WAR PHISH is a comprehensive cybersecurity software developed by Accurate Cyber Defense, designed as an all-in-one command center for security professionals, penetration testers, red team operators, and ethical hackers. This powerful tool integrates multiple attack vectors, reconnaissance capabilities, and communication platforms into a single, unified interface.
π― Cyber Drill Simulations WAR PHISH includes a complete cyber drill simulation engine that allows security teams to conduct realistic attack scenarios:
-
Automated Attack Simulations: Generate realistic cyber attack patterns including credential harvesting, network infiltration, and social engineering campaigns
-
Red Team vs Blue Team Exercises: Coordinate full-scale security drills with real-time metrics and performance tracking
-
Scenario Builder: Create custom attack scenarios with specific parameters, targets, and success criteria
-
Performance Analytics: Track response times, detection rates, and mitigation effectiveness across drill sessions
-
After-Action Reports: Comprehensive drill reports with vulnerability findings and recommendations
-
50+ Professional Phishing Templates: Pre-built templates for Facebook, Instagram, Twitter/X, Gmail, LinkedIn, GitHub, PayPal, banking portals, and corporate VPN login pages
-
Credential Capture Engine: Real-time credential harvesting with IP logging, user agent tracking, and geolocation
-
Multi-Channel Delivery: Deploy phishing links via email, SMS, messaging apps, or QR codes
-
Campaign Management: Track click rates, conversion rates, and user interactions
-
Awareness Training Reports: Generate detailed reports for employee security awareness programs
WAR PHISH provides direct integration with industry-standard penetration testing tools:
- nmap Full port scanning, service detection, OS fingerprinting
- nikto Web server vulnerability scanning (integrated)
- curl/wget HTTP/HTTPS request manipulation
- netcat TCP/UDP connection testing and banner grabbing
- ssh Remote connection testing and brute force simulation
- whois/dig DNS reconnaissance and domain information gathering
- traceroute Network path discovery and hop analysis
- ping ICMP testing and network latency measurement
-
WAR PHISH features deep integration with Nikto, the powerful web server scanner:
-
Web Vulnerability Scanning: Automatically test for over 6,700 potentially dangerous files and CGI scripts
-
Server Configuration Auditing: Identify misconfigured HTTP headers, outdated software versions, and insecure defaults
-
Subdomain Enumeration: Discover hidden web properties and admin interfaces
-
SSL/TLS Testing: Validate certificate configurations and cipher suite security
-
Custom Plugin Support: Extend Nikto's capabilities with custom database checks
-
Complete network discovery and mapping capabilities:
-
Automatic Network Discovery: Scan entire subnets to identify live hosts and services
-
Topology Mapping: Generate visual network maps showing device relationships and communication paths
-
Service Enumeration: Identify running services, versions, and potential vulnerabilities
-
OS Fingerprinting: Determine operating systems through TCP/IP stack analysis
-
Open Port Analysis: Comprehensive port scanning with service version detection
The spoofing engine enables advanced network manipulation for testing network security controls:
-
Craft and send packets with forged source IP addresses
-
Test ingress/egress filtering effectiveness
-
Validate anti-spoofing protections
-
Change network interface MAC addresses
-
Test MAC filtering and port security
-
Bypass MAC-based authentication systems
-
ARP Spoofing/Poisoning
-
Intercept network traffic between hosts
-
Test switch security and ARP inspection
-
Enable man-in-the-middle attack simulations
-
Redirect domain requests to attacker-controlled servers
-
Test DNS security and DNSSEC validation
-
Validate DNS filtering and sinkhole configurations
Multi-Platform Communication Integration WAR PHISH enables command and control through SEVEN different communication platforms, allowing operators to maintain access through various channels:
-
Full command execution via Telegram messages
-
Real-time alerts and credential notifications
-
Support for inline keyboard commands
-
End-to-end encrypted communication
-
Native Apple Messages integration
-
Send commands from any Apple device
-
Receive captured credential alerts
-
Seamless iOS/macOS ecosystem integration
-
Enterprise-ready Slack integration
-
Private channel command execution
-
Rich message formatting for results
-
Team collaboration features
-
Google Workspace integration
-
Thread-based command responses
-
Card-based output formatting
-
Attachment support for reports
-
Real-time command execution interface
-
Live analytics and statistics charts
-
Port scan result visualization
-
Multi-user session management
- Server-based command control
- Role-based access management
- Rich embed output formatting
- Voice channel notifications
-
Generic webhook support for custom integrations
-
Zapier/Make automation compatibility
-
Alert forwarding to any HTTP endpoint
WAR PHISH includes curated dark web resources for threat intelligence gathering:
-
Intelligence Sources
-
Active dark web market monitoring links
-
Threat actor forum scrapers
-
Data breach notification services
-
Ransomware leak site monitoring
-
Exploit database aggregators
-
Dark Web Operations
-
Tor network integration via SOCKS5 proxy
-
.onion address resolution and navigation
-
Secure anonymous communication channels
-
Dark web content extraction tools
-
Full offensive security toolkit for authorized penetration testing
-
Evasion techniques and persistence mechanisms
-
Custom payload generation and delivery
-
Post-exploitation framework integration
-
Comprehensive vulnerability assessment tools
-
Compliance reporting (PCI-DSS, HIPAA, SOC2)
-
Client-ready penetration test reports
-
Remediation guidance and recommendations
-
Network monitoring and anomaly detection
-
Security control validation tools
-
User awareness testing capabilities
-
Incident response simulation
-
Combined red/blue team exercise coordination
-
Detection effectiveness measurement
-
Response time optimization
-
Control gap identification
Command System
-
WAR PHISH supports over 5,000 security commands across multiple categories:
-
Reconnaissance and information gathering
-
Exploitation and post-exploitation
-
Persistence and privilege escalation
-
Lateral movement and pivoting
-
Data exfiltration testing
-
Cleanup and anti-forensics
-
SQLite backend for lightweight local deployment
-
Complete command history with timestamps and execution metrics
-
Credential storage with encryption at rest
-
Port scan results with service version tracking
-
Spoofing attempt logging for audit trails
-
RESTful API for custom tool integration
-
Webhook support for SIEM and SOAR platforms
-
Plugin architecture for community extensions
-
Python API for custom script development
Sample Use Cases Penetration Test Execution
scan 192.168.1.0/24nmap 192.168.1.100 -sV -p-generate_phishing corporate_vpnphishing_start link_abc123spoof_ip 10.0.0.1 192.168.1.1 192.168.1.100Security Awareness Campaign
generate_phishing it_security_updatephishing_start awareness_campaign_2024credentials
report Network Security Validation
nmap target_network -T4 -Aarp_spoof 192.168.1.100 192.168.1.1dns_spoof internal.corp.com 10.0.0.1git clone https://github.com/Iankulani/warphish.git
cd warphishpython3 warphishpython3 >= 3.7
pip3nmap
nikto
curl
wget
netcat-openbsd
openssh-client
whois
bin
d-toolshping3
macchanger
dsniff (arpspoof, dnsspoof)cryptography
requests
paramiko
scapy
telethon
discord.py
slack-sdk
selenium
python-whois
qrcode
google-auth-oauthlibWAR PHISH is developed for legitimate security testing and educational purposes only.
Appropriate use cases include:
-
β Authorized penetration testing with written consent
-
β Internal security team training and exercises
-
β Educational cybersecurity programs
-
β Security research and vulnerability disclosure
-
β Compliance validation and audit preparation
-
β Unauthorized access to computer systems
-
β Credential theft or identity fraud
-
β Malware deployment or ransomware operations
-
β Privacy violations or surveillance
-
β Any activity violating local, state, or federal laws
-
Users must obtain explicit written permission before testing any system they do not own or manage.
WAR PHISH represents a significant advancement in cybersecurity testing software, combining network penetration testing, social engineering, spoofing capabilities, and multi-platform command-and-control into a single integrated platform. Whether conducting red team operations, validating security controls, or training security awareness, WAR PHISH provides the tools needed to identify and remediate vulnerabilities before malicious actors can exploit them.
The inclusion of seven communication platforms (Telegram, iMessage, Slack, Google Chat, Discord, web dashboard, and webhooks) ensures operators can maintain flexible access regardless of network restrictions. Dark web integration provides threat intelligence capabilities, while the comprehensive command system offers over 5,000 security operations.
Accurate Cyber Defense continues to develop WAR PHISH with regular updates, new features, and community-driven improvements to ensure it remains at the forefront of cybersecurity testing technology.
