{"id":643,"date":"2025-03-01T11:28:19","date_gmt":"2025-03-01T10:28:19","guid":{"rendered":"https:\/\/porfolio.jrey.eu\/?page_id=643"},"modified":"2025-03-10T15:21:41","modified_gmt":"2025-03-10T14:21:41","slug":"test-de-phishing","status":"publish","type":"page","link":"https:\/\/porfolio.jrey.eu\/index.php\/test-de-phishing\/","title":{"rendered":"Test de Phishing"},"content":{"rendered":"\n<p>Dans le cadre de ma mission en entreprise, j\u2019ai \u00e9t\u00e9 charg\u00e9 de mener une campagne de sensibilisation \u00e0 la s\u00e9curit\u00e9 informatique, en particulier sur les risques li\u00e9s au phishing. L\u2019objectif principal \u00e9tait de tester et d\u2019\u00e9duquer les utilisateurs sur la reconnaissance des emails de phishing.<\/p>\n\n\n\n<p><strong>Cr\u00e9ation d\u2019un Email de Phishing :<\/strong>&nbsp;J\u2019ai con\u00e7u un mail de phishing convaincant en utilisant le sch\u00e9ma de la communaut\u00e9 de commune.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"609\" height=\"62\" src=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-7.png\" alt=\"\" class=\"wp-image-152\" srcset=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-7.png 609w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-7-300x31.png 300w\" sizes=\"auto, (max-width: 609px) 100vw, 609px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"580\" height=\"368\" src=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-2.png\" alt=\"\" class=\"wp-image-140\" srcset=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-2.png 580w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-2-300x190.png 300w\" sizes=\"auto, (max-width: 580px) 100vw, 580px\" \/><\/figure>\n\n\n\n<p>Ensuite, j\u2019ai r\u00e9dig\u00e9 un e-mail qui attire l\u2019attention, avec des \u00e9l\u00e9ments visuels comme l\u2019ancien logo de la communaut\u00e9 de communes de C\u0153ur de Savoie. Le but est que les personnes cliquent sur le lien et saisissent leur identifiant et mot de passe de leur session.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"328\" src=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2025\/02\/image-27-1024x328.png\" alt=\"\" class=\"wp-image-457\" srcset=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2025\/02\/image-27-1024x328.png 1024w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2025\/02\/image-27-300x96.png 300w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2025\/02\/image-27-768x246.png 768w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2025\/02\/image-27.png 1088w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Maintenant je m\u2019attelle a la construction du site web pour le lien. le site sera h\u00e9berg\u00e9 sur d\u2019OVH. Pour la conception je ne vais pas utiliser de CMS(ex : wordpress).<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"382\" src=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-8-1024x382.png\" alt=\"\" class=\"wp-image-153\" srcset=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-8-1024x382.png 1024w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-8-300x112.png 300w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-8-768x287.png 768w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-8.png 1468w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p><strong>Suivi des Clic :<\/strong>&nbsp;Lorsqu\u2019un utilisateur cliquera sur le lien dans l\u2019email, il sera redirig\u00e9 vers la page du site ou il devra se connecter avec les codes de sa session windows. Tout se qui est \u00e9crit sera enregistrer. je connaitrais ainsi le nom de la personne qui n\u2019a pas \u00e9tait vigilant.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"868\" src=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/Capture-decran-2024-08-12-145039-1024x868.png\" alt=\"\" class=\"wp-image-155\" srcset=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/Capture-decran-2024-08-12-145039-1024x868.png 1024w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/Capture-decran-2024-08-12-145039-300x254.png 300w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/Capture-decran-2024-08-12-145039-768x651.png 768w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/Capture-decran-2024-08-12-145039-1536x1301.png 1536w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/Capture-decran-2024-08-12-145039.png 1872w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Je me suis inspir\u00e9 du site web de la collectivit\u00e9 pour que le site sois plus cr\u00e9dible. Aussi j\u2019ai mis une image du village de montmelian avec le logo de coeur de savoie. Le site reste simple mais assez convainquant<\/p>\n\n\n\n<p>Ensuite, je voulais pousser un peu plus en mettant des fausses application t\u00e9l\u00e9chargeables ainsi qu\u2019un moyen de d\u00e9poser des fichiers sans pouvoir supprimer les documents poser.<\/p>\n\n\n\n<p>Pour d\u00e9poser les fichiers la page reste simple, j\u2019ai mis un fichier d\u00e9j\u00e0 t\u00e9l\u00e9vers\u00e9 pour faire croire que une personne \u00e0 d\u00e9j\u00e0 t\u00e9l\u00e9verser un fichier.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"422\" src=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-10-1024x422.png\" alt=\"\" class=\"wp-image-156\" srcset=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-10-1024x422.png 1024w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-10-300x124.png 300w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-10-768x317.png 768w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-10-1536x633.png 1536w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-10.png 1870w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p>Pour le t\u00e9l\u00e9chargement d\u2019application j\u2019ai laisser le choix avec plusieurs application qui peuvent \u00eatre utilis\u00e9 au seins des entreprises. Bien \u00e9videment les liens t\u00e9l\u00e9chargeable ne contienne pas les bon fichiers. Ils contiennes tous un script python qui va copier le fichier login data de leur session. Se fichier contient l\u2019ensemble des mot de passe sauvegard\u00e9 dans google. Quand il clique il verront juste un calculatrice s\u2019ouvrir mais en arri\u00e9r\u00e9 plan la copie du fichier s\u2019ex\u00e9cutera.<\/p>\n\n\n\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"430\" src=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-11-1024x430.png\" alt=\"\" class=\"wp-image-157\" srcset=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-11-1024x430.png 1024w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-11-300x126.png 300w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-11-768x322.png 768w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-11-1536x644.png 1536w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/08\/image-11.png 1869w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<figure class=\"wp-block-image\"><img loading=\"lazy\" decoding=\"async\" width=\"551\" height=\"202\" src=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/09\/image.png\" alt=\"\" class=\"wp-image-304\" srcset=\"https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/09\/image.png 551w, https:\/\/porfolio.jrey.eu\/wp-content\/uploads\/2024\/09\/image-300x110.png 300w\" sizes=\"auto, (max-width: 551px) 100vw, 551px\" \/><\/figure>\n\n\n\n<p>Apr\u00e9s une semaine je n\u2019aurais plus cas voir qui c\u2019est fait avoir sois avec les logs du site ou est stocket les identifiants.<\/p>\n\n\n\n<p>Personnellement je souhaite que les utilisateurs se face avoir car cela veux dire que le site ainsi que le mail \u00e0 \u00e9t\u00e9 convainquant mais si personne se fait avoir je serrais rassurais et content de voir que les utilisateurs face attention. Le talons d\u2019Achilles d\u2019un point de vue s\u00e9curit\u00e9 c\u2019est les utilisateurs.<\/p>\n\n\n\n<p><strong>Formation de Sensibilisation :<\/strong>&nbsp;Les utilisateurs identifi\u00e9s comme ayant cliqu\u00e9 sur le lien de phishing seront invit\u00e9 \u00e0 une session de formation de sensibilisation \u00e0 la s\u00e9curit\u00e9. Cette formation aura pour but de leur apprendre \u00e0 reconna\u00eetre les emails de phishing et \u00e0 adopter des comportements plus s\u00fbrs en ligne.<\/p>\n\n\n\n<p>Apr\u00e8s une semaine environ, j\u2019ai pu constat\u00e9 que 15 personnes de la collectivit\u00e9 on rentr\u00e9e leur code sois environ 11% de la collectivit\u00e9. Avec mon tuteur nous somme pass\u00e9 voir chaque agent pour lui r\u00e9expliqu\u00e9 les bonnes pratiques \u00e0 suivre. Nous leur avons aussi invit\u00e9 a la formation qui dure 2h qui est dans leur temp de travail.<\/p>\n\n\n\n<p>Cependant nous \u00e9tions rassurer que personne ais t\u00e9l\u00e9charger les applications. Cela aurais \u00e9tait assez alarmant.<\/p>\n\n\n\n<p>Pour conclure faire se test fut une tr\u00e8s bonne exp\u00e9rience d\u2019un point de vue professionnel. J\u2019ai pus me remettre dans le code (python pour l\u2019application) et constat\u00e9 que m\u00eame si notre infrastructure r\u00e9seau est tr\u00e8s s\u00e9curis\u00e9 si un utilisateur ne fais pas attention tout le monde paye le prix. Surtout les informaticien derri\u00e8re pour tout remettre en place.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Dans le cadre de ma mission en entreprise, j\u2019ai \u00e9t\u00e9 charg\u00e9 de mener une campagne de sensibilisation \u00e0 la s\u00e9curit\u00e9 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"parent":0,"menu_order":0,"comment_status":"closed","ping_status":"closed","template":"","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-gradient":""}},"footnotes":""},"class_list":["post-643","page","type-page","status-publish","hentry"],"_links":{"self":[{"href":"https:\/\/porfolio.jrey.eu\/index.php\/wp-json\/wp\/v2\/pages\/643","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/porfolio.jrey.eu\/index.php\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/porfolio.jrey.eu\/index.php\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/porfolio.jrey.eu\/index.php\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/porfolio.jrey.eu\/index.php\/wp-json\/wp\/v2\/comments?post=643"}],"version-history":[{"count":3,"href":"https:\/\/porfolio.jrey.eu\/index.php\/wp-json\/wp\/v2\/pages\/643\/revisions"}],"predecessor-version":[{"id":687,"href":"https:\/\/porfolio.jrey.eu\/index.php\/wp-json\/wp\/v2\/pages\/643\/revisions\/687"}],"wp:attachment":[{"href":"https:\/\/porfolio.jrey.eu\/index.php\/wp-json\/wp\/v2\/media?parent=643"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}