> For the complete documentation index, see [llms.txt](https://evolvingsysadmin.gitbook.io/red-team-toolkit/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://evolvingsysadmin.gitbook.io/red-team-toolkit/initial-access/phishing.md).

# Phishing

## Description

Tools for testing email security

## Tools

### GoPhish

* [GoPhish](https://getgophish.com/) is an open-source phishing framework that allows security teams to simulate phishing attacks and measure the effectiveness of their phishing awareness training programs.

### PhishingFrenzy

* [PhishingFrenzy](https://github.com/pentestgeek/phishing-frenzy) is a free and open-source phishing framework that provides a simple and user-friendly interface for creating and launching phishing campaigns.

### THOR

* [The Honeypot for Open Research](https://www.honeynet.org/) is an open-source framework for phishing simulation and analysis.

### Social-Engineer Toolkit (SET)

* [Social-Engineer Toolkit](https://github.com/trustedsec/social-engineer-toolkit) is a popular open-source tool for simulating various types of phishing attacks, including email-based phishing, web-based phishing, and social engineering attacks.

### PhishX

[PhishX](https://github.com/Userphish/PhishX) is a free and open-source phishing simulation tool that enables organizations to launch phishing campaigns and assess the effectiveness of their security awareness training programs.

### MailSniper

[MailSniper](https://github.com/dafthack/MailSniper) is an open-source tool for searching and extracting email addresses from different sources, including publicly available data, for use in phishing simulations.

## Resources

* Add the following to the phishing page:
  * <https://github.com/EvolvingSysadmin/Phishing-Frameworks>
  * <https://github.com/EvolvingSysadmin/Gophish-Phishing-Framework>
  * <https://tryhackme.com/room/phishingyl>
