KB4 Free Tools Flashcards
Phishing Security Test (PST)
A simulated phishing attack used to see how prone the organization’s employees are to click on phishing links.
Phishing Reply Test (PRT)
A simulated phishing attack designed to see who replies to the phishing email.
Social Media Phishing Test (SPT)
A simulated phishing attack designed to see who is likely to fall for a social media related phishing attack.
Automated Security Awareness Program (ASAP)
A tool that simplifies the process of creating customized Security Awareness Programs.
The user completes a questionnaire about their organization and goals. ASAP then generates a custom plan based on the user’s specific needs.
Breached Password Test (BPT)
A tool that checks to see if an organization’s users are currently using passwords that are in publicly available breaches associated with the org’s domain.
Phish Alert Button (PAB)
An email plugin that gives users a safe way to handle actual or potential phishing emails.
Email Exposure Check Pro (EEC Pro)
Identifies the at-risk users in an organization by checking their email addresses against several hundred data breaches and checking social media information.
Domain Spoof Test (DST)
A test that checks a domain name to see if it can be spoofed.
Mailserver Security Assessment (MSA)
Tests a user’s mailserver configuration to check the effectiveness of the mail filtering rules.
Ransomware Simulator (RanSim)
Simulates 13 ransomware infection scenarios to determine if a user’s workstation is vulnerable to infection.
RanSim also allows users to see if their antivirus software is incorrectly blocking files.
Second Chance
A tool that checks links originated in email messages and asks the user if they’re sure they want to follow the link, giving them a second chance to evaluate the link.
USB Drive Test
A tool that finds out how users react to unknown USB drives.
The purpose is to see how many users will pick up the USB drive, plug them into their computer, and open files.
Weak Password Test (WPT)
Checks an organization’s Active Directory for several different types of weak password related threats.
Password Exposure Test (PET)
A tool that checks if an organization’s users have exposed emails publicly available on the web and checks the organization’s Active Directory to see if they are using weak or compromised passwords that are part of a known data breach.
Domain Doppelgänger (DD)
A tool that allows admins to identify look-alike domain names.