User Tools

Site Tools


general_planing

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
Next revisionBoth sides next revision
general_planing [2016/05/20 20:06] – [Checklist: what you may ask your client prior to a phishing campaign] lucygeneral_planing [2016/05/20 20:10] lucy
Line 83: Line 83:
  
 ^ Topic       ^ Details                                                  ^ Topic       ^ Details                                                 
-| SPAM Whitelist    | Is it possible to whitelist LUCY's IP on the SPAM filter and FW?| +| SPAM Whitelist    | Is it possible to whitelist LUCY's IP on the [[avoid_spam_issues|SPAM filter]] and FW?| 
 | Recipients | How many users shall be tested? Is it possible to get a [[add_mail_recipients|list of users]] including email, name and additional info (like department, location etc.)? | Recipients | How many users shall be tested? Is it possible to get a [[add_mail_recipients|list of users]] including email, name and additional info (like department, location etc.)?
 | Recipients Allocation | Shall all recipients get the same scenario simulation or a simulation preferred, where user groups get different attack scenarios? | Recipients Allocation | Shall all recipients get the same scenario simulation or a simulation preferred, where user groups get different attack scenarios?
Line 99: Line 99:
 | View Only Access    | Does the client wish to get a [[user_management|view only access]] on LUCY to monitor the campaign statistics? | View Only Access    | Does the client wish to get a [[user_management|view only access]] on LUCY to monitor the campaign statistics?
 | Log & Success Level| What is considered a [[success_actions|successful attack]] (link click, data submit etc.)? Should LUCY also trigger [[monitor_a_campaign_statistics|opened mails]]? Can advanced client side scripts ([[beef_integration|BeEF]]) be executed to gather more detailed information about the user? | Log & Success Level| What is considered a [[success_actions|successful attack]] (link click, data submit etc.)? Should LUCY also trigger [[monitor_a_campaign_statistics|opened mails]]? Can advanced client side scripts ([[beef_integration|BeEF]]) be executed to gather more detailed information about the user?
 +| Login Restrictions | If a landing page with a login is created: is it necessary to let the user submit the password or shall LUCY redirect the user to a different page before the full password is entered? Is it necessary to implement regular expressions on the login fields in order to avoid false positives?
 +| Server Location | Should LUCY run in the cloud or on the client's premises?
  
general_planing.txt · Last modified: 2021/04/06 15:24 by lucy