Phishing

Phishing Campaigns

More than 90% of successful cyberattacks begin with human error. A phishing campaign will safely test how employees respond to fraudulent emails, links, attachments, or fake login pages. You’ll discover not only the number of clicks but also the actual risk to your organization and the effectiveness of your security processes.

 

 
    • Tens of thousands of messages sent
    • Experience from hospitals, the financial sector, and manufacturing companies
    • Proprietary campaign management platform
 

Choose the scope of your campaigns based on your goal

Fisherman

A one-time phishing campaign

Suitable for organizations that want to conduct a one-time assessment of their employees’ current level of security awareness.

Together, we’ll choose a suitable scenario. We’ll then prepare and send out test emails and evaluate the responses. Once the campaign is over, you’ll receive a report with the results and recommendations.

This service will conduct a one-time audit of your organization. After mutual agreement and establishing a specific scenario, we will send out emails containing clues indicating that they are phishing attempts. We will let the campaign run for a period of time and then evaluate it in a final report.

Suitable for: an initial phishing test, assessing a specific risk, or a follow-up assessment after training

Price starting at 40,000 CZK, excluding VAT

 

Benefits

    • Checking Whether Employees Respond to Phishing Attempts
    • Identifying Vulnerabilities in Email Communication
    • A clear report with results and recommendations

Porybný

Ongoing Campaigns and Education

Regular campaigns and follow-up training help improve employee behavior over the long term. We conduct four campaigns with different scenarios throughout the year. After the initial testing, we begin training employees and continue to test them. We report on the results of each campaign on an ongoing basis and monitor the development of employees’ resilience.

The service includes access to a training platform where, after clicking or entering their information, employees can be redirected to a brief explanation and verification questions.

Suitable for: long-term education, regular testing, and tracking progress

Benefits

    • Regular Assessment of Security Awareness
    • Reducing the long-term risk of a successful attack
    • Measuring and reporting results on a quarterly basis

Poacher

Targeted black-box phishing

We simulate a real-world attacker who has no prior knowledge of the organization’s internal environment. We use publicly available information to develop customized scenarios targeting specific employees, roles, or departments.

The campaign may combine email phishing with other methods, such as smishing or vishing.

Suitable for: realistic testing of security processes

Benefits

    • Simulation of a Targeted Attack Using Publicly Available Information
    • Assessment of Employee Responses and Internal Processes
    • Safety assessment, including new techniques
 
 

A Dedicated Platform for Phishing Campaigns

We create phishing campaigns on our own platform. It is designed to make creating a campaign simple and to guide users through the entire process step by step.

Currently, there are over 15 pre-designed phishing scenarios available for you to choose from. We can further customize each scenario to suit the environment and needs of a specific organization.

Campaign preparation consists of five steps:

  1. Select a Campaign – Choose an appropriate phishing scenario.
  2. Domain Settings – Set the domain from which the campaign will run.
  3. Test email – Before sending, you can preview what the message will look like.
  4. Contact List – Create a group of recipients to whom the campaign will be sent.
  5. Launch the campaign – review the settings and launch the campaign.