RansomLeak delivers immersive 3D security awareness training: employees handle realistic attacks inside a simulated desktop and phone, in any browser, learning by doing instead of watching videos. 100+ hands-on exercises in 5 languages, plus phishing and smishing simulation campaigns (vishing coming soon), 2-to-3-minute microlearning drills across six formats including AI deepfake, and a per-person Human Risk Score that drives automated remediation. Compliance learning paths mapped to 13 frameworks (SOC 2, ISO 27001, HIPAA, GDPR, NIS2, EU AI Act, DORA), SSO/SAML, SCIM, SCORM 1.2/2004 export tested with 50+ LMS, and audit-ready evidence reports with a live Vanta integration. Application security training for developers is licensed separately: OWASP Top 10 for web and APIs, Git and repository security, 40 hands-on exercises with code in 10 programming languages, and cloud security content coming soon.
RansomLeak replaces passive video training with interactive 3D simulations that run in any browser, with no installation or headset. Employees work inside a fully simulated desktop (mail client, browser, terminal, password manager, and more than twenty applications) and a simulated phone (calls, texts, authenticator), handle realistic ransomware, BEC, and social engineering attacks, and learn by doing. Each 5-to-15-minute exercise ends with a scored knowledge check.
100+ hands-on exercises across 14 courses and 4 categories: security awareness, privacy and compliance (including a 16-exercise EU AI Act course), AI/LLM security, and real-world incidents. Available in 5 languages out of the box: English, German, Dutch, Italian, and Ukrainian, with additional locales on request and monthly content updates.
Microlearning Drills
Short 2-to-3-minute, authorable drills complement the 3D curriculum across six formats: email phishing, smishing, vishing, AI deepfake (voice and video), chat-based social engineering (Teams and Slack lookalikes), and MFA fatigue. Every plan includes unlimited drill authoring.
Application Security for Developers
Licensed separately per developer with the AppSec Seat, so engineering teams get secure-coding training without buying it for everyone. Users without an AppSec seat see the application security catalog locked rather than hidden, so administrators control exactly who consumes it.
40 hands-on exercises across three courses: OWASP Top 10 for Web Applications (22 exercises covering SQL and command injection, stored, reflected and DOM XSS, SSRF, CSRF, XXE, directory traversal, privilege escalation, and session fixation), OWASP Top 10 for API Security (10 exercises on broken object-level, function-level and user authentication, mass assignment, excessive data exposure, and unrestricted resource consumption), and Git & Repository Security (8 exercises on secrets in git history, leaked access tokens, CI/CD secret exposure, branch protection bypass, and malicious pull requests). Code renders in each developer's own stack: JavaScript, TypeScript, Java, C#, Python, Scala, PHP, Ruby, Go, or Kotlin. Cloud security content is coming soon.
Simulation Campaigns
Phishing simulations: direct mailbox injection via Microsoft 365 Graph API and Google Workspace (no allowlisting fights with secure email gateways), 10 sender persona pools, difficulty levels 1 to 5, and 8-stage funnel analytics from delivery through click, credential submission, OAuth grant, BEC reply, and user report. Outlook and Gmail report buttons, repeat-offender tracking, and automatic remediation training with deadlines and grace periods. Campaigns run from a maintained template library with matching landing pages and spread delivery across each recipient's business hours.
Smishing simulations: real SMS campaigns with business-hours delivery in each recipient's timezone, per-recipient tap and report tracking, and STOP/REPORT opt-out registries.
Vishing simulations (coming soon): voice-call phishing campaigns with callback-verification training.
Human Risk Score & Risk-Based Automation
Every person gets an explainable 0-100 risk score built from phishing susceptibility, remediation debt, and training hygiene, with team and organization rollups. A no-code rule builder turns scores into action: auto-enroll risky users in remediation paths, deliver just-in-time training after a failed simulation, and escalate to managers. Dry-run mode, blast-radius caps, per-person cooldowns, and a full audit log keep automation safe.
Compliance Evidence
Learning paths and reports mapped to 13 frameworks: SOC 2, ISO 27001, ISO 27701, NIST CSF 2.0, GDPR, EU AI Act, CCPA/CPRA, HIPAA, HITRUST CSF, NIS2, PCI DSS, DORA, and CMMC. Audit-ready PDF and CSV evidence with timestamps and control references, scheduled report delivery, and a live Vanta integration that streams training status.
Enterprise Platform
Hosted Cloud LMS, or SCORM 1.2/2004 export tested with 50+ LMS (Moodle, Cornerstone, Workday, SAP SuccessFactors, Docebo, and more)
SSO/SAML 2.0 (Entra ID, Okta, Google Workspace), SCIM 2.0 user provisioning, MFA
Role-based access control with custom roles, team management, and manager dashboards scoped to direct reports
Multi-tenant isolation, white-label custom domains and branding, IP allowlisting
REST API with scoped tokens, HMAC-signed webhooks (11 event types), Slack and Microsoft Teams notifications, SIEM data export
Gamification (points, badges, leaderboards, streaks) and verifiable PDF certificates
Deployment
Fully managed SaaS on AWS. No installation required. Free tier available for evaluation; per-seat contracts for 12, 24, or 36 months.
Highlights
Immersive 3D security awareness training in any browser: employees handle realistic ransomware, BEC, and social engineering attacks inside a fully simulated desktop and phone, learning by doing instead of watching videos. 100+ hands-on exercises across 14 courses in English, German, Dutch, Italian, and Ukrainian (more locales on request), including dedicated GDPR, EU AI Act, and AI/LLM security courses. Hosted Cloud LMS or SCORM 1.2/2004 export tested with 50+ LMS.
Phishing and smishing simulation campaigns with direct Microsoft 365 and Google Workspace mailbox injection, real SMS delivery, and 8-stage funnel analytics; vishing campaigns coming soon. Separate 2-to-3-minute microlearning drills across six formats including AI deepfake. A per-person Human Risk Score drives automated remediation, just-in-time training, and manager escalation with dry-run mode and guardrails.
Compliance evidence mapped to 13 frameworks (SOC 2, ISO 27001, HIPAA, GDPR, NIS2, EU AI Act, DORA, and more) with audit-ready reports and a live Vanta integration. Enterprise controls: SSO/SAML, SCIM 2.0, RBAC, white-label custom domains, REST API and signed webhooks. Multi-tenant SaaS on AWS with a free evaluation tier. Application security training for developers is licensed separately per developer: OWASP Top 10 for web and APIs, Git security, cloud content coming soon.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
Per-user access to the RansomLeak security awareness training platform including all interactive 3D training modules, phishing simulation campaigns, deepfake drills, compliance learning paths, and real-time analytics.
$15.00
Free User
Free tier access to interactive 3D security exercises, quizzes, certificates, and learning progress tracking. Upgrade to User Seat for admin features, campaigns, analytics, and compliance reporting.
$0.00
AppSec Seat
Per-developer access to the RansomLeak application security curriculum: OWASP Top 10 for Web Applications, OWASP Top 10 for API Security, and Git and Repository Security, with hands-on exercises and code examples in 10 programming languages. Cloud security content coming soon. Licensed separately from User Seat and assigned to the developers who need it.
You pay per user, and the three dimensions cover different roles. The User Seat charges for each employee who needs the full training platform, including phishing campaigns, analytics, and compliance reporting. The Free User tier gives no-cost access to basic 3D exercises, quizzes, and progress tracking, without admin features. The AppSec Seat is licensed separately and assigned only to developers who take the application security curriculum. You combine these seat types based on who needs each level of access, scaling each independently by headcount.
Top-of-mind questions for buyers
What counts as one seat for the User Seat and AppSec Seat dimensions?
Both bill per individual person. A User Seat covers one employee using the training platform, phishing campaigns, analytics, and compliance reporting. An AppSec Seat covers one developer taking the application security curriculum. You assign each seat to a specific named person, and you count seats by headcount.
How do the User Seat and AppSec Seat charges combine on my bill?
They bill independently and add together. You buy User Seats for general employees and AppSec Seats for developers who need the security coding curriculum. A developer needing both platform access and the AppSec content requires two separate seats. Total cost is the sum of each seat type by headcount.
What do I lose if I use the Free User tier instead of a paid User Seat?
The Free User tier gives no-cost access to 3D exercises, quizzes, certificates, and progress tracking. It excludes admin features, phishing simulation campaigns, real-time analytics, and compliance reporting. To run campaigns or generate audit-ready reports, you upgrade that person to a paid User Seat.
ransomleak.com
Helpful?
Vendor refund policy
We offer a 30-day refund policy from the date of subscription. To request a refund, contact support@ransomleak.com with your AWS account ID and subscription details. Refunds are processed within 5-10 business days.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Standard Support: Email-based support included with all subscriptions. Covers onboarding assistance, technical issues, and general inquiries.
Priority Support: Available for Enterprise tier customers. Includes dedicated account manager, priority response times (4-hour SLA), and scheduled onboarding calls.
Getting Started
New customers receive guided onboarding support including tenant setup, SSO/SAML configuration, SCIM provisioning, and initial campaign configuration at no additional cost.
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
The UI is easy to navigate, I don't have to go digging for settings and everything is easy to understand the purpose of. Integrating was easy. There have been a couple of graphical hiccups from time to time but the team has been very fast and responsive in fixing them. And the price is hard to beat, excellent bang for your buck.
What do you dislike about the product?
There's really nothing to dislike here. They are constantly improving and adding more training. They quickly respond to concerns.
What problems is the product solving and how is that benefiting you?
We had absolutely no training plan for our users and I didn't want to bore people with power points and videos. Group trainings in this matter rarely seem effective. RansomLeak training modules are fun and engaging. We have had users actually learn things and implement them in their work life as well as out in the wild.
Computer & Network Security
Engaging, Gamified Security Training with Clear Progress Tracking
Reviewed on Jul 21, 2026
Review provided by G2
What do you like best about the product?
The interactive Learning makes security training engaging and the Dashboard make it measurable. The platform provides clear progress tracking and adds a gamification element that makes mandatory training feel less tedious. The main value? It transforms security training from a checkbox task into actual habit-building through immediate feedback and visible progress.
What do you dislike about the product?
Could improve the whitelableling features to allow change theme colors.
What problems is the product solving and how is that benefiting you?
Transforms mandatory security training from a checkbox task into engaging, measurable learning.
Vaibhav B.
Empowers Cybersecurity Training with FPV Simulation
Reviewed on Jul 17, 2026
Review provided by G2
What do you like best about the product?
I appreciate its FPV scenario-based simulation exercises as users get to know the impact of their actions and decisions on organizational cybersecurity posture. I also find the content library updated, covering most areas required by various compliances similar to ISO 27001. Additionally, the LMS is easy to use, which is valuable for our internal cybersecurity and compliance trainings.
What do you dislike about the product?
It needs to be a bit more tailored to the organization's policies and procedures.
What problems is the product solving and how is that benefiting you?
I use RansomLeak Security Awareness Training for its updated content library that aligns with compliances like ISO 27001 and its easy-to-use LMS. The FPV scenario-based simulations help users understand the impact of their actions on cybersecurity.
Lorenz L.
Engaging, Never-Boring Training Sessions from RansomLeak
Reviewed on Jul 08, 2026
Review provided by G2
What do you like best about the product?
RansomLeak offers a great range of training sessions, and unlike most other providers, they’re genuinely engaging and not boring at all.
What do you dislike about the product?
Right now, it’s only available in about five or six languages. I really hope more translations are added soon.
What problems is the product solving and how is that benefiting you?
In the past, employees had to watch the same boring security video every year. Now they can go through immersive, game-like scenarios that are much more captivating and engaging.
Sergii S.
Comprehensive security awareness training library with a unique training format
Reviewed on Jul 01, 2026
Review provided by G2
What do you like best about the product?
The best part for me was the 3D approach. While having 130+ exercises is a plus, plenty of other services offer extensive security awareness training libraries. What sealed the deal for us is the interactive 3D approach. Since we value our time and don’t want to install the training to “check the box” for compliance, we were looking for something engaging. RansomLeak is exactly what we were looking for. Every exercise drops you into an interactive 3D office environment where you face realistic incidents in first-person. You interact with real objects (a phone, a PC running a live OS with browser, terminal, Zoom, a flipchart) and make decisions under pressure, just like you would at your desk. The learning process is captivating, deep, and insightful for our users. So, from a time-investing perspective, this is something that we definitely can recommend.
What do you dislike about the product?
Because of the nature of the training, it’s impossible to go through the exercises using a mobile phone. It’s by design and kinda expected though. But it may still be a nice addition.
What problems is the product solving and how is that benefiting you?
We don’t have our LMS, so the branded tenant came in handy. We’re using it to run campaigns, track learning progress, and store security awareness training completion artifacts / evidence for compliance purposes.