---
title: Phishing
description: Phishing
---

[![avantguard](https://avantguard.io/hs-fs/hubfs/LogoInverted.png?width=254&height=120&name=LogoInverted.png "avantguard")](https://avantguard.io?hsLang=en)

- [Services](https://avantguard.io/en/services)
- [About Us](https://avantguard.io/en/über-uns)
- [Experience](https://avantguard.io/en/erfahrung)
- [Career](https://avantguard.io/de/karriere)
- [Research](https://avantguard.io/en/blog)
- [Contact](https://avantguard.io/en/kontakt)

 En

- [English](https://avantguard.io/en/phishing)
- [German](https://avantguard.io/phishing)

[![avantguard](https://avantguard.io/hs-fs/hubfs/LogoInverted.png?width=144&height=65&name=LogoInverted.png "avantguard")](https://avantguard.io?hsLang=en)

<https://avantguard.io/en/phishing#dark-header__mobile-nav__mmenu>

[![Dark-logo-small-1](https://www.fthemes.net/hubfs/Dark-logo-small-1.png "Dark-logo-small-1")](https://avantguard.io?hsLang=en)

- [Services](https://avantguard.io/en/services)
- [About Us](https://avantguard.io/en/über-uns)
- [Experience](https://avantguard.io/en/erfahrung)
- [Career](https://avantguard.io/de/karriere)
- [Research](https://avantguard.io/en/blog)
- [Contact](https://avantguard.io/en/kontakt)

 En

- [English](https://avantguard.io/en/phishing)
- [German](https://avantguard.io/phishing)

[![avantguard](https://avantguard.io/hs-fs/hubfs/LogoInverted.png?width=144&height=65&name=LogoInverted.png "avantguard")](https://avantguard.io?hsLang=en)

<https://avantguard.io/en/phishing#dark-header__mobile-nav__mmenu>

- [Services](https://avantguard.io/en/services)
- [About Us](https://avantguard.io/en/über-uns)
- [Experience](https://avantguard.io/en/erfahrung)
- [Career](https://avantguard.io/de/karriere)
- [Research](https://avantguard.io/en/blog)
- [Contact](https://avantguard.io/en/kontakt)

Current language: English

- [English](https://avantguard.io/en/phishing)
- [German](https://avantguard.io/phishing)

# Phishing

In a phishing campaign, the awareness of employees to phishing emails is tested and evaluated. This can be used as a determination of the current state, a basis for training or as a regular check and demonstration of progress as [Phishing-as-a-Service](https://avantguard.io/en/phishing#as_a_service).

If the following questions are still open in your company, a phishing is recommended:

- Do our employees recognize phishing emails?
- Do our employees react according to our policies?
- Are our awareness trainings having the desired effect?
- How much effort does an attacker need to achieve a successful phishing?

### Process

Scoping

### Goal and scope

The purpose of the scoping meeting is to define the goals of the password audit and to transfer sufficient knowledge about the authentications used so that the offer can then be created on this basis. The questions mostly revolve around the password policy and established measures and mechanisms for secure passwords and MFA.

 

Offer

### Agreement

The offer is prepared on the basis of the scoping meeting. In addition to the objectives, methods, price and general conditions, it also contains a suggested timeframe for execution. Of course, nothing is set in stone and the offer will be adapted to your needs. In principle, we always charge according to the actual effort involved.

Scenario

### Phishing-E-Mail

Based on the available information and the awareness level of the employees, suggestions for the phishing email are developed and discussed. This can be done in several iterations until everyone agrees with the phishing email.

Test Run

### Delivery check

The delivery of the e-mails is checked in a test run. Any security mechanisms that could prevent delivery are softened for this specific campaign. This ensures that it is really the awareness and not the technical measures that are tested. Technical measures can be examined more efficiently in an attack simulation.

Dispatch

### Campaign launch

The phishing e-mails are sent in several waves so that there is no overloading of the mail server or problems with delivery. Ideally, however, the intervals are kept as short as possible so that there is no falsification of the results by initial reactions.

 

Report

### Analysis

The landing page is kept active until resolution (usually a few days). All clicks or interactions are registered and statistically processed. This makes it possible to evaluate the results in as much detail as possible. The results can also be evaluated by department or location, for example. This allows an even more targeted approach to improving awareness.

Training

### use the effect

A phishing campaign is a perfect basis for training. Nothing achieves a greater learning effect than actual phishing emails that have been successful. There are also very good learning modules from our partners, which can be used for interactive learning.

 

Repeat

### Sustained

A single phishing campaign can serve as a basis for training or as an eye-opener, but it rarely achieves a lasting effect. Ideally, phishing campaigns and training should be conducted on a regular basis. This is exactly what we offer in Phishing-as-a-Service.

### Deliverables

All results are submitted in a final report (PDF, Excel and JSON). In addition to the desired statistics, the report also contains the phishing emails and their detection characteristics. Thus, the results can be used as a basis for training.

##### PDF

The final report in PDF format contains an introductory section, executive summary, evaluations, statistics and the phishing emails sent with detection characteristics.

 

##### EXCEL

The Excel contains all statistics and evaluations. Thanks to the editable format, this list is suitable for further processing of the results and additional information can be easily added.

##### JSON

The JSON file contains all statistics and evaluations. The JSON format is the most common format for the automated further processing of information and can often be fed into the existing tools with little effort.

 

### Phishing-as-a-Service

Phishing awareness can only be sustainably improved through regularity. With Phishing-as-a-Service, we regularly send different phishing emails and adapt them to the awareness level. After the initial effort of setting up the infrastructure and delivery verification, we can offer this at a lower price than individual campaigns. Ideally, the campaigns are supplemented by training or modules, thus continuously improving phishing awareness.

### Code of Conduct

The aim of a social engineering audit is to check employees' awareness of and reactions to social engineering attacks. The simulated attacks are based on real attacks. In contrast to real attacks, however, simulated attacks must comply with legal and moral boundaries. The personal integrity and psychological well-being of the persons involved should not be affected in any way by a social engineering audit. The results of such an audit are only made available in anonymized form and should not allow any conclusions to be drawn about the identity of the individual persons tested and their behavior.

##### Menu

- [Home](https://avantguard.io/en/homepage)
- [Services](https://avantguard.io/en/services)
- [About Us](https://avantguard.io/en/über-uns)
- [Experience](https://avantguard.io/en/erfahrung)
- [Research](https://avantguard.io/en/blog)
- [Contact](https://avantguard.io/en/kontakt)

##### Services

- [Basic Health Check](https://avantguard.io/en/basic_health_check)
- [Penetration Testing](https://avantguard.io/en/penetration-test)
- [Red Teaming](https://avantguard.io/en/red-teaming)
- [AD Security Improvement](https://avantguard.io/en/ad_improvement)
- [HIST](https://avantguard.io/en/hist)
- [Other](https://avantguard.io/en/services)

##### Research

- [Cleartext Credentials](https://avantguard.io/en/blog/plaintext-credentials)
- [Overload Mapping](https://avantguard.io/blog/overload-mapping-vs.-memory-scanner)
- [Ransomware](https://avantguard.io/en/blog/what-really-helps-against-ransomware)
- [Red Teaming](https://avantguard.io/en/blog/red-teaming)
- [KeePass](https://avantguard.io/en/blog/attacking-and-hardening-keepass)
- [PowerShell Logging](https://avantguard.io/en/blog/powershell-enhanced-logging-capabilities-bypass)
- [AD CS](https://avantguard.io/en/blog/active-directory-certificate-services)

© 2026 avantguard cyber security AG

##### avantguard cyber security AG

Neue Jonastrasse 52   
8640 Rapperswil-Jona  
Switzerland  
+41 55 253 30 30  
[info@avantguard.io](mailto:info@avantguard.io)

![flagge_schweiz](https://avantguard.io/hs-fs/hubfs/flagge_schweiz.png?width=40&height=40&name=flagge_schweiz.png)

[Privacy Statement](https://avantguard.io/en/datenschutzerkl%C3%A4rung?hsLang=en)

[Follow us on LinkedIn](https://ch.linkedin.com/company/avantguard-cyber-security-ag) [Follow us on Twitter](https://twitter.com/avantguard_io) 

![](https://f.hubspotusercontent00.net/hubfs/7712601/back-to-top.png)