SOOperating StrikeOps
Running phishing campaigns in Phishops
How to build, send and track an authorised phishing engagement in StrikeOps Phishops: choosing static versus adversary-in-the-middle, picking the channel, crafting the lure, tracking interactions, and handling captured secrets responsibly.
Intermediate3 min readassociate streamUpdated Sat Aug 01 2026 00:00:00 GMT+0000 (Coordinated Universal Time)
Learning objectives
- Explain when Phishops may run and the difference between static and adversary-in-the-middle modes.
- Build a campaign with targets, lure and schedule, using AI to help draft pretexts.
- Track the interaction timeline as evidence for the report.
- Handle captured credentials and sessions as the most sensitive data an engagement produces.
Operating StrikeOps
Available to StrikeOps operators
Operating StrikeOps trains you on the platform itself, so it is reserved for licensed StrikeOps firms and their operators.
- The full Operating StrikeOps track
- Deploy agents, run engagements, and report with the platform
- Unlocks automatically for signed-in operators
Already at a StrikeOps firm? Sign in to unlock.