The new `25 release for phishing simulations

Apr 15, 2025

We're thrilled to share all the exciting new features we've been working on at ATTACK Simulator.

This latest release represents months of hard work from our team, all focused on one goal: making your security awareness training more effective, engaging, and relevant to today's threats.

Fresh New Content That Actually Works

We've completely revamped our content library with material that reflects today's threats, not yesterday's news. From convincing phishing templates to pixel-perfect landing pages and bite-sized learning modules, everything is designed to keep your team engaged and prepared for real-world attacks.

    🎣 Phishing Templates That Mirror Real Threats

    We've added nearly 600 new phishing simulation emails to our library, and trust me, these aren't your standard "You've won a gift card!" templates. Our team has been closely tracking the latest phishing tactics used by actual threat actors, and we've recreated them (minus the malware, of course!) to give your team realistic practice.

    Why does this matter? Well, attackers aren't using the same old tricks anymore. They're getting cleverer, more targeted, and frankly, more convincing. By training your team with outdated templates, you might be giving them a false sense of security. These new templates show them exactly what to watch for in their inbox today, not what was trending three years ago.

    Our customers who've started using these new templates are seeing much better engagement from their teams – people actually take the training seriously when it feels authentic!

    🖥 Landing Pages That Could Fool Anyone

    To complement those shiny new phishing emails, we've added 125 new landing pages that look frighteningly similar to the real thing. Each one is carefully designed to mimic what employees might see if they clicked a malicious link.

    We've all seen those obviously fake pages with terrible logos and broken English, but that's not what sophisticated attacks look like anymore. Today's phishing pages are often pixel-perfect copies that can fool even tech-savvy users. Our new landing pages reflect this reality, teaching your team to look beyond the surface for signs of fraud.

    One of our beta testers put it perfectly: "I thought I was good at spotting fakes until I saw these new templates. It was a wake-up call for our whole security team."

    📚 Learning Materials People Will Actually Read

    Let's be honest – traditional security training can be mind-numbingly boring. That's why we've completely revamped our educational content with what we call "educational pills" –bite-sized learning modules delivered in various formats:

    • Quick-read explanations for busy professionals
    • Eye-catching infographics for visual learners
    • Short videos for those who prefer watching to reading
    • Real-world examples that show the consequences of security mistakes

    We've designed these with one thing in mind: people actually have to engage with security content for it to work. By mixing up formats and keeping everything concise, we're seeing much higher completion rates and better knowledge retention.

    New Training Programs That Make a Difference

    Say goodbye to check-the-box security training. Our new programs connect the dots between concepts, creating genuine understanding that translates to measurable results. Whether you need comprehensive awareness building or targeted scenario testing, we've got you covered with approaches proven to dramatically reduce phishing susceptibility.

    🔄 360° Advanced Phishing Awareness Program

    This isn't just another box-ticking exercise. Our new 360° program brings together all our latest content into a comprehensive learning journey that actually changes behavior.

    What makes it special? It connects all the dots between different security concepts, building genuine understanding rather than isolated facts. Organizations using the complete program are seeing phishing susceptibility rates drop dramatically – in some cases by more than 80% in the first six months

    The best part is you can customize it to your organization's specific risks and culture. You can simply select the software and services that you are using and the simulations will adapt accordingly.

    🎯 Advanced Attack Scenario Simulation

    Sometimes you need to test your team against specific threats you're worried about. That's exactly what this new feature lets you do.

    Pick from 600 different attack scenarios, each paired with its own convincing landing page, and target them to specific departments or individuals. Want to see how your finance team handles a targeted invoice fraud attempt? Or how your executives respond to a sophisticated impersonation attack? Now you can find out before the real attackers do.

    One CISO told us: "We used to worry about what we didn't know. With these scenarios, we can test our resilience against pretty much anything attackers might try."

    Security Features That Actually Protect Your Investment

    We've also beefed up the platform itself with several important security enhancements:

      🔑 Password Management That Makes Sense

      We've added several features to keep accounts secure:
      30-day password expiration: Sure, changing passwords can be annoying, but it's still one of the most effective protections against credential compromise. If a password does get leaked somehow, it has a limited shelf life.

      Password history checks: We've all seen people who just rotate between "Password1" and "Password2" when forced to change. Our system prevents reusing old passwords, ensuring genuine rotation.

      12+ character requirement: Each extra character exponentially increases password strength. We've bumped our minimum to 12 characters because the math doesn't lie – it's dramatically more secure.

      ⏰ Session Security That Doesn't Get in the Way

      5-minute inactivity lockscreen: We've all walked away from our computers without logging out. This feature automatically secures sessions after 5 minutes of inactivity, protecting against opportunistic access without being overly intrusive.

      🛡 Platform-Level Protection

      Request throttling: This behind-the-scenes feature limits how many requests can come from a single source, preventing various automated attacks without affecting normal users. It's security that works without anyone noticing.

      The Foundation of Your Security Strategy

      While our new features are grabbing headlines, let's not forget the powerful core capabilities that have been protecting your teams all along:

      🎲 Smart Randomized Delivery

      Our intelligent randomization system sends phishing simulations to different people at different times, just like real-world attacks. When Monday morning rolls around, you won't have your entire office comparing notes about the "obvious test email" they all received simultaneously.

      Real attackers don't target everyone at once. By mimicking actual attack patterns, your team stays alert and can't rely on the office grapevine for warnings. The training remains challenging and effective, keeping your security posture strong.

      🔄 Cloud Directory Integration

      Connect once to Office 365 or Google Workspace, and user management becomes effortless. New hires automatically appear in your training dashboard, while departed employees are seamlessly removed—no manual updates required.

      Your security team has better things to do than manage CSV files and user lists. This integration ensures complete coverage across your organization, eliminates administrative headaches, and makes sure your security training reaches everyone who needs it, right when they need it.

      📧 Advanced Email Spoofing

      Create truly challenging simulations using any sender address you can imagine. Want your team to recognize that "info@amazon.com" or "billing@apple.com" might not be legitimate? We make it possible to test exactly those scenarios.

      The most dangerous phishing emails are the ones that look legitimate at first glance. By training your team to scrutinize even seemingly trustworthy sources, you build a human firewall that's prepared for sophisticated attacks—not just the obvious ones.

      📥 Inbox Protection Plugins

      Our simple but powerful plugins for Gmail and Outlook make it easy for employees to flag suspicious emails or identify training simulations with a single click. No more complicated reporting processes or uncertainty about what to do when something looks fishy.

      When reporting suspicious emails is easy, people actually do it. These plugins create a direct link between training and daily email habits, reinforcing security awareness while giving you valuable insights into your team's vigilance level.

      🎓 Role-Based Training Paths

      Different departments face different threats. That's why we offer four specialized training courses tailored to various roles and experience levels throughout your organization.

      Generic training leads to tuned-out employees. Our role-specific approach ensures your finance team learns about wire fraud while developers focus on code security—keeping everyone engaged with content that directly applies to their daily work.

      Getting Started Is Easier Than You Think

      The best part? All these new features are available right now, and implementing them won't disrupt your existing setup. Here's a simple approach many of our customers have found helpful:

      1. Start with the platform security features – these take just minutes to enable and immediately improve your security posture.
      2. Explore the new content library – browse through the new templates and landing pages, and start incorporating them into your next campaigns.
      3. Consider the new training programs – when you're ready for a more comprehensive approach, the 360° program can transform your security awareness culture.

      We're Here to Help Every Step of the Way

      Our team is as excited about these new features as you are, and we're ready to help you make the most of them:

      • Check out our updated Knowledge Base for detailed guides
      • Reach out to your account manager for personalized assistance

      Remember, we're just an email or call away if you have questions or need help tailoring these features to your organization's needs.

      Ready to see ATTACK Simulator in action?

      Join hundreds of Spanish organizations already transforming their security awareness with our CCN-qualified platform

      There’s no reason to postpone training your employees

      Get a quote based on your organization’s needs and start building a strong cyber security infrastructure today.