-
Notifications
You must be signed in to change notification settings - Fork 884
FAQ
It's an english pronunciation of a polish word "modliszka". Which means mantis.
2FA isn't broken. At the end it is all about 'social engineering' that you will have to be stay alert about. Which can be e-mail, phone, post or face2face based.
If you don't want to always verify if the domain name in the URL address bar of your browser isn't somehow malicious or worry if there's yet another URL spoofing bug, then consider switching to U2F protocol.
You will have to instruct the proxy how to handle responses that contain non trivial FQDNs, obfuscated JavaScript code, dynamically added html security attributes (like "integrity"),etc. This requires some manual tuneup of your configuration file.
The following parameters will be helpful to do this:
-targetRules string
Comma separated list of 'string' patterns and their replacements.
-targetRes string
Comma separated list of target subdomains that need to pass through the proxy
Refer to the 'How to use' for further explanation page.