Gophish
Phishing simulation framework for security awareness programmes, providing campaign templates, landing pages, SMTP sending profiles and per-recipient click and credential tracking.
Django application used by offensive security teams to track engagements, clients, infrastructure and findings, and to generate consistent penetration test reports. Built and maintained by WIEWAVE for Azure Marketplace and AWS Marketplace, on Ubuntu and Debian.
| Built & maintained by | WIEWAVE |
|---|---|
| Category | Security |
| Operating systems | Ubuntu, Debian |
| Marketplaces | Azure Marketplace and AWS Marketplace |
| Offer types | Public listing, with private offers on request |
| Marketplace | Status |
|---|---|
| Azure Marketplace | Published |
| AWS Marketplace | Published |
| Google Cloud Marketplace | Available on request |
Need it on another marketplace, or as a private offer for your organisation? cloud@wiewave.com
Each image follows its distribution's own provisioning model, package manager and security tooling — not one build relabelled several times.
LTS and interim releases, Minimal and Pro variants, built to Canonical's cloud-image conventions.
Stable and oldstable, with backports where a workload needs a newer runtime than the release ships.
The same four steps behind every offer we've published, including the hardening and CIS Benchmark checks every build goes through.
The distribution, licensing model and target marketplaces are agreed before anything is built.
Packer templates, Ansible provisioning and a pinned package set — then hardened, scanned and checked against the CIS Benchmark for its distribution.
Taken through each cloud's own certification pipeline before it goes live on the marketplace.
Rebuilt on the upstream security cadence and re-published, with old versions retired without breaking deployments.
If yours isn't here, ask our marketplace team directly.
Secrets management, identity, VPN gateways and CIS-benchmarked hardened base images.
Phishing simulation framework for security awareness programmes, providing campaign templates, landing pages, SMTP sending profiles and per-recipient click and credential tracking.
Authentication server for passwordless login, implementing passkeys and WebAuthn alongside email one-time codes, with drop-in UI components and a Postgres backend.
Adapter service connecting the Trivy vulnerability scanner to Harbor's pluggable scan API so container images in a Harbor registry are scanned on push.
Vault with a durable storage backend, TLS listeners and auto-unseal against the host cloud's KMS.
Access gateway that proxies developer connections to databases, servers and Kubernetes with authentication, approval workflows, session recording and data masking.
Threat intelligence platform that enriches files, domains, IP addresses and hashes by fanning requests out to many analysers and connectors behind one API.
Tell us the distribution, the marketplace and the commercial model — we'll build, certify and publish it as a public listing or a private offer.