Overview
What is KnowBe4 PhishER/PhishER Plus?
PhishER is presented as a lightweight Security Orchestration, Automation and Response (SOAR) platform to orchestrate threat response and manage the high volume of potentially malicious email messages reported by users. And, with automatic prioritization of emails, PhishER helps InfoSec and…
KnowBe4 PhishER - security made simple
KnowBe4 PhishER Review
KnowBe4 PhishER works for me!
Happy with PhishER
Great training and testing tool
KnowBe4 PhishER - an easy and robust application
KnowBe4 PhishER has saved us $100K's
KnowBe4 PhishER is a game changer
Strong recommendation for KnowBe4 PhishER and all KnowBe4 products
KnowBe4 PhishER is a great service
The fantastic KnowBe4 PhishER SOAR platform
Phishing Hero!
KnowBe4 PhishER - A great tool to use as a second line of defense
PhishER - Don't Phone Home Without It.
How KnowBe4 PhishER/PhishER Plus Differs From Its Competitors
Time Savings
PhishER Capabilities
Time Savings
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
PhishER Capabilities
Time Savings
Time Savings
PhishER Capabilities
Time Savings
Revision - too many false positives.
PhishER Capabilities
Time Savings
PhishER Capabilities
Awards
Products that are considered exceptional by their customers based on a variety of criteria win TrustRadius awards. Learn more about the types of TrustRadius awards to make the best purchase decision. More about TrustRadius Awards
Popular Features
- Company-wide Incident Reporting (52)7.878%
- Live Response for Rapid Remediation (55)7.878%
- Centralized Dashboard (62)7.878%
- Machine Learning to Prevent Incidents (54)7.777%
Reviewer Pros & Cons
Pricing
3001-5000 Monthly Pricing Per Seat
$0.50
2001-3000 Monthly Pricing Per Seat
$0.55
1001-2000 Monthly Pricing Per Seat
$0.65
Entry-level set up fee?
- Setup fee optional
Offerings
- Free Trial
- Free/Freemium Version
- Premium Consulting/Integration Services
Features
Incident Response Platforms
Incident response (IR) platforms guide countermeasures against a security breach and deploy preplanned, automated threat responses
- 7.8Company-wide Incident Reporting(52) Ratings
Built-in enterprise-level ticketing system to leverage the knowledge of the entire workforce, not just the security team
- 6.8Integration with Other Security Systems(47) Ratings
Pre-built integration with other security systems like SIEM and threat intelligence
- 7.8Centralized Dashboard(62) Ratings
A central dashboard provides analysts with a clear look at the most important data
- 7.7Machine Learning to Prevent Incidents(54) Ratings
Incident prevention powered by machine learning with no human intervention
- 7.8Live Response for Rapid Remediation(55) Ratings
Live remediation response allows incident responders to initiate remediation from anywhere over secure connection
Product Details
- About
- Integrations
- Competitors
- Tech Details
- Downloadables
- FAQs
What is KnowBe4 PhishER/PhishER Plus?
PhishER is a platform for managing the high volume of potentially malicious email messages reported by users. With automatic prioritization of emails, PhishER aims to help InfoSec and Security Operations team cut through the inbox noise and respond to the most dangerous threats more quickly.
PhishER is a web-based platform with critical worksteam functionality that serves as a phishing emergency room to identify and respond to user-reported messages. With PhishER, users are able to automate the workstream of 90% of reported emails that are not threats, freeing up incident response resources.
PhishER is available as a stand-alone product or as an optional add-on for KnowBe4 customers that want to automatically prioritize and manage potentially malicious messages that were reported through the KnowBe4 Phish Alert Button. PhishER Plus is an upgraded subscription level that includes all of the features from PhishER with additional enhancements and AI-validated crowdsourced data. PhishER Plus was developed to help supercharge an organization’s email security defenses. It does this by automatically blocking phishing attacks that traditional Security Email Gateways (SEGs) miss and removes these missed threats from users’ inboxes.
KnowBe4 PhishER/PhishER Plus Features
Incident Response Platforms Features
- Supported: Company-wide Incident Reporting
- Supported: Integration with Other Security Systems
- Supported: Centralized Dashboard
- Supported: Machine Learning to Prevent Incidents
- Supported: Live Response for Rapid Remediation
Additional Features
- Supported: Automatic Message Prioritization
KnowBe4 PhishER/PhishER Plus Screenshots
KnowBe4 PhishER/PhishER Plus Video
KnowBe4 PhishER/PhishER Plus Integrations
KnowBe4 PhishER/PhishER Plus Competitors
KnowBe4 PhishER/PhishER Plus Technical Details
Deployment Types | Software as a Service (SaaS), Cloud, or Web-Based |
---|---|
Operating Systems | Unspecified |
Mobile Application | No |
Supported Countries | Global |
KnowBe4 PhishER/PhishER Plus Downloadables
Frequently Asked Questions
Comparisons
Compare with
Reviews and Ratings
(160)Attribute Ratings
Reviews
(1-25 of 44)KnowBE4 PhishER Review.
- Categorization of suspect emails to Benign, SPAM and Threat.
- Integration to VirusTotal, Ticketing platform.
- Smart Dashboards.
- Canned auto - response email to end-users.
- AI/ML algorithm could be improved to reduce false positives and increase auto-resolved suspect emails.
KnowBe4 PhishER Review
- Learns which emails are phishing and which are legitimate
- Customizable emails back to associates who report spam or clean emails as phishing
- Clear view into what has been reported
- I haven't found a good use case for Rooms feature yet
- I haven't had to build any custom rules yet, either
KnowBe4 PhishER works for me!
- User Interface is easy to use.
- Saves time by classifying emails as malicious or not.
- In PhishRip portion would like to see more details regarding the message that is being ripped.
Happy with PhishER
- Automates phish report response
- Highlights email header information
- Saves time for our team.
- The rule setup could be easier to follow
- Make it so you don't have to click back and forth with manually looking at emails
- Make the email quarantine longer than 30 days.
Great training and testing tool
- Huge library of media
- Real world examples and frequent updates
- Communicative account managers
- It can be a bit tedious to see specific results of phishing test (per user results)
KnowBe4 PhishER - an easy and robust application
- Customer Support; especially when we brough the application on board. The attention to detail, instruction, and help KnowBe4 team gave us is quite good!
- A wide variety of trainings, over a multitude of topics.
- Phishing Tests; "set it and forget" with metrics!
- For start-up biotech/pharmaceuticals, I think KnowBe4 PhishER is the perfect addition!
KnowBe4 PhishER is a game changer
- KnowBe4 PhishER helps end users to easily report possible spam or phishing emails with PAB
- KnowBe4 PhishER helps cut down on review time phish emails
- KnowBe4 PhishER phish RIP allows us to quickly remove dangerous email from other users in our environment
- To be able to search in the block list page instead of having to manually scroll to find something
The fantastic KnowBe4 PhishER SOAR platform
- Analysis and classification of phishing emails using machine learning
- Response to reporting users with personalised emails template
- Automatic response and actions using integration with Microsoft
- Good dashboard with reporting and KPI
- Integration with others product to improve scan and analysis
- It improves users' security awareness and behavior as receiving an immediate response with the analysis result improves the ability to recognize a phishing email
- The lack of recognising email dangerous with QR code
- Improve the alert/notification system to automatically advise the platform administrator in case of massive threats.
- Decrease in uncategorized emails
Phishing Hero!
- Phish Alert Button works well on suspicious email reporting. So in case of any phishing attack, our users can report the email directly to KnowBe4 PhishER dashboard and our team can take care of it then.
- The PhishML feature automatically categories the reported emails based on email characteristics like Clean/Spam/Threat, so it makes our security job easy.
- The PhishRIP feature is helping us to remove a suspicious email from all user's outlooks in just a few clicks and with this feature, we are building a strong security posture.
- KnowBe4 PhishER integration with VirusTotal is helping us to scan any URL and documents that seems suspicious to us.
- A detailed analysis of reported emails by using AI techniques.
- Automatic quarantine of 100% sure phishing emails without any human interaction.
PhishER - Don't Phone Home Without It.
- The machine based learning does a great job of correctly identifying safe vs. malicious emails.
- PhishRIP does an excellent job of finding and quarantining similar emails from other users accounts.
- The reports give us a real time insight into trends and campaigns launched by bad actors.
- Somtimes the PAB (or Phish Hook) has to have its permissions revalidated. This is a quick fix, but takes some knowledge.
- I honestly can't think of any other shortcomings at this time.
- See #1
- The platform offers a simple, one-click reporting button for end-users.
- Allows teachers to report suspicious emails without needing technical expertise.
- The IT department is able to review all suspicious email in one dashboard.
- Enhancing the automated response capabilities, such as directly initiating remediation processes or integrating with other cybersecurity tools, could further streamline the threat management process.
- Implementing a feedback system where users can be informed about the outcome of their reported emails might encourage more proactive engagement.
- the reporting tool is not as streamlined on mobile devices as it is on desktops. Enhancing mobile functionality would be beneficial
- automation tasks for known false positives
- providing information for phishing email determination
- informative dashboard
- setting up automated tasks
- rooms is not really understood
- customizable reports
KnowBe4 PhishER - Rapid and efficiency phishing response
With KnowBe4 PhishER, the process is now highly automated, and we can remove phishing emails from dozens of inboxes in just a few clicks.
Our users appreciate it because they receive much quicker feedback on clean emails.
IT appreciates it because it makes our job a breeze and lets us focus on the important elements of incident response.
Management appreciates it because it helps keep our institution safer and gives them excellent reporting metrics.
- Quick phishing email review
- Automated analysis and tagging
- Immediate quarantine and removal
- Quicker / more efficient PhishRIP
- Improved "Find Similar Messages" filtering options
- Improved notification options
KnowBe4 PhishER Great Time Saver.
- Identify clean, spam or bad emails
- Speed of identification and response
- Automation of reporting to integrated systems
- Provdining supporting evidence for bad emails
- Initial setup possible with a default setup that utilizes all functionality that could be turned off/on and modified per customers needs
- Supporting multiple actions per foiund email instead of multiple rules needed to fire an email and a webhook
You've got to get KnowBe4 PhishER
- Blocks emails based on sender, attachments and URLs
- Pulls known phishing emails
- Converts phishing emails to training emails
- Integrates with Outlook
- Preview attachments when blocking them
- Send emails externally when using actions
- More powerful PhishRIP
- Implementation of Phish Alert Button
- Streamlines the "this email looks weird" process that bogged down our Helpdesk
- Let's us quickly remove emails from everyone's inboxes
- Make a direct link to login, right now I have to login the console and then click on the PhishER button
- After you submit a PhishRip, there is no way to review the parameters of the PhishRip in my experience. I would like to go back and look at the results in relation to the parameters that I used to create the PhishRip
- The PhishML is a little lacking, at least for us. In my experience, we were getting alot of false negatives for "Clean" that we had to turn that one off completely. It does good with "Spam" or "Threat" though, which is more important
Love KnowBe4 and PhishER!
- Lets the user know that the message has been sent to KnowBe4 and IT
- Gives me a score on what they think the message is (clean, spam, threat)
- Pulls message out of others inboxes
- Might be nice to give users scores on how accurate they are with using it
- It would be nice if it recommended certain messages if someone didn't check it
PhishER and PhishRIP
- Allows users to report phishing emails without forwarding them
- Helps with the training of users
- Removed harmful emails from all other inboxes
- Initial setup took a lot of configuration
A great help to skeleton crew IT departments!
- automated message header decoding
- remote removal/deletion of phishing mails from entire mail environment
- fast and easy false positive/clean identification
- easier customization of automation rules
- better end-user feedback to message submitter of submission status
Anything less than 10 users submitting messages to PhishER, and it's probably not worth the cost of the subscription in comparison to 1:1 communication.
If you have an email system that it doesn't tie well with, it'll be more difficult to get the really really nice integrations working in a way that truly saves time/effort/money.
PhishER saves time and reduces risk
- Automates handling of reported phishing emails
- Allows admins to check what's been done
- Allows admins to manually handle emails the AI isn't sure about
- The workflow for manually handling phish removal from all mailboxes is a bit "clicky"
- Web UI can be a little slow
- PhishER Plus (the shared blocklist) doesn't support GMail, only 365
Manual handling of the remaining reported phishing emails is a bit slow and "clicky".
Quick Thoughts
- Clean Users Inbox from threats
- Alerts me in a timely manner
- Scans
- Simply use even more
- Continue follow up training
Save your security team from burnout
The ROI is rapid and your security team will be able to focus on higher value tasks. It is worth the time to work with a KnowBe4 engineer to fine tune the policies for your environment.
Looking forward to seeing how KnowBe4 can integrate AI into this product for even more automation.
- Reduces the noise vs signal ratio
- Saves your team time
- Encourages users to report phishing emails
- Automates a task that your team hates doing
- Improve AI for greater filtering
- Better explanations of the policy settings and rules and how to tweak them for increased results
- Automated gamification/rewards for end users to encourage reporting actual phishing
- Automate sending executive level reports to maintain c-suite support and show ROI
If you have the PAB for users to report phishing, then you need PhishER.
Catch Fake Emails with PhishER!
We've got great buy-in from most management regarding issues like this as well. The best part of the software is being able to run queries on submitted emails and then quarantining and deleting said emails.
- Allows the removal of Malicious Emails
- Groups similar emails into categories for email reporting
- Also allows you to see who has submitted the most phishing/spam/clean emails within reports.
- GUI Based search rules, the current way to create rules for specific the current way to create a rule is using "yara" conditions, which for someone that is not familiar with them can be cumbersome.
- A wider way to find similar messages. Currently you have to choose from 2 of 5 options, and you don't always find malicious emails when using just subject/sender (when the sender is clearly the same for a targeted phishing campaign).
- SOMETIMES the speed with which a submitted email hit's the PhishER Inbox can be longer than I would like (closer to an hour) and others it is within seconds.
New Product. Still getting up to speed. Huge potential.
- Integrate with M365
- Integrate with KnowBe4 Phish Reporting
- Provide feedback to staff
- Setup of rules and actions is still a little confusing.
- I don't want to create too much traffic for the end user - need to tweak.
- I still want to see what users are submitting - a little tricky to figure out, but getting help.
KnowBe4 PhishER is a good tool at a good price
- Automation
- good detection rules
- ability to integrate with o365
- support is very good
- Since we are new to the product, I do not have anything for this option.