Loading...
Browse 209 phishing tools
Catch possible phishing domains in near real time by looking for suspicious TLS certificate issuances reported to the Certificate Transparency Log (CTL) via the CertStream API.
King Phisher is a phishing campaign toolkit for testing and promoting user awareness through simulated attacks.
PHP Script demonstrating a smart honey pot for email form protection.
EvilClippy is a cross-platform tool that creates malicious MS Office documents with hidden VBA macros and evasion techniques for penetration testing and red team operations.
A reminder that technology alone is not enough to stay secure against social engineering tactics.
A reconnaissance tool that analyzes expired domains for categorization, reputation, and Archive.org history to identify candidates suitable for phishing and C2 operations.
A tool that visits suspected phishing pages, takes screenshots, and extracts interesting files.
A guide on using Apache mod_rewrite to strengthen phishing attacks and bypass mobile device restrictions
A tool that uses Apache mod_rewrite to redirect invalid URIs to a specified URL
Python utility for testing the existence of domain names under different TLDs to find malicious subdomains.
A platform for creating and managing fake phishing campaigns to raise awareness and train users to identify suspicious emails.
An Outlook add-in that enables one-click reporting of suspicious emails to security teams with integrated statistics tracking and SMTP header collection.
A tutorial on how to use Apache mod_rewrite to randomly serve payloads in phishing attacks
Using Apache mod_rewrite rules to rewrite incident responder or security appliance requests to an innocuous website or the target's real website.
Get strategic cybersecurity insights in your inbox