It's a pre-built docker environment which allows you to quickly, easily and safely spin up phishing kits for analysis. Out of the box you can browse, "mitm" web traffic, log mail calls to flat files and debug PHP code remotely.
git clone https://github.com/zerofox-oss/phishpond.git
cd ./phishpond/
docker-compose.yml
docker-compose up -d
http://localhost:5800
for the virtual browserhttp://localhost:8080
for mitmproxyhttp://phishpond.local
(First time setup)
cert
view certificates
/config/certs/mitmproxy-ca-cert.pem
Trust this CA to identify websites
You will need to repeat these steps every time you remove the browser-volume