GoPhish
Open-source phishing toolkit. Relevant for testing AI-generated phishing campaigns.
What it does
An open-source phishing simulation toolkit for running controlled social engineering campaigns. Provides campaign management, email template creation, landing page cloning, and results tracking.
Security relevance
Relevant to AI security because LLMs are transforming phishing attacks — generating more convincing, personalised, and scalable social engineering content. GoPhish lets you test whether your organisation can detect AI-generated phishing, and whether your AI-powered email security actually catches sophisticated campaigns.
When to use it
Use when testing your organisation's resilience against AI-enhanced phishing attacks. Requires a mail server, careful scoping, and offensive security expertise. Always get written authorisation before running campaigns.
OWASP coverage
Risks addressed — mapped to both OWASP Top 10 standards. 0 in LLM, 0 in Agentic.
The raw record
What Yuntona stores. Single source of truth — fork it on GitHub.
name: GoPhish slug: gophish type: Generative category: AI Red Teaming url: https://getgophish.com reviewed: 2026-04 added: 2026-04 updated: 2026-04 risks: llm: [] asi: [] complexity: Expert Required pricing: — audience: Red Team lifecycle: [test] tags: [Phishing, Social Engineering, Testing]