ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login

    GoPhish

    IT Discussion
    gophish phishing social engineering employee training ransomware
    6
    8
    1.5k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • IRJI
      IRJ
      last edited by

      I finally got a chance to setup GoPhish. I sent out a test phishing email out to our IT department and I must say it works pretty well. Social Engineering is really easy with GoPhish. You can clone any website automatically including OWA with a fake link that our employees should catch.

      You can also easily clone legit emails and legit users. I want to test some CEO fraud since that is the latest popular scam. Oh I was also able to pull a csv from Active Directoy and import the entire organization.

      0_1474916415469_upload-3e5077e5-572a-4b39-8e3e-df8500a2cbe3

      0_1474916423286_upload-120f27c5-50f0-452d-aad5-4e2a0ca1a553

      1 Reply Last reply Reply Quote 5
      • dafyreD
        dafyre
        last edited by

        This is on my list of things to test out... on my family... using the Nigerian prince scam... after I warn them, of course... maybe.

        DashrenderD 1 Reply Last reply Reply Quote 0
        • DashrenderD
          Dashrender @dafyre
          last edited by

          @dafyre said in GoPhish:

          This is on my list of things to test out... on my family... using the Nigerian prince scam... after I warn them, of course... maybe.

          Sadly, many will still fail even after being warned.

          1 Reply Last reply Reply Quote 1
          • scottalanmillerS
            scottalanmiller
            last edited by

            Nice, is GoPhish free?

            coliverC IRJI 2 Replies Last reply Reply Quote 0
            • coliverC
              coliver @scottalanmiller
              last edited by

              @scottalanmiller said in GoPhish:

              Nice, is GoPhish free?

              Open Source.

              1 Reply Last reply Reply Quote 0
              • IRJI
                IRJ
                last edited by

                Another cool thing is that it does not capture passwords by default. You only get their username. If you want to capture passwords you can, but they will be in plain text..

                0_1474916988408_upload-1a105f43-346e-4cf7-816e-22e8cec58273

                1 Reply Last reply Reply Quote 0
                • IRJI
                  IRJ @scottalanmiller
                  last edited by

                  @scottalanmiller said in GoPhish:

                  Nice, is GoPhish free?

                  Yes 100% and it stays on your local network.

                  1 Reply Last reply Reply Quote 2
                  • StrongBadS
                    StrongBad
                    last edited by

                    Very cool, looks like a good tool.

                    1 Reply Last reply Reply Quote 0
                    • 1 / 1
                    • First post
                      Last post