Finding
Over 70% forgotten after 48 h
What this means
Ebbinghaus' forgetting curve is relentless: after two days research shows more than 70% of training content is no longer accessible. Only what creates an emotional impression stays in the mind.
Live Hacking Show
Your employees watch live as passwords fall, networks are compromised and identities are faked. More awareness in 60 minutes than in a year of e-learning.
Bekannt aus
Trusted by over 200 organisations
The Problem
Compliance training and e-learning cost time - but bring no lasting behavioural change. The numbers speak for themselves.
Finding
What this means
Ebbinghaus' forgetting curve is relentless: after two days research shows more than 70% of training content is no longer accessible. Only what creates an emotional impression stays in the mind.
Finding
What this means
Despite annual mandatory training, one third of employees click on simulated phishing emails. Knowledge alone does not change behaviour - experience does.
Finding
What this means
The average cost of a data breach (IBM Cost of a Data Breach Report 2024). One hour of live hacking is the most cost-effective insurance available.
The Solution
In a Live Hacking Show our experts demonstrate current attack techniques in real time - comprehensibly for any audience. Participants see with their own eyes how quickly a password falls, a network is compromised or an identity is forged.
When your own password falls in 3 seconds, everyone immediately understands why a password manager is indispensable. This experience lasts - permanently.
No product advertising, no sales presentation - pure knowledge transfer and awareness raising. We are independent and neutral.
Our attack scenarios are continuously updated to reflect the current threat landscape - including AI-based deepfake attacks and voice cloning.
From senior management to working students - we adapt language and technical depth to your audience. No prior knowledge required.
Attack Scenarios
From over 10 attack scenarios we compile your individual programme. Here is a selection of our most impactful demonstrations:
Live demonstration of realistic phishing attacks - from the forged email to credential disclosure in seconds.
Spear-Phishing · Credential Harvesting
We show how attackers compromise open and supposedly secured networks - in the office, hotel or home office.
Evil Twin · MITM
Live demonstration of how quickly supposedly secure passwords are cracked - and why password managers are indispensable.
Hashcat · Rainbow Tables
From clicking the attachment to encrypting all data - the complete sequence of a ransomware attack in real time.
Malware Demo · Ransomware
How one USB drive suffices to take full control of a computer - within three seconds.
Rubber Ducky · BadUSB
Cloned voices, manipulated video conferences - we demonstrate how AI-powered attacks work today.
Voice Cloning · Deepfake Video
Comparison
Three awareness measures - each has its place. The strongest impact? The combination.
| E-Learning | Phishing Simulation | Live Hacking | |
|---|---|---|---|
| Impact | Short-term | Measurable | Emotionally lasting |
| Engagement | Mandatory tick-box | Unconscious | Enthusiasm |
| Audience | Individual | Whole organisation | All - incl. management |
| Internal effort | High (rollout) | Medium (setup) | Minimal (room + projector) |
| Behaviour change | Low | Targeted | Deep and lasting |
| Best used as | Baseline compliance | Measurement tool | Kick-off & highlight |
Maximum impact? Live Hacking + Phishing Simulation as a before-and-after comparison.
Format Selection
Whether a 30-minute keynote or a full-day programme - we adapt the show to your setting.
Format
Duration
30 - 60 min.
Description & Features
3-5 attack scenarios with explanations and concrete protective measures. Fits into any all-staff meeting or kick-off.
Format
Duration
60+ min.
Description & Features
Extended session with 6+ scenarios, interactive elements and an in-depth Q&A round. Maximum impact.
Format
Duration
Individual
Description & Features
Split shows, multiple speakers, workshop combinations or multi-day programmes. We develop your format.
Quote in 24 hours. Free and non-binding. Request now
Our Speakers
Our speakers come from practice - with hundreds of live hacking shows, penetration tests and consulting projects.
Live Hacking in Action
60 seconds that show why our clients talk about the show months later.
How it works
Stage
What happens
We discuss target audience, setting and desired focus areas - free of charge and non-binding.
Stage
What happens
You receive a tailored agenda with the attack scenarios most relevant to your organisation.
Stage
What happens
Our experts demonstrate live how attackers operate - clearly, impressively and engagingly.
Stage
What happens
All participants receive a handout with concrete protective measures. Optional: phishing simulation as an effectiveness test.
References
These case studies are available in German.
Audiences
Compact management pitch that makes cyber risks tangible and justifies investment in IT security.
All-staff meetings, training days or kick-offs - the show works for any company size.
Trade fairs, customer events or partner conferences - position yourself as a security-conscious organisation.
Technically deeper variant with current exploits, lateral movement and infrastructure attacks.
Show your customers live why your solution matters. Our show is always vendor- and provider-neutral.
We adapt language and depth to any audience.
Discuss requirementsPreparation
Preparation is straightforward. In most cases existing rooms and standard technology are perfectly sufficient.
You provide
Projector or screen
HDMI connection sufficient
Internet access
Stable Wi-Fi or LAN
Room with seating
Conference room, auditorium or canteen
Time slot from 30 min.
Embedded in your programme
For remote shows room planning is not needed - you only need a video conferencing tool. Free technical check beforehand on request.
Request showWhat's next
A Live Hacking Show is the kick-off. For lasting behavioural change we recommend complementary measures:
Measure the show's impact - with realistic phishing campaigns as a before-and-after comparison.
DetailsCheck the technical side - our pentesters find weaknesses in your systems.
DetailsReinforce information security through play - as a team event after the live hacking show.
DetailsWhy AWARE7 for Security Awareness
Pure awareness platforms don't test systems. Pure consulting firms are too far removed. AWARE7 combines both: we hack your infrastructure <em>and</em> train your employees: tailored to mid-sized companies, personal, without enterprise overhead.
Around 20% of our revenue comes from research projects for the BSI and the BMBF. Our studies, published at ACM and Springer conferences, analyse millions of websites and tens of thousands of phishing emails. Three of our executives are professors at German universities at the same time.
From first contact to final report, your data is stored on our own servers in Germany - no US cloud providers, no third-country transfers. Our AI also runs on our own hardware in Germany - with locally operated open-source models. Client and project data never reach external AI services. All staff are permanently employed, covered by social insurance and bound by uniform legal obligations.
More on digital sovereigntyWithin 24 hours you receive a binding fixed-price quote without hourly rate risk. A well-practised team and standardised processes ensure a clear schedule with a defined start and end date.
A personal project manager accompanies you from the first meeting to the retest. You book appointments directly with your contact person and keep the same contact throughout the project.
Peer-reviewed publications
Different Seas, Different Phishes - Large-Scale Analysis of Phishing Simulations
ACM AsiaCCS 2025
Oskar Braun, Jan Hörnemann, Norbert Pohlmann, Matteo Große-Kampmann
A Platform for Physiological and Behavioral Security
NSPW 2025
Jan Hörnemann
Privacy from 5 PM to 6 AM: Tracking and Transparency in the HbbTV Ecosystem
IEEE/IFIP DSN 2025
Jan Hörnemann, Norbert Pohlmann, Matteo Große-Kampmann
Understanding Regional Filter Lists: Efficacy and Impact
PoPETS 2025
Jan Hörnemann, Norbert Pohlmann, Matteo Große-Kampmann
Who is AWARE7 the right partner for?
Mid-sized companies with 50-2,000 employees
Companies that need real security, without paying for a DAX-corporation provider. Fixed price, clear scope, one point of contact.
IT managers & CISOs
Who have to argue convincingly in-house and need a report in boardroom language for that, not just technical findings.
Regulated industries
Critical infrastructure, healthcare, financial services: NIS-2, ISO 27001, DORA. We know the requirements and deliver evidence that auditors accept.
Frequently Asked Questions
Aus dem Blog
Phishing erkennen: Checkliste mit Erkennungsmerkmalen für E-Mail-Phishing, Smishing und Vishing - mit Sofortmaßnahmen nach dem Klick.
Security Awareness messen: Phishing-Klickraten richtig interpretieren, Verhaltensmetriken, Wissenstests und ROI-Argumente für den Vorstand.
Ein Live Hacking ist eine gute Möglichkeit, Mitarbeiter zu sensibilisieren - doch was kostet ein Live Hacking?
Tell us briefly about your event - audience, preferred date, focus areas. We get back within a few hours with date options and a first estimate. Free and non-binding.
Free · 30 minutes · No obligation
Arturs Nikitins
Initial consultation & needs analysis
Looking for personal advice?
No obligation · Reply within 24h on business days