Phishgate
Get startedTrainings
Sign InGet StartedAdd Phishgate to Browser
Get startedTrainings
Phishgate

Phishgate warns employees about risky login pages right inside the browser. Easy to roll out, simple to manage.

Resources
  • Get started
  • Trainings
  • Case studies
  • Guides
  • Blog
Legal
  • Legal Notice
  • Privacy Policy
  • Terms of Service
  • Cookie Policy
Support
  • Contact

© 2026 Sellrock UG (haftungsbeschränkt). All rights reserved.

A product by Sellrock UG (haftungsbeschränkt), Nuremberg, Germany.

  1. Home
  2. Trainings
Live training for organisations

Phishgate · Training

So that no click ever causes the damage.

Two hours. Real attacks shown from the attacker's seat. After the session your team spots phishing instantly — and understands how criminal crews actually steal credentials.

Request a session — from €499What will your team learn?
2 hrs
Live format
€499
Remote training
€699
On-site (≤ 100 km)
DE / EN
Training language
microsft-login.support-id-verify.com

▦ Microsoft

Sign in

[email protected]

••••••••••

Next
Phishgate

Phishing page blocked

This domain was registered 11 minutes ago and impersonates login.microsoftonline.com.

Back to homeContinue anyway
Erkannt in80 ms
Domain-Alter11 Min.
Brand-ImitatMicrosoft

The threat

Phishing isn't a typo. It's an industry.

94% of cyberattacks start with an email. Attackers buy lookalike domains, clone login pages, optimise click-through rates and rent MFA-bypass kits monthly. We show your team how this industry works — from the inside.

94%
of attacks start by email
< 60 sec
from click to full access
€4.9 M
Ø damage per incident (DACH)

Curriculum

What your team can do after 2 hours.

We show the attack instead of just warning about it. Hands-on, with live demo, no fearmongering.

0130 min · Talk

How attackers think

Business model, supply chains, tooling. Who sells what to whom — from phishing kits to initial access.

0230 min · Demo

Live demo: real-time attack

We build a cloned Microsoft login in front of your team, send the email and capture credentials plus MFA token.

0330 min · Drill

Detection patterns

Read headers, check domains, deconstruct urgency and tone. Six patterns anyone will remember.

0430 min · Workshop

Behaviour in an incident

Who gets told when. How to report. What to do once you've already clicked — the first 10 minutes.

Live demo

What an attack looks like from the inside.

An excerpt from the session. Three steps from bait to takeover — and where Phishgate steps in.

01
From'IT Support' <[email protected]>
SubjectPassword expires in 24 h

Click here to confirm your sign-in.
https://micros0ft-id.com/verify…

The bait lands in the inbox

Sender 'IT support'. Subject: 'Your password expires in 24h'. Domain off by one letter.

02

▦ Microsoft

[email protected]
••••••••••
Data sent to attacker: attacker@evil:443

The cloned login page

Pixel-perfect copy of Microsoft sign-in. Credentials and MFA code stream straight to the attacker.

03

Blocked.

Domain 11 min old · Microsoft impersonation · 80 ms

Phishgate blocks.

The browser extension flags the domain in 80 ms and stops typing — before a single character leaves the device.

Agenda

Two hours, tightly run.

  1. 00:00

    Welcome & live poll

    Who has received a phishing mail before?

  2. 00:10

    How the attacker industry works

    Business model, tools, market prices.

  3. 00:40

    Live demo: real-time attack

    Cloned login page + MFA bypass.

  4. 01:10

    Practise detection patterns

    Six real emails — find the phishing.

  5. 01:35

    Behaviour in an incident

    Reporting, immediate steps, communication.

  6. 01:50

    Q & A

    Open floor. Even uncomfortable questions.

Plans

Transparent pricing. No fine print.

Both formats, identical content: 2 hours of live training in German or English. Recording and employee handout included.

Remote

€499

per session

1 session · 2 hours

Up to 25 attendees

  • Live training 2h via Teams, Zoom or Meet
  • Live phishing demo
  • Recording for 30 days
  • Employee handout PDF
  • Training language German or English
Request this session
From Nuremberg

On-site

€699

per session

1 session · 2 hours · on-site

Up to 25 attendees

  • Everything in the Remote plan
  • Training delivered at your premises
  • Hands-on Q&A right at the workplace
  • Within 100 km of Nuremberg, no surcharge
  • Beyond 100 km: €1/km travel surcharge
Request this session

Both plans incl. VAT · payment after the session · free cancellation up to 7 days before.

FAQ

Frequently asked

What happens in the 2 hours exactly?

Talk (30 min), live demo of a real phishing attack (30 min), hands-on detection drills (30 min), incident behaviour and Q&A (30 min).

Remote or on-site — what's the difference?

Identical content. Remote runs via Microsoft Teams, Zoom or Google Meet. On-site we come to your premises; within 100 km of Nuremberg there's no surcharge, beyond that we charge €1 per kilometre travelled.

How many attendees can join?

Both plans are designed for up to 25 people. For maximum interaction we recommend groups of 10–20. Larger groups on request.

Do we get a recording?

Yes, both plans include a recording available for 30 days, so absent employees can catch up.

Is the training GDPR compliant?

Yes. The live demo only uses test domains we control. No real employee data is processed.

How is billing handled?

Invoice with 14 days payment term. Payment after the session. Travel costs for on-site sessions are listed separately.

Request a session

Request training for your team.

One business day response time. Before booking you'll have a 48-hour-prep call with your trainer to align content.

Prefer to write to us directly? [email protected] →

Ready to avoid the next phishing incident?

Request a session, align with your trainer, train in two weeks. Pay only after the session.

Request a sessionTalk to us