// PHISHSIMHUMAN-RISK PLATFORM · Authorised engagements only

PhishSim

Realistic simulations. Measurable resilience.

PhishSim is Syn Eater's human-risk simulation platform. We run authorised phishing campaigns for your organisation — realistic messages, controlled landing experiences, and measurable outcomes — so leadership can see how people respond under pressure and improve awareness with evidence, not guesswork.

Access is engagement-based. Syn Eater operators run campaigns under written rules of engagement. Client stakeholders get a clear results portal (summaries and PDF).

Existing clients: Open PhishSim portal →Security Tools catalog

PHISHING FUNNEL

Authorised email campaigns — open, click, submit, and report tracking

Risk 7.9
Lure
Open
Landing
Creds
CLICKPhish Funnel
Lures Live18
Cred Submits47
Mailboxes1.2k

CAMPAIGN CONTROLS

  • ROE gate before sendACTIVE
  • M365 / SMTP deliveryACTIVE
  • Landing page packsACTIVE
  • Emergency halt + auditACTIVE

FUNNEL METRICS

Opened
72%
Clicked
28%
Submitted
11%
Reported
49%
Opens 72%Clicks 28%Reports +49%Halt Ready
WHAT YOU GET
  • ROE-gated campaign delivery with authorisation checks before launch
  • Open / click / submit / report-style tracking and resilience metrics
  • Operator console plus a client results portal
  • Templates and awareness landing packs tailored to the engagement
  • Mail delivery options suited to your environment (including Microsoft 365 where scoped)
  • Executive-ready CSV/PDF reporting with emergency halt and an audit trail
HOW IT WORKS
  1. 01.Scope & authorisation — written permission and agreed rules of engagement
  2. 02.Campaign design — realistic scenarios matched to your risk profile
  3. 03.Staged simulation — controlled delivery across approved channels
  4. 04.Measure & report — behaviour metrics, summaries, and PDF for stakeholders
  5. 05.Enablement / retest — targeted coaching and follow-up simulations
WHO IT'S FOR
  • Organisations seeing recurring phishing-related incidents
  • Teams rolling out new awareness programmes
  • Leadership needing measurable human-risk metrics
  • Clients already on Syn Eater pentest or social-engineering engagements
HOW IT FITS

Service and platform, not duplicates

Social Engineering

The engagement service — phishing, vishing, and human-layer adversary simulations scoped to your organisation, with coaching and retest plans.

View Social Engineering →

PhishSim

The platform that runs and reports authorised simulations — operator console, tracking, and a client results portal for measurable human-risk outcomes.

PhishSim is also listed in the Security Tools pentest catalog.

FAQ

Is PhishSim self-serve?

No. Access is engagement-based. Syn Eater operators run campaigns under written rules of engagement — this is not a public consumer login product.

Does PhishSim replace Social Engineering?

No. Social Engineering is the engagement service. PhishSim is the platform that runs and reports authorised simulations for those engagements.

Can stakeholders see results?

Yes. Client stakeholders get a clear results portal with summaries and PDF reporting so leadership can track resilience over time.

Is authorisation required?

Yes. Simulations require written permission and an agreed scope before launch. Unauthorised phishing is never in scope.

Pretoria, Gauteng, South Africa. Phone +27 12 051 0686.