Experience a robust phishing simulation platform

Our phishing simulation platform empowers your organisation to proactively combat phishing attacks through realistic and customisable mock scenarios. By simulating phishing attempts, we help you identify vulnerabilities and educate your employees, reducing the risk of real-world attacks.

3 stars icon

Success story

See how one or Australia’s largest professional services organisation slashed its phishing risk from 20% to 1.6% thanks to Phriendly Phishing.

Read the Case Study

Comprehensive phishing simulation features

Schedule Simulated Phishing Attacks
Easily plan and deploy phishing simulations that mimic real-world attacks. Customise scenarios with various tactics including:

Email Attachments: Test your team's response to suspicious attachments.
Credential Capture: Simulate credential-stealing attempts to assess awareness.
Custom Email Templates: Use our almost unlimited library of email templates or create your own tailored scenarios.

Unique QR code simulations

Enhance your training program with our innovative QR Code phishing simulations. Delivered via email, these simulations test your team's ability to recognise and avoid QR-based phishing attempts.

Realistic QR Code Phishing:
Simulate scenarios where QR codes lead to malicious sites.
Employee Training: Educate your employees to be cautious with QR codes in emails.
Detailed Reporting: Track and analyse the results to identify areas for improvement.

Training employees actually love.

Phriendly Phishing training sharpens employees' intuition, builds procedural memory and makes staff re-evaluate their actions online.

lightbulb

Learning that sticks

Best-practice training with a mix of theory, interactive games and quizzes, practice scenarios and reward badges.

graph showing success increasing

Clear learning paths

Lessons mapped to each employee’s training level.

Tailored for states of awareness

Effective training for all employees, no matter their starting point.

Australian content

Developed by certified Australian professionals for the Australian context.

laptop icon

Time-conscious modules

All modules take learners 2 to 10 minutes to complete.

See Phriendly Phishing in action

Request A Demo

Lighten your load with Phriendly Phishing’s automated learning platform


Phriendly Phishing’s fully automated learning platform lets you upload your employees to our automated portal, choose the training phishing campaigns you want to run, select the timeframe for roll out and then sit back and wait for the results to come in.

laptop icon
phone icon
arrow
phone icon

Works on any device

Access training from any device with an internet connection. Our platform is optimised for mobile devices.

globa icon
arrow
globa icon

Australian-based cloud-servers

Avoid expensive manual deployments and patching and keep info onshore.

mortarboard hat icon
arrow
mortarboard hat icon

Up-to-the-minute content

New micromodules released as threat tactics and trends emerge and change.

user group icon
arrow
user group icon

Scalable

Designed to adapt to changes in the size of your workforce.

cog icon
arrow
cog icon

No ongoing administration. None.

Free up your IT team’s time with our fully automated training solution. Automatically re-enrol learners when you're ready.

data icon
arrow
data icon

Powerful analytics

Track your organisation’s phishing risk, overall phishing awareness, historical trends and staff performance in one place.

Our Phishing Training Options

S.C.A.M 101

Scam artistry is called the ‘confidence game’ but this course will turn the tables. Give your people the confidence to fathom phishing and its fraudulent tricks.

S.C.A.M 201

Equipped with knowledge of what constitutes phishing, your staff will apply their keen detective skills to spot counterfeit web pages and messages, and learn how to report their findings.

S.C.A.M 301

S.C.A.M 201 graduates step up to tackle a scenario where they educate a new starter about phishing. Harness the power of peer teaching to drive phishing knowledge deeper.

S.C.A.M Family

Phishing doesn’t stop at your organisation’s front door. Give staff the tools to help their friends and family scout for phishing locations and markers whenever they’re online.

FREE bonus options

USB drop testing and reporting

Check what would happen if staff members found an ‘apparently lost’ USB stick around your organisation or in communal areas.

Removeable media can contain malware. Shore up your risk with employee education and regular re-testing.

Find Out More
data icon

Phish Reporter for Microsoft Outlook and Google

Stay up to date on the latest industry news.

  • Report it with one click

  • Remove it from their inbox as they report it

  • Receive immediate positive feedback

Get the Phish Reporter

Threats to data aren’t just limited to phishing. Poor or ill-informed work practices can also expose sensitive data. Give your staff a good all-round understanding of data protection with our general security awareness series, Keep Secure 5.

Other training options

Keep Secure

In 6 online progressive modules your staff will learn answers to burning questions like:

  • Why should I care about this stuff?

  • Why is working on the free Wi-Fi at the café down the street such a bad idea?

  • What’s wrong with using my own mobile to do a Facebook quiz in the breakroom?

  • Is there such a thing as the perfect password?

Keep Secure Mini

Practice makes perfect.

Graduates of Keep Secure can hit refresh with 3 modules to help them review their personal security practices and work towards mastering good habits. It’s the ideal solution for anyone who has come back to the organisation or who sensibly wants an annual refresher.

FAQs

How can awareness training programs be implemented to reduce the risks of phishing?

* The first step to implementing phishing awareness programs is to know which type of phishing attack your organisation is most vulnerable to.

* Then, you need to determine the most effective way to engage your employees. For example, will the training be done using simulations or reading materials?

* Next, you need to focus on the training to cater to your employees’ individual needs; this makes it easier for them to focus on the training and remember it.

* Finally, you need to provide training regularly with the latest information to ensure your employees’ cyber security knowledge is always up to date.

How to train employees to recognise phishing email attacks?

Your employees need to be made aware of the many telltale signs of a phishing email. This includes:

* Grammar and spelling errors
* Includes suspicious attachments
* Unfamiliar domain names
* The email or message sounds urgent
* A suspicious tone of voice

You can learn more about phishing attacks here.

What are the main types of phishing emails?

These are a few common types of phishing to be aware of:

* Email phishing
* Spear phishing
* Smishing (SMS phishing)
* Vishing (Voice phishing)
* Whaling
* Angler phishing (Social media phishng)
* BEC (Business Email Compromise)

What are the other types of phishing attacks?

Aside from the common types of phishing, there are many forms of phishing, these include;


* Man-in-the-Middle (MTM) Attacks
* Search Engine Phishing
* HTTPS Phishing
* Pharming
* Pop-up Phishing
* Evil Twin Phishing
* Clone Phishing
* Watering Hole Phishing

Does phishing awareness training work?

Yes, it does. Most of our clients saw a drastic improvement in their cyber security infrastructure in just 90 days. Speak to the Phriendly Phishing team to learn more.