CACTER Upgrades PhishSim Anti-Phishing Simulation System to Help Enterprises Reduce Phishing Risks in Four Easy Steps
CACTER has announced the latest iteration of its PhishSim anti-phishing simulation platform, promising organizations a practical way to combat rising email-based threats through realistic employee training.
Every day, employees open corporate inboxes filled with messages that appear to be legitimate internal communications about invoices, benefits, bonuses, or system notifications. Many of these messages are sophisticated phishing attempts that can lead to data leaks or financial losses if employees click links or download attachments.
Traditional security awareness training is often described as boring and disconnected from real-world scenarios, making it difficult for companies to measure actual improvements in employee behavior. The upgraded PhishSim system addresses this gap by replacing lectures with high-fidelity simulations that let staff experience and learn to recognize phishing tactics firsthand.
Four Core Capabilities of the CACTER PhishSim System
The platform offers four main strengths that enable measurable security gains:
- High-fidelity simulations covering multiple attack types: PhishSim replicates the three most common phishing formats—fake links, malicious attachments, and disguised QR codes—while spoofing sender identities and official domains. Employees gain exposure to both advanced persistent threat (APT) techniques and targeted spear-phishing campaigns, helping them develop the ability to identify and avoid such threats independently. Long-term use has reduced average click rates from 23.88% to 4.16%.
- Dynamic template library updated to match current trends: The system includes an ever-growing collection of phishing templates based on frequent themes such as holiday greetings, electronic invoices, system upgrades, and financial subsidies. Templates can be customized for specific sectors including finance, manufacturing, and government, as well as real office situations like tax filing or HR promotions, ensuring exercises closely mirror actual risks employees face.
- Intelligent reporting and vulnerability analysis: After each campaign, the platform generates visual reports showing employee risk levels, departmental rankings, and detailed click behavior analysis. In addition to raw data, the reports provide concrete recommendations for improving defenses and scheduling follow-up training, creating a complete cycle of simulation, analysis, and remediation.
- Four-step configuration for immediate deployment: Setting up training requires only selecting templates, dividing employees into groups, launching the exercise, and viewing results. No specialized security personnel are needed, enabling companies to establish regular anti-phishing programs quickly and efficiently.
In today’s environment of increasingly sophisticated phishing emails, CACTER positions its updated PhishSim system as a practical tool for building lasting email security through repeated, data-driven practice rather than one-time training sessions.
Related articles
VC.ru Blocks Lawyer's Account After Article Exposing In-Platform Phishing Scheme
A Russian lawyer specializing in IT law and cryptocurrency regulation published an article on VC.ru detailing a phishing operation that abused the platform's own articles. The scheme involved posting seemingly legitimate content that later had links altered to redirect users to fake services stealing crypto assets. Within an hour of publication, the author's four-year-old account was automatically blocked under rules prohibiting multiple accounts to evade bans, despite the author having no prior restrictions or secondary accounts. After formal complaints citing Russian data protection law 152-FZ and consumer protection statutes, the platform reversed the ban but initially reclassified the account as commercial, demanding a monthly fee of 56,000 rubles for indexing. The account status was later restored following further legal correspondence. The incident highlights platform moderation challenges when reporting security threats involving paid accounts on the same site.
Email Graph Analysis Detects Impersonated Suppliers When DKIM and SPF Pass
Security researchers have outlined a practical method to identify business email compromise attempts that bypass traditional authentication checks. The approach relies solely on metadata from mail server logs to build communication profiles between external and internal addresses. By tracking first contact, one-way traffic, dormant periods, unusual sending hours, and domain similarity, analysts can flag high-risk messages requesting payment changes. The technique works against mailbox takeover scenarios where attackers reuse legitimate threads and valid signatures. Implementation uses existing Postfix or Microsoft Exchange logs and requires no new infrastructure beyond daily exports. A simplified version focusing only on lookalike domain detection can be built in a single evening and still catches most supplier impersonation attempts.
Developer Releases PhishIntel Open-Source Tool for Phishing Site Analysis and Risk Scoring
A developer has published PhishIntel, a lightweight Python-based OSINT application designed to analyze domains and evaluate phishing risk. The tool performs extensive checks including domain structure analysis, DNS records, RDAP and WHOIS data, TLS certificates, HTTP redirects, page content, security headers, and JavaScript static analysis. It generates structured JSON reports containing risk scores with explanatory indicators. Optional integrations with VirusTotal, Google Safe Browsing, URLhaus, Nmap, Nuclei, ZAP, and Playwright enable reputation checks, dynamic browser analysis, and active scanning. The project aims to help identify suspicious sites used in schemes such as the recent fake fuel sales campaign that defrauded victims of at least 3.7 million rubles. The author invites feedback from security professionals to improve the codebase.
Russian Court Bans Advertising for Renting and Selling Third-Party Bank Cards
The Chertanovsky District Court of Moscow has ruled that information promoting the rental and sale of other people's bank cards is prohibited for distribution in Russia. The decision targets a website and two Telegram channels that offered users the chance to temporarily lend or permanently sell their cards to third parties. Such schemes are commonly used to recruit drops who help receive, transfer, and cash out stolen funds. The court found that these proposals violate the rights and legitimate interests of citizens. Owners of the resources could not be identified, and domain registrars were foreign companies. VTB had previously warned about these schemes in 2024, noting that card owners risk ending up on bank blacklists, losing access to financial services, and facing criminal charges. The Ministry of Internal Affairs has also highlighted that transferring bank cards and accounts to outsiders can lead to criminal liability, with fraudsters particularly targeting children and teenagers.