RED-TEAM TOOLING · v1.0

WIZARDHUNTS

Reverse-proxy phishing infrastructure built for authorized engagements.
Capture full authenticated sessions — credentials and tokens — while the target never leaves the real site.

Features

A focused toolset, maintained against current browser and identity-platform defenses.

Reverse Proxy Core

A transparent man-in-the-middle proxy serves the genuine site through your infrastructure. Victims interact with the real application — every request passes through you.

Session Capture

Credentials, cookies, and bearer tokens are extracted the moment they exist. Complete authenticated sessions — including MFA relays — ready for replay.

Anti-Bot Engine

TLS fingerprinting and browser telemetry scoring separate humans from automated traffic. Scanners and sandboxes receive a harmless decoy page.

Headless Browser Automation

A background browser satisfies telemetry-heavy login flows on the victim's behalf, so identity platforms see a consistent, legitimate client.

Polymorphic Obfuscation

Injected scripts are rebuilt into a different shape on every page load, defeating static and signature-based detection of proxy artifacts.

Content Spoofing

Off-lure and automated visitors are served a proxied benign website in-context — no redirects to explain, nothing to report.

Egress Proxy Chaining

Route outbound traffic through your own proxy pool — server-wide, per phishlet, or per campaign — preserving the victim's TLS fingerprint end to end.

Team Operations

Role-isolated operator accounts with separate workspaces and scoped data access. Hierarchy, quotas, and audit trails are managed server-side.

Deploy Automation

Provision a fresh server from a single command with an IP and credentials. Runs headless as a daemon — no interactive terminal required.