
Explore how enterprise phishing works, from crafting phishing emails and automating workflows with Python to an end-to-end attack chain using Evil Jinx and Goldfish for sending and auditing.
Explore what enterprise phishing is, how mass and spear phishing target individuals and organizations, and how attackers use link-based payloads across email and chat platforms to gain a foothold.
Explore two-factor authentication and its categories—what you know, have, and are—along with password policies, password managers, and common phishing risks in enterprise environments.
Explore an end-to-end enterprise phishing attack plan, from crafting phishing emails and securing a domain to configuring dns, building an s3 bucket, and leveraging session hijacking.
Explore how to create phishing emails by examining structure, styles, and templates, including text, internal spear phishing, and financial phishing, with emphasis on subject and links.
Compare free and paid domains, evaluating DNS control, email hosting, and cost for enterprise phishing testing, and highlight choosing affordable, reliable domains with flexible DNS.
Compare free versus paid emails for enterprise phishing, evaluate email server reputation with McAfee real time database and Talos Intelligence, and choose providers to reach right place and avoid spam.
Identify suitable domains for phishing by evaluating expired dot coms, blacklist status, and categorization to improve inbox deliverability. Select a categorized domain using free reputation tools.
Identify email targets for phishing using hunter.io, the harvester, and Google hacking database. Validate results with LinkedIn and perform both automated and manual searches to assemble target lists.
Compare domain purchases from GoDaddy and Namecheap, configure privacy and email plans, and set up a private mailbox (info@yourdomain) with DNS steps for an enterprise phishing campaign.
Explore a high-level aws infrastructure architecture with a vpc, separate ec2 instances evil jinx and goldfish, security groups, s3 persistence, and a python script syncing compromised user data for phishing.
Set up a preloaded evil jinx army on Ubuntu EC2, configure a reusable AMI, and manage security groups, ports 80 and 443, and keypairs for scalable deployments.
Configure a custom go fish EC2 AMI to streamline enterprise phishing campaigns, including provisioning Ubuntu 18.04, securing the instance, installing Go, and building a reusable army image.
Create and configure an S3 bucket and an IAM role for EC2, aligning region and access permissions while discussing public access and encryption considerations.
Explore EvilGinx2, an Engine X-based tool to mimic real login flows and MFA across platforms like Reddit, configure domains and SSL, and create convincing phishing lures for red-team exercises.
Explore how to set up enterprise phishing campaigns with GoPhish, including landing pages, email templates, sending profiles, and campaigns, plus DNS, Let's Encrypt certificate considerations, and test redirects.
Create custom automation on an EC2 instance to pull data from a data.db file, parse it, and push results to an S3 bucket, enabling Slack or lambda-driven workflows.
Explore a full attack scenario of enterprise phishing, from crafting campaigns to capturing sessions and credentials using evil jinx and go fish, with DNS and campaign setup.
Defend against phishing by understanding email security, spam filtering, domain reputation, and indicators of compromise (IOCs) while recognizing MFA limitations and the value of hardware security keys.
Learn to use enterprise phishing attacks to compromise the network perimeter for a chosen target, with emphasis on ethical and approved use.
Welcome to the FIRST complete guide to Enterprise Phishing! A lot of other Phishing courses courses will just teach you how to send the emails or target systems. Learning just this aspect of Enterprise Phishing WILL NOT GET YOU THE JOB IN THE REAL WORLD! The Breaching The Perimeter With Enterprise Phishing was designed and developed by Silicon Valley Hackers to actually land you the hacking job or penetration testing!
The reason the course was designed in this unique way is due to the real world Ethical Hacking Experience at Silicon Valley Company's by Brandon Dennis. With countless years of hiring Ethical Hackers, building out Security/Ethical Hacking Teams and developing new attack techniques Brandon is uniquely qualified to provide a full top to bottom course on what it REALLY takes to get into the field of Ethical Hacking.
After completing this course you will have not only a solid understanding of Ethical Hacking but also how Teams work at Enterprise Scale, working with Executives and smashing the Interview. This course has 8+ hours of hands on training as well as a realistically usable portfolio you can bring to job interviews.
Information Security is an ever growing field and with new jobs opening everyday but not enough professionals to fill them is creating a massive demand. With this course you will be able to fill this gap! As a RedTeam Nation Student you will have the skills required to not only go into Ethical Hacking but into any field of Information Security available!
We teach not only the ethical hacking skills required but also the other 50%! Below are just some of the subjects you will learn.
Fully Understanding the attack chain for Next Generation Phishing
Learn how to make scalable infrastructure in AWS
Utilize Golden Images to allow for even more automation
Create Python Automation to sync data from S3 & EC2 Instances
Understand the Human Psychology for Phishing
Utilize the correct tools to bypass 2FA to access user sessions
Beat Email Server Security to land in the inbox
Create & Setup Domains & Emails correctly at scale
Much More!
These are only SOME of the topics covered in this course. Of course you will receive 24 hour support via Q/A of the course as well as access to our Private Student Only Facebook Group with access to the instructors.
Don't wait! Take your career to the next level with Breaching The Perimeter With Enterprise Phishing.