Skip to main content
TrustRadius
KnowBe4 PhishER/PhishER Plus

KnowBe4 PhishER/PhishER Plus

Overview

What is KnowBe4 PhishER/PhishER Plus?

PhishER is presented as a lightweight Security Orchestration, Automation and Response (SOAR) platform to orchestrate threat response and manage the high volume of potentially malicious email messages reported by users. And, with automatic prioritization of emails, PhishER helps InfoSec and…

Read more
Recent Reviews

PHISHER

9 out of 10
June 22, 2024
Incentivized
We currently utilize PhishER to review emails flagged as phishing through our Phish Alert Button through KnowBe4 to determine if they are …
Continue reading

Phishing Hero!

8 out of 10
June 09, 2024
Incentivized
We use KnowBe4 PhishER with our KMSAT. KnowBe4 PhishER is basically helping us to resolve our biggest security problem and that is …
Continue reading
Read all reviews

Awards

Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards

Popular Features

View all 5 features
  • Machine Learning to Prevent Incidents (64)
    9.1
    91%
  • Live Response for Rapid Remediation (65)
    8.8
    88%
  • Centralized Dashboard (75)
    8.7
    87%
  • Company-wide Incident Reporting (60)
    8.5
    85%

Reviewer Pros & Cons

View all pros & cons
Return to navigation

Pricing

View all pricing

3001-5000 Monthly Pricing Per Seat

$0.75

Cloud
per month (billed annually) per seat

2001-3000 Monthly Pricing Per Seat

$0.85

Cloud
per month (billed annually) per seat

1001-2000 Monthly Pricing Per Seat

$1.00

Cloud
per month (billed annually) per seat

Entry-level set up fee?

  • Setup fee optional
For the latest information on pricing, visithttps://www.knowbe4.com/pricing-phisher…

Offerings

  • Free Trial
  • Free/Freemium Version
  • Premium Consulting/Integration Services
Return to navigation

Features

Incident Response Platforms

Incident response (IR) platforms guide countermeasures against a security breach and deploy preplanned, automated threat responses

8.5
Avg 8.7
Return to navigation

Product Details

What is KnowBe4 PhishER/PhishER Plus?

PhishER is a light-weight SOAR platform that automatically analyzes and prioritizes reported email messages to identify and quarantine malicious emails across an organization. PhishER helps InfoSec and Security Operations teams cut through the inbox noise and respond to the most dangerous threats more quickly.


PhishER is available as a stand-alone product or as an optional add-on for KnowBe4 customers that want to automatically prioritize and manage potentially malicious messages that were reported through the KnowBe4 Phish Alert Button. PhishER Plus is an upgraded subscription level that includes all of the features from PhishER with additional enhancements and AI-validated crowdsourced data. PhishER Plus was developed to help supercharge an organization’s email security defenses. It does this by automatically blocking phishing attacks that mail filters miss.

KnowBe4 PhishER/PhishER Plus Features

Incident Response Platforms Features

  • Supported: Company-wide Incident Reporting
  • Supported: Integration with Other Security Systems
  • Supported: Centralized Dashboard
  • Supported: Machine Learning to Prevent Incidents
  • Supported: Live Response for Rapid Remediation

Additional Features

  • Supported: Automatic Message Prioritization

KnowBe4 PhishER/PhishER Plus Screenshots

Screenshot of a diagram of the PhishER Plus workflow. Reviewing the PhishER Plus workflow before getting started will provide an understanding of how it works.Screenshot of When entering the PhishER Plus platform, the first screen that appears is the Dashboard. Here, a quick overview of the PhishER Plus platform will appear.

KnowBe4 PhishER/PhishER Plus Videos

Introduction to PhishER
PhishER Plus Global Blocklist

KnowBe4 PhishER/PhishER Plus Competitors

KnowBe4 PhishER/PhishER Plus Technical Details

Deployment TypesSoftware as a Service (SaaS), Cloud, or Web-Based
Operating SystemsUnspecified
Mobile ApplicationNo
Supported CountriesGlobal

KnowBe4 PhishER/PhishER Plus Downloadables

Frequently Asked Questions

PhishER is presented as a lightweight Security Orchestration, Automation and Response (SOAR) platform to orchestrate threat response and manage the high volume of potentially malicious email messages reported by users. And, with automatic prioritization of emails, PhishER helps InfoSec and Security Operations team cut through the inbox noise and respond to the most dangerous threats more quickly.

Cofense Triage, Infosec IQ, and Proofpoint Threat Response Auto-Pull are common alternatives for KnowBe4 PhishER/PhishER Plus.

Reviewers rate Machine Learning to Prevent Incidents highest, with a score of 9.1.

The most common users of KnowBe4 PhishER/PhishER Plus are from Mid-sized Companies (51-1,000 employees).
Return to navigation

Comparisons

View all alternatives
Return to navigation

Reviews and Ratings

(176)

Attribute Ratings

Reviews

(1-25 of 51)
Companies can't remove reviews or game the system. Here's why
Score 7 out of 10
Vetted Review
Verified User
Incentivized
Employee education and Security awareness. To keep employees up to date with new and current security events.
  • Identifying the type of email, Phish, Spam, etc.
  • Ability to block senders email
  • scan is not always completed on initial review and we have to do a manual scan normally on Documents
  • Total Virus subscription could have more scans seeing that we have to do manual ones in item above
  • PAB for Mac Mail and other Mail clients
As said in previous answers, Good at identifying email type, but not good when scans of documents are not done which entails manual scans.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use KnowBe4 PhishER to improve email security and reduce the burden of on our IT staff. In conjunction with the KnowBe4 security and awareness training and phishing email simulations it works well. Previously the IT staff would receive lots of forwarded suspicious emails, not always to Helpdesk and it caused extra work. Now, users are immediately notified if they flag a training email and we get securely notified if it is a really threat. PhishRIP then makes it easy to track down and pull out the threats from other accounts.
  • Reporting of Phishing emails
  • Alerting end users of simulated phishing training emails
  • Integrating Managed Blocklist to M365 Exchange
  • Hunting for and removing found threats
  • PhishRIP automation is a bit confusing to get setup with the automation.
  • We had some problems with M365 syncing blocklists initially.
  • Would be nice to be able to report spam vs phishing like the Microsoft report button.
If you are already using KnowBe4 for Security and awareness training this is a no brainer for a security boost and reduction of alerts to the it department for simulations. If you have a more advance email security platform like Abnormal Security this may not be a good fit, but then the cost is pennies in comparison.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We are using KnowBe4 PhishER in our organization to manage the Spam emails reported by the end-users. We have installed the Phish Alert Button on the end-user's Outlook as a plug-in across the organization. This plug-in is helping them to report any suspicious emails directly to the IT security team. So, whenever they identify any email as malicious, they just report it using the phish alert button in a few clicks and then the reported emails comes to the KnowBe4 PhishER inbox, that is easy to manage by the security team.
The KnowBe4 PhishER is solving our email reporting and managing problem. With a dedicated web platform, it is making our job easy to analyze the reporting emails and with the inbuilt AI feature and multiple third party application integration feature, KnowBe4 PhishER is making our job easy.
Mostly we use the KnowBe4 PhishER for suspicious email reporting and analyzing. We also use this to convert a real phishing attack to simulated phishing test.
  • Phish Alert Button makes the email reporting process very easy, we just need to install the plug-in to end-user's outlook and then in a few clicks, they can report any email and that will go to the KnowBe4 PhishER inbox for investigation.
  • The inbuilt AI feature PhishML of KnowBe4 PhishER helps us to analyze the reported emails very quickly and easily as it already categorizes the emails and provides tags like Clean, Spam, and Threat.
  • PhishRIP query is a very good feature to run a query and quarantine the suspicious emails that have reached to the end-users inboxes.
  • With the help of PhishFlip, we can convert a real phishing campaign to a simulated phishing test and test our users.
  • Third-party tool integration is good as we can add them to take full advantage of applications that can help us to analyze the reported emails more efficiently like VirusTotal.
  • The PhishML uses machine learning and AI modules to automatically categorize emails but sometimes it fails and assigns a false tag. They have to work on their AI modules.
  • The PhishRIP query has a lot of limitations as you can't make changes in the subject line or email address. This will restrict you from searching for similar emails. This will only search the exact same emails.
  • They do not have any other inbuilt scanning tool that will show you the result. You have to either depend on their AI result or have to take help from third-party applications.
The KnowBe4 PhishER is well suited in the case of a complete email reporting and management part. It provides a outlook plug-in phish alert button that installs on the end-users Outlook and help them to report the suspicious emails. After reporting, the second step is to analyze the reporting email and take action according to that. So, in the analysis phase, KnowBe4 PhishER uses the inbuilt AI feature that will automatically give tags to the reported emails within a second after reporting and this helps us to analyze the email in the right direction.
KnowBe4 PhishER is less appropriate when you would like to search and quarantine an email that is not reported by the users. So in this case, the PhishRIP query will not work and it will not help you to search and quarantine the email.
June 22, 2024

PHISHER

Score 9 out of 10
Vetted Review
Verified User
Incentivized
We currently utilize PhishER to review emails flagged as phishing through our Phish Alert Button through KnowBe4 to determine if they are legitimate or spam. We also rely on PhishER to provide weekly and monthly reporting. PhishER is used across the entire enterprise at our company.
  • Classification of Spam.
  • Advance analytics.
  • In my opinion reporting is very weak.
PhishER is well suited to analyze user-reported emails and help categorize them. We have found the results accurate when determining spam or genuine threats. Our challenge with the Phish ER service is related to reporting capabilities. We feel there could be improvements in the dashboard as well.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use the product for security awareness training and simulated tests. We also utilize PhishER to help us quickly categorize and eliminate threat emails. Recently, our insurance company started requiring user training, but we had been using the product well before they needed it. We have been delighted with the results.
  • Simulated phishing emails.
  • Training campaigns.
  • Categorizing threat emails.
  • A save draft feature would be nice in the training campaigns. I had to restart the same campaign creation process a few times because I forgot to set up several things.
Some security experts think user awareness training and phishing simulations are, at best, worthless and can sometimes create an adversarial relationship between users and IT. I can see that point somewhat. I think it depends on the existing culture in your organization. If IT already has a bad reputation, it could indeed cause that. But I think if you strive to create a culture where the users know that we are just looking out for the best interests of our users and our organization, it is a great fit.
June 09, 2024

Phishing Hero!

Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use KnowBe4 PhishER with our KMSAT. KnowBe4 PhishER is basically helping us to resolve our biggest security problem and that is Phishing attacks through email on our internal users. We have got a Phish Alert Button (PAB) that is installed on every user's outlook. When our users detect any email suspicious, they just click on that Phish Alert Button to report that email. After the report, the security team gets notified by email and that reported email stores in the KnowBe4 PhishER Dashboard. Then our security team analyze that email and verify if it's a Phishing email or a SPAM or Threat etc., and based on that we take action. So in this way, we are protecting our company from Phishing attacks. It has inbuilt AI feature (PhishML) that automatically categories the email as Spam/Threat/Clear. It has others feature like PhishRIP that is helping us after we detect an email as phishing and then we have a option to remove that email from all users account in just 2-3 simple steps. Then we have PhishFlip feature that has the capacity to convert any real phishing attack to a Phishing Campaign to test in your environment.
  • Phish Alert Button works well on suspicious email reporting. So in case of any phishing attack, our users can report the email directly to KnowBe4 PhishER dashboard and our team can take care of it then.
  • The PhishML feature automatically categories the reported emails based on email characteristics like Clean/Spam/Threat, so it makes our security job easy.
  • The PhishRIP feature is helping us to remove a suspicious email from all user's outlooks in just a few clicks and with this feature, we are building a strong security posture.
  • KnowBe4 PhishER integration with VirusTotal is helping us to scan any URL and documents that seems suspicious to us.
  • A detailed analysis of reported emails by using AI techniques.
  • Automatic quarantine of 100% sure phishing emails without any human interaction.
We were facing a lot of Phishing emails to our user inbox and users were getting it difficult to report the email to security team because they had to forward the email. But with the KnowBe4 PhishER, they are reporting a lot using Phish Alert Button in just a single click because it is installed on their Outlook.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 PhishER allows us to automate the review and response to email messages that make it into the user's inbox but are questionable. Users simply click a button within their email program and the message in question is submitted to PhishER. PhishER then analyzes the message, classifies it (e.g. clean, spam, malicious) and performs a preset list of tasks as a result of the classification. When a message is flagged as spam or malicious, all identical messages can automatically removed from the mailboxes of our other users, even if they did not report the message.
  • Analyzes questionable messages and takes action based on the results
  • Greatly reduces the amount of manual interaction required
  • Automatically pulls malicious messages from everyone's inbox
  • Error reporting needs improvement, for example Admin should be notified if a PhishRIP process fails.
Whether you have a small IT staff who are spread thin wearing many hats, or a larger IT staff who are focused on specific functions, you will find benefit in using KnowBe4 PhishER. The automation of classifying and handling questionable email messages has saves our staff time every month and allows us to focus our attention on other pressing matters.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
Helps address the increasing threat of phishing attacks. The product addresses business problems such as preventing sensitive information from falling into the hands of attackers, maintaining the security of corporate data, and preserving the trust of customers and employees. The product can be used to detect and respond to phishing attempts across a wide range of channels, including email, web, and social media
  • Phishing threat detection and response
  • Centralized management
  • Employee training
  • Integration with other tools
  • Mobile support
  • Improved reporting and analytics
KnowBe4 PhishER provides a centralized platform for managing phishing incidents, making it well suited for organizations with a large number of employees who are at risk of receiving phishing emails. Great for being able to just set up and forget, the support staff can help with the initial setup to have reoccurring tests
Score 8 out of 10
Vetted Review
Verified User
Incentivized
With PhishER We automatically block recognized risks, isolate harmful emails that have eluded mail filters, and "rip" them out of consumers' inboxes. By examining links and attachments from a single dashboard, we streamline procedures. We can go through our incident reports and automate message prioritization based on rules.
  • Simplifies workflows with a single console
  • Automatically blocking malicious emails that your filters miss
  • Automate message prioritization by rules
  • Automated phishing reports accuracy
  • Reported emails that are legitimate
  • Customized search criteria
I think the applications are well suited for higher education environment. Also, the product's ability to filter emails and appropriately classify the undesirable ones is something I find appealing. In addition, the user interface is highly user-friendly and provides all the required capabilities, such as the ability to send users personalized responses.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
Before KnowBe4 PhishER, our SOC analysts would manually investigate hundreds of suspect/phishing emails reported by end-users that would slip our perimeter defense. After implementing the PhishER SOAR platform, we could automate the process end-to-end by categorizing the reported emails as benign, spam, and threat emails, including integration with our ticketing platform. This has saved hundreds of our security analysts' hours and enabled them to act immediately on critical threat phishing emails.
  • Categorization of suspect emails to Benign, SPAM and Threat.
  • Integration to VirusTotal, Ticketing platform.
  • Smart Dashboards.
  • Canned auto - response email to end-users.
  • AI/ML algorithm could be improved to reduce false positives and increase auto-resolved suspect emails.
PhishER plugs a "Report to Cybersecurity" button in your organization's user Outlook client. This enables users to report any suspect email to your security operations center. The SOAR capability in the platform makes it quick to decipher suspect emails as benign, spam, or threat, and it automatically responds to users with immediate details. This saves hundreds of security analysts hours that would otherwise have been spent focusing on critical threat email actions. Malicious attackers have become intelligent and sophisticated; hundreds and thousands of emails slip through the mail perimeter defense and directly land on user mailboxes. With PhishER, security analysts can quickly respond to the threat emails, including deleting the emails from user inboxes.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
We use KnowBe4's PhishAlert button to encourage our associates to report potential phishing emails. Once the emails were reported, managing them through Microsoft's Spam filter was proving very time-consuming and cumbersome for the small IT team at our organization (review email, create block of domain and sender, etc.). Once we adopted KnowBe4 PhishER, it lessened the burden for our team. Additionally, the global blocklist feature provides an additional layer of protection for our organization.
  • Learns which emails are phishing and which are legitimate
  • Customizable emails back to associates who report spam or clean emails as phishing
  • Clear view into what has been reported
  • I haven't found a good use case for Rooms feature yet
  • I haven't had to build any custom rules yet, either
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use KnowBe4 PhishER to help streamline the process of going through suspicious emails. The main problem being the time required to analyize and classify emails that come into the helpdesk as questionable. PhishER takes a good portion of that workload off of our staff and quickly classifies the known threats and spam emails so that we're only left with a handful of emails to manually go through. In addition the PhishER platform provides a ripping procedure to go out and remove those malicious emails from any other mailbox with those bad emails.
  • User Interface is easy to use.
  • Saves time by classifying emails as malicious or not.
  • In PhishRip portion would like to see more details regarding the message that is being ripped.
It works great for teams that have limited time to manually review suspicious emails. Depending on your user count, it will free up a couple of minutes a day or more.
March 15, 2024

Happy with PhishER

Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use KnowBe4 PhishER to prioritize and streamline our response to reported phish alerts by our users. Once the user spots a phish and uses the phish alert icon, the email is sent to our PhishER platform. We have rules set up to spot and respond to certain reported emails such as SPAM and Clean emails. This takes a lot of burden off of our team and can really concentrate on real phishing emails. PhishER also highlights header information so we can look right where we need to look.
  • Automates phish report response
  • Highlights email header information
  • Saves time for our team.
  • The rule setup could be easier to follow
  • Make it so you don't have to click back and forth with manually looking at emails
  • Make the email quarantine longer than 30 days.
We have many emails reported to our team every day. Most emails reported are not true phishing emails and are mostly Spam or Clean. KnowBe4 PhishER saves my team time buy auto labeling the email as Spam or return a canned response from my team if the email is clean. This saves me time and gets important legitimate emails responded to quicker.
Score 9 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 PhishER has taken the place of our IT security and best practices training, as well as our phishing testing. The huge library of training material gives us a lot of flexibility with what we are training on and allows more focused targeted training efforts. There is also a huge library of phishing simulation templates ranging from all types of difficulties. This customization gives me the ability to hone in on things my team might actually see in the real world, and I can create or customize my own templates to be even more targeted.
  • Huge library of media
  • Real world examples and frequent updates
  • Communicative account managers
  • It can be a bit tedious to see specific results of phishing test (per user results)
KnowBe4 PhishER is best used by companies who aren't able or do not have the resources to create or customize their own internal training and learning material. KnowBe4 PhishER offers a lot of flexibility within their own system, and allows for admins to narrow the training and testing focus to very specific industries, tools, and needs. If you are able to create hyper customized material or just need extremely basic training, it may not be the best option, but should definitely be considered.
Henry W. Piel | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
KnowBe4 PhishER offers an "all in one" nice application for training, security, and testing exercises (e.g., "phishing"). My company has been using KnowBe4 PhishER for a year and half, and the internal feedback on this product is quite positive. The training sessions are interesting and keep the team's attention.
  • Customer Support; especially when we brough the application on board. The attention to detail, instruction, and help KnowBe4 team gave us is quite good!
  • A wide variety of trainings, over a multitude of topics.
  • Phishing Tests; "set it and forget" with metrics!
  • For start-up biotech/pharmaceuticals, I think KnowBe4 PhishER is the perfect addition!
The application is very easy to set up, maintain, and extrapolate metrics for the Senior Management Team.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use it to help with phishing emails and to help educate our end users.
  • KnowBe4 PhishER helps end users to easily report possible spam or phishing emails with PAB
  • KnowBe4 PhishER helps cut down on review time phish emails
  • KnowBe4 PhishER phish RIP allows us to quickly remove dangerous email from other users in our environment
  • To be able to search in the block list page instead of having to manually scroll to find something
KnowBe4 PhishER, phish rip and the PAB button combination are great at letting the end user report emails and quickly being able to remove emails from other user email inboxes.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
I use KnowBe4 PhishER as a Security Orchestration, Automation and Response (SOAR) to manage, analyse, respond to the very high volume of emails potentially dangerous reported by my company users with the "Phish alert button." Thanks to this platform I was able to automate 90% of the workstream linked to the reported emails by end users, as the platform automatically analyse the message and classify it as a threats, spam or clean. Based on this classification and based also on tags assigned I'm able to identify the dangerous emails and react to prevent threats. Very useful is the ability to create rules and actions, so I can give an immediate response to the user that report the email as suspicious and confirm if is a threats, spam or not dangerous, in this way I improve also the ability of the users to recognise a phishing and spot it. I use this platform every day and few times a day to monitoring email reported to identify spear phishing, massive spam or massive phishing email, this allow me to take action to prevent threats and avoid that others users that receive similar r email click on dangerous link or enter credential. The platform is easy to implement and can be integrated with other service providers like Microsoft for example the possibility to activate the PhishRIP allow the deletion of dangerous email in the user recipient for example before they read it and take an action that can be dangerous if is not able to spot that is a threat.
  • Analysis and classification of phishing emails using machine learning
  • Response to reporting users with personalised emails template
  • Automatic response and actions using integration with Microsoft
  • Good dashboard with reporting and KPI
  • Integration with others product to improve scan and analysis
  • It improves users' security awareness and behavior as receiving an immediate response with the analysis result improves the ability to recognize a phishing email
  • The lack of recognising email dangerous with QR code
  • Improve the alert/notification system to automatically advise the platform administrator in case of massive threats.
  • Decrease in uncategorized emails
KnowBe4 PhishER is very efficient and fast in detecting malicious emails, machine learning allows you to constantly improve the analysis of messages so in the event of receiving numerous malicious emails you can easily manage the incident response automatically, reducing the risk of expansion of the threat, blocking senders and deleting messages before they are read by other users.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
The PhishER platform is an invaluable tool for our organization as it gives us real time insight when we are 'under attack' by a bad actor (or actors). We are able to identify trends, targeted users and methods used by the bad actors in trying to gain access or steal information. On top of this, the PhishRIP feature integrates with our GSuite and scans/quarantines other instances of reported emails that are deemed malicious.
  • The machine based learning does a great job of correctly identifying safe vs. malicious emails.
  • PhishRIP does an excellent job of finding and quarantining similar emails from other users accounts.
  • The reports give us a real time insight into trends and campaigns launched by bad actors.
  • Somtimes the PAB (or Phish Hook) has to have its permissions revalidated. This is a quick fix, but takes some knowledge.
  • I honestly can't think of any other shortcomings at this time.
  • See #1
I can't say enough good things about PhishER. While Google Mail does have the ability to report spam and malicious content, the reporting isn't as user friendly. Having PhishER gives us insight into the email landscape of our end users, and even affords us the ability to retroactively learn some of the techniques used by bad actors so that we can further educate our end users.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
The school has implemented the PhishER add-on for easily reporting suspicious emails. PhishER’s tools analyze these reports, reducing the workload on IT staff. PhishER streamlines the process of identifying, reporting, and responding to phishing attempts, thus saving valuable IT resources. PhishER is integrated into the school’s Gmail and IT security systems to prevent attacks through end user awareness and reporting.
  • The platform offers a simple, one-click reporting button for end-users.
  • Allows teachers to report suspicious emails without needing technical expertise.
  • The IT department is able to review all suspicious email in one dashboard.
  • Enhancing the automated response capabilities, such as directly initiating remediation processes or integrating with other cybersecurity tools, could further streamline the threat management process.
  • Implementing a feedback system where users can be informed about the outcome of their reported emails might encourage more proactive engagement.
  • the reporting tool is not as streamlined on mobile devices as it is on desktops. Enhancing mobile functionality would be beneficial
With a mix of staff, teachers, and potentially older students handling sensitive information, PhishER’s reporting tools are ideal for creating a safer email environment. The platform’s ease of access and user-friendly reporting mechanism is particularly beneficial for dispersed workforces.
Score 8 out of 10
Vetted Review
Verified User
Incentivized
We use it to facilitate in the review of reported suspected phishing emails. It provides ease of review as all necessary information needed to determine a suspected email as phishing is readily available. It also provides automation for known false positives.
  • automation tasks for known false positives
  • providing information for phishing email determination
  • informative dashboard
  • setting up automated tasks
  • rooms is not really understood
  • customizable reports
best for managing phishing email reporting
Score 9 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 PhishER perfectly solved our issues with responding to phishing emails. Previously, responding to malicious emails was a completely manual process, and we could not respond nearly as quickly or efficiently as we wanted to.
With KnowBe4 PhishER, the process is now highly automated, and we can remove phishing emails from dozens of inboxes in just a few clicks.
Our users appreciate it because they receive much quicker feedback on clean emails.
IT appreciates it because it makes our job a breeze and lets us focus on the important elements of incident response.
Management appreciates it because it helps keep our institution safer and gives them excellent reporting metrics.
  • Quick phishing email review
  • Automated analysis and tagging
  • Immediate quarantine and removal
  • Quicker / more efficient PhishRIP
  • Improved "Find Similar Messages" filtering options
  • Improved notification options
KnowBe4 PhishER is highly efficient and cost effective, making it a great fit for small to medium businesses that are considered about phishing attacks. KnowBe4 PhishER helps small teams respond to phishing emails with the resources and efficiency of larger teams. It fits well with existing KnowBe4 clients, as the Phish Alert button is already in use and training modules for coworkers are available to instruct how to use the button.
Richard Fantozzi, Jr | TrustRadius Reviewer
Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use it to automate the response and quarantine of phishing emails in conjunction with Office 365. This has greatly reduced the workload and response time of our security team. This has also helped improve the response to phishing emails to users to improve their awareness of what is and what is not a phishing email. One other use is the integration of webhooks to Microsoft Sentinel allow us to investigate incidents from Email
  • Identify clean, spam or bad emails
  • Speed of identification and response
  • Automation of reporting to integrated systems
  • Provdining supporting evidence for bad emails
  • Initial setup possible with a default setup that utilizes all functionality that could be turned off/on and modified per customers needs
  • Supporting multiple actions per foiund email instead of multiple rules needed to fire an email and a webhook
Less than a half hour of setup and we where ready to go with way more automatation that we had before which has proven to be highly effective especially when there are emails that make it through like in BEC scenerios with trusted 3rd parties.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
I love the AI behind this tool. It monitors and detects my phishing emails. It's an awesome tool that compliments our other endpoint solutions.
  • Blocks emails based on sender, attachments and URLs
  • Pulls known phishing emails
  • Converts phishing emails to training emails
  • Integrates with Outlook
  • Preview attachments when blocking them
  • Send emails externally when using actions
  • More powerful PhishRIP
Anyone can benefit from KnowBe4 PhishER. It's easy to setup and integrate with Outlook. Viewing emails is a breeze.
Score 10 out of 10
Vetted Review
Verified User
Incentivized
KnowBe4 PhishER provides us with 2 major tools. It firstly allows our users to quickly and easily submit suspicious emails for review. Saving both our end users and our Helpdesk time with discussing these emails directly. Secondly, it gives us the Phish RIP technology which allows us as IT to quickly remove email threats from all of our users inboxes at once. Much quicker than the built in tools that Microsoft provides with M365
  • Implementation of Phish Alert Button
  • Streamlines the "this email looks weird" process that bogged down our Helpdesk
  • Let's us quickly remove emails from everyone's inboxes
  • Make a direct link to login, right now I have to login the console and then click on the PhishER button
  • After you submit a PhishRip, there is no way to review the parameters of the PhishRip in my experience. I would like to go back and look at the results in relation to the parameters that I used to create the PhishRip
  • The PhishML is a little lacking, at least for us. In my experience, we were getting alot of false negatives for "Clean" that we had to turn that one off completely. It does good with "Spam" or "Threat" though, which is more important
The best example I can give is that it completely streamlines and automates a very common call to the Helpdesk. The one where the end user calls and says "Is this email legitimate? Should I respond?" etc. Instead of having to take 10-15 minutes on the phone back and forth with an end-user, they can simply report the email using the Phish Alert Button and move on about their day.
December 18, 2023

Love KnowBe4 and PhishER!

Score 10 out of 10
Vetted Review
Verified User
Incentivized
We use it so people can click on messages to let us know if they are spam or threats. We've done extensive cybersecurity training with our users so it's been helped extend that. People are pretty good with it. Once in awhile we have a clean one that looks sketchy but I just send those back.
  • Lets the user know that the message has been sent to KnowBe4 and IT
  • Gives me a score on what they think the message is (clean, spam, threat)
  • Pulls message out of others inboxes
  • Might be nice to give users scores on how accurate they are with using it
  • It would be nice if it recommended certain messages if someone didn't check it
Love that it keeps users involved with cybersecurity. Microsoft's email filters haven't been top notch so this really helps us rid the company of threats.
Return to navigation