My rogue portal used for wireless pentest engagements
- Clone the target portal using tools such as HTTrack https://www.httrack.com/
- Copy index page generated from httrack.com and login.php to /var/www/html
- Modify login.php to suit your needs
- Run the iptables script
- Wait for your victim to connect and observe creds.txt
Reference: https://www.contextis.com/en/blog/wireless-phishing-with-captive-portals