ToolsFebruary 9, 20261 min readby 0xt0pus

GoPhish

Open-source phishing framework for simulating phishing campaigns and security awareness


GoPhish

Description

GoPhish is a phishing simulator tool. It is used by SOC analysts to simulate phishing attacks and create phishing campaigns to test end-user awareness. It requires configuring sending profiles, landing pages, email templates, and user groups.

Usage 1: Deployment

Deploy GoPhish on an Ubuntu machine, install an SSL certificate from Letsencrypt and use the Gmail SMTP server to send out emails.