An Open-Source Phishing Framework.
🔗 Visiter GophishDescription
An Open-Source Phishing Framework.
💬 Notre avis
Gophish est un outil open-source qui permet de simuler des attaques de phishing afin de former les employés à la cybersécurité. C'est une bonne option pour les entreprises qui cherchent à sensibiliser leurs équipes sur les dangers du phishing. Le fait que ce soit gratuit est un gros plus, surtout pour les petites entreprises ou les organismes à but non lucratif. Cependant, il faut aussi être prudent : l'outil peut être complexe à mettre en place si tu n'as pas de compétences techniques. Si tu n'es pas à l'aise avec les aspects techniques, tu risques de te perdre dans la configuration. À côté de Gophish, des alternatives comme PhishMe ou KnowBe4 existent, mais elles sont souvent payantes et peuvent coûter plusieurs centaines d'euros par an. Il est donc important de peser le pour et le contre avant de se lancer. En gros, si tu cherches à éduquer ton équipe sans dépenser d'argent, Gophish est un bon choix, mais n'attends pas un service clé en main. Fais attention aux pièges possibles si tu n'es pas familier avec le sujet, car la cybersécurité est un domaine où des erreurs peuvent coûter cher. <!-- ai-reviewed -->
🤖 Fiche enrichie
Points positifs
Gratuit
Open-source
Permet de sensibiliser à la cybersécurité
Points négatifs
Complexe à mettre en place
Nécessite des compétences techniques
🔗 Sites similaires
Emerging Threats - Open Source
Emerging Threats began 10 years ago as an open source community for collecting Suricata and SNORT® rules, firewall rules, and other IDS rulesets. The open source community still plays an active role in Internet security, with more than 200,000 active users downloading the ruleset daily. The ETOpen Ruleset is open to any user or organization, as long as you follow some basic guidelines. Our ETOpen Ruleset is available for download any time.
PhishTank
PhishTank is a collaborative clearing house for data and information about phishing on the Internet. Also, PhishTank provides an open API for developers and researchers to integrate anti-phishing data into their applications at no charge.
SBL / XBL / PBL / DBL / DROP / ROKSO
The Spamhaus Project is an international nonprofit organization whose mission is to track the Internet's spam operations and sources, to provide dependable realtime anti-spam protection for Internet networks, to work with Law Enforcement Agencies to identify and pursue spam and malware gangs worldwide, and to lobby governments for effective anti-spam legislation.
AutoShun
AutoShun is a Snort plugin that allows you to send your Snort IDS logs to a centralized server that will correlate attacks from your sensor logs with other snort sensors, honeypots, and mail filters from around the world.
DNS-BH
The DNS-BH project creates and maintains a listing of domains that are known to be used to propagate malware and spyware. This project creates the Bind and Windows zone files required to serve fake replies to localhost for any requests to these, thus preventing many spyware installs and reporting.
Tor Bulk Exit List
CollecTor, your friendly data-collecting service in the Tor network. CollecTor fetches data from various nodes and services in the public Tor network and makes it available to the world. If you're doing research on the Tor network, or if you're developing an application that uses Tor network data, this is your place to start. [TOR Node List](https://www.dan.me.uk/tornodes) / [DNS Blacklists](https://www.dan.me.uk/dnsbl) / [Tor Node List](http://torstatus.blutmagie.de/)
TOR Node List
TOR Node List
Project Honey Pot
Project Honey Pot is the first and only distributed system for identifying spammers and the spambots they use to scrape addresses from your website. Using the Project Honey Pot system you can install addresses that are custom-tagged to the time and IP address of a visitor to your site. If one of these addresses begins receiving email we not only can tell that the messages are spam, but also the exact moment when the address was harvested and the IP address that gathered it.
MISP - Open Source Threat Intelligence Platform
MISP threat sharing platform is a free and open source software helping information sharing of threat intelligence including cyber security indicators. A threat intelligence platform for gathering, sharing, storing and correlating Indicators of Compromise of targeted attacks, threat intelligence, financial fraud information, vulnerability information or even counter-terrorism information. The MISP project includes software, common libraries ([taxonomies](https://www.misp-project.org/t
Portswigger
PortSwigger offers tools for web application security, testing & scanning. Choose from a wide range of security tools & identify the very latest vulnerabilities.
ModSecurity
ModSecurity is a toolkit for real-time web application monitoring, logging, and access control.
sqlmap
sqlmap is an open source penetration testing tool that automates the process of detecting and exploiting SQL injection flaws and taking over of database servers. It comes with a powerful detection engine, many niche features for the ultimate penetration tester and a broad range of switches lasting from database fingerprinting, over data fetching from the database, to accessing the underlying file system and executing commands on the operating system via out-of-band connections.
💬 Commentaires
Aucun commentaire pour le moment. Soyez le premier ! 🎯