motivation from your comment. Keep Visiting. More awesome contents are coming. Thanks again.

comments user
Unknown

It's not giving a link there's an empty space after direct link:
PLZ HELP

comments user
Kali Linux

Are you on Termux? Then please close everything and first open your WiFi hotspot then open Termux and run the script.

comments user
Unknown

im getting no linkkkkkkkkkkkkkkkkkkkkkkk im using kali linuxxxxxx helpppppppppp meeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee

comments user
Kali Linux

This tool is not updated for a while. It might not work.

comments user
Karen Neves

Não está aparecendo o link, me ajudem

comments user
Kali Linux

Esta ferramenta é muito antiga. Tente hospedar a página em seu sistema e encaminhar manualmente a porta via ngrok

comments user
Anthony Klean Newtoxton

its running on 127.0.0.1:3333
just find a way to run ngrok or any forwarder and forward port 3333 under http
get the link and spam…

comments user
Anonymous

Hello, I'm writing with a problem in the code execution.
After writing :
[+] Redirect after phishing (Default: Youtube ):
everything should be green, but I get this:

[+] Starting php server…
[+] Starting ngrok server…
[+] Building webpages
[+] Direct link:

that is, the last two items are not highlighted in green and the code does not work

comments user
Anonymous

I have done everything correctly but the direct link is not showing. Please tell me what to do?

comments user
Anonymous

yeah!! even i have done the process correct everything is going good but it is not displaying the direct link..

comments user
Anonymous

yes the same issue Direct link is not appearing only blank

comments user
Anonymous

Not giving link

Post Comment