This project implements an entra phishing protection. It's not bulletproof but can detect simple MITM scenarios by checking the Referer header to be a valid microsoft url. This can prevent EvilNGINX ...