• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

War Room

Shells from above

RSM logo

  • Home
  • About
  • Blog
  • Talks/Whitepapers
  • Tools
  • Recreation
Home > R&D > Development > King Phisher 0.1.6 Released

King Phisher 0.1.6 Released

November 3, 2014 By Spencer

The latest version of RSM’s phishing tool King Phisher has been released with numerous improvements. King Phisher is RSM’s Phishing Campaign toolkit of choice, developed internally to meet the demands of the engagements that the team encounters.

Some of the new features in this release include:

  • Support for email messages with inline images that do not need to be downloaded
  • Import and Export support for saving message contents and settings
  • Support for using Postgres as a database backend
king_phisher_insert_inline_image
Inserting an inline image is as easy as right clicking and selecting the image.

Probably one of the most exciting features added to King Phisher recently is the ability to embed images directly into messages. This removes the need for the target to click “Download Images” or the equivalent that is provided in most email clients and thus provides a more realistic message. Many users do not automatically download images, so when impersonating messages from popular services, missing logos that need to be downloaded can be a quick clue to the target that something is wrong.

King Phisher now supports full import and export capabilities for messages including the contents of the message, target list, any attachments, inline images, and all the settings configured through the “Configuration” tab. This is very useful for recording all the settings of a message that has been sent so they can be referenced or reproduced at a later point in time. This lets King Phisher users create better template messages that can be more easily used for performing retests.

Prior to version 0.1.6, King Phisher only support using SQLite as a database backend. As the project continues to grow, it is desirable to support a more fully featured DBMS to get the benefits of automatic schema migrations and easier management. King Phisher continues to support SQLite but as schema updates are released, the database can not be automatically updated as it can be with Postgres.

King Phisher is available on RSM’s GitHub page and can be downloaded here: http://engage.securestate.com/king-phisher.

Share this...
  • Reddit
  • Email
  • Facebook
  • Twitter
  • Linkedin

Spencer

Primary Sidebar

Categories

  • Defense
  • Forensics
  • Offense
  • Physical
  • R&D

Most Viewed Posts

  • DLL Injection Part 1: SetWindowsHookEx 10.8k views
  • Sophos UTM Home Edition – 3 – The Setup 10.8k views
  • Leveraging MS16-032 with PowerShell Empire 10k views
  • Bypassing Gmail’s Malicious Macro Signatures 9.8k views
  • How to Bypass SEP with Admin Access 8.9k views

Footer

  • RSS
  • Twitter
  • Tools
  • About
  • RSM US LLP

+1 800 903 6264

1 S Wacker Dr Suite 800
Chicago, IL 60606

Copyright © 2023 RSM US LLP. All rights reserved. RSM US LLP is a limited liability partnership and the U.S. member firm of RSM International, a global network of independent audit, tax and consulting firms. The member firms of RSM International collaborate to provide services to global clients, but are separate and distinct legal entities that cannot obligate each other. Each member firm is responsible only for its own acts and omissions, and not those of any other party. Visit for more information regarding RSM US LLP and RSM International.