Skip to content
Drag and Drop ClickJacking PoC development assistance tool.
Branch: master
Clone or download
Chris Le Roy
Chris Le Roy Update
Latest commit 8ed2b00 Sep 23, 2016
Type Name Latest commit message Commit time
Failed to load latest commit information.
resources Cleaned up image resources Nov 26, 2015
LICENSE Created LICENSE Nov 26, 2015 Update Sep 23, 2016
index.html code cleanup Nov 27, 2015
oldIndex.html Adding new Jack! Sep 4, 2015


By Chris Le Roy (@brompwnie)

Black Hat Arsenal


Jack is a web based ClickJacking PoC development assistance tool.

Jack makes use of static HTML and JavaScript.


Jack Contains:

  • resources/**
  • index.html
  • sandbox.html
  • oldIndex.html


Jack is web based and requires either a web server to serve its HTML and JS content or can be run locally. Typically something like Apache will suffice but anything that is able to serve HTML content to a browser will do. Simply download Jack's contents and open "index.html" with your browser locally and Jack is ready to go. Alternatively if you prefer the older UI for Jack, open "oldIndex.html" with your browser for the old UI.


Depending on your setup, you may need to configure your browser to allow Jack to load resources that are being served via encrypted channels.


Jack is licensed under a Creative Commons Attribution-NonCommercial-ShareAlike 4.0 International License ( Permissions beyond the scope of this license may be available at

You can’t perform that action at this time.