This Phishing Simulation project is aimed at conducting a phishing test in a controlled environment in order to understand phishing mechanisms and improve cybersecurity awareness. The primary goal was to replicate a real-world phishing attack by utilising a web interface that resembles a popular social media website. This project is purely for educational purposes.
- Proficiency in using the Kali Linux command line interface (CLI)
- Knowledge of conducting phishing campaigns
- Awareness of social engineering tactics and their impact
- Utilisation of tools in Kali Linux
- Virtualisation through Oracle VirtualBox
- Kali Linux
- VirtualBox
- Phishing (mamba-9mm), an automated phishing tool
Pictures 1 to 3: Configuring the phishing tool in Kali Linux
Picture 4: Generating the Phishing URL
Pictures 5 and 6: Testing the phishing page by visiting the generated URL on another machine and inputting placeholder login credentials for demonstration
Picture 7: The credentials gathered from the phishing tool