I'm working on some options for a social engineering assessment for a client. One of the things I'd like to do is email a bunch of people a pdf attachment (or put the pdf on removable media) and then track how many people actually opened the pdf. What's a good method for doing this?
I'm looking for something that has the best chance to make it through any email filters and/or AV so I'm not wanting to make powershell connections back to their computer or anything like that. Simply track whether the pdf was opened on their computer or not. I'm thinking maybe an image in the pdf that has some code embedded that will call to a URL which could be tracked or something but I'm not sure if this is the best way or even a good way to do it. And if it is a good way to do it, is there a sample online somewhere? I've seen some services offered online that will track pdf stuff but I'd like to do this myself manually (or with a tool like SET or Metasploit or something if it's built in).
Bonus would be if I could also track whether the email itself was viewed using a similar method (not sure how likely this is).