It looks like your CEO
It sounds like your CEO
It's not your CEO.
An open source framework to test your team's resilience against deepfake phishing attacks before real attackers do.
One Framework. Pluggable Providers.
Adapter Based Architecture
Use pre-configured adapters for common LLM and voice cloning providers or write your own. Compatible with local or third-party cloud providers.
Compatibility Layer
Provides a transparent compatibility layer between the AI agent and standard web-conferencing programs. Agents join meetings like a regular user.
Containerized Architecture
Deploy on one machine or scale horizontally. Deploy fully containerized agents with a local runner or using adapters for common container backends.
Simple Setup. Autonomous Campaigns.
Clone a Team Member
Send a secure link that your team member can approve and record a consent video, no account required.
Configure the Campaign
Configure the campaign parameters such as work hours and which exploitation methods should be attempted.
Real-Time Results
Campaign will run autonomously while you monitor real-time results in the dashboard.
Features
- Auditable consent approval and tracking
- Multi-tenant: isolated campaigns across orgs, domains, or clients
- Adjustable frequency and concurrency controls to match AI provider limits
- Automatic credential rotation to manage third-party rate limits
- RESTful API
- Granular result tracking: credential harvesting, MFA bypass, data exfiltration, session hijacking, and more
- Deploy on your laptop or scale across Azure (AWS and GCP coming soon)