KnowBe4 - PhishER.
August 17, 2025

KnowBe4 - PhishER.

DJ Reynolds | TrustRadius Reviewer
Score 7 out of 10
Vetted Review
Verified User

Overall Satisfaction with KnowBe4 PhishER/PhishER Plus

We use PhishER to consolidate all of our companies' reported phishing emails into one dashboard. We can then find similar messages throughout the tenant and rip them with a couple of clicks if needed. This allows us to act quickly when a malicious email hits. We also use it to notice trends and stay proactive on current malicious attacks with the Global list.

Pros

  • Quickly loads and catalogs reported emails.
  • Rip feature is fast and accurate.
  • Threat notifications.

Cons

  • It's ONLY applicable to emails reported by the end-user
  • The Rules and Notifications section is difficult to understand and navigate. Too complicated for what it is.
  • The Find Similar Messages could be more efficient in its findings based on the search criteria.
  • I assume it has saved us a few possible clicks on malicious emails.
  • It's saved us substantial time in combing through mailboxes or shared mailboxes.
  • It has greatly improved our proactivity in terms of the Global list, enabling us to see and catch threats before they happen.
It can really give you a good overview of all the messages that need to be tended to and the ones that are just junk. It makes it easier and saves time to see it all in real time in a clean space. It completely eliminates the need for extensive manual digging. The KSAT template creation saves us a lot of time on making our own Phishing email for testing. We can just re-create the ones we think are good.
PhishRIP and Flip. We usually go through Microsoft for blocks, except for the Global block list, which is great. PhishRIP is great because the Microsoft process for hunting and removing emails is long and time-consuming. Time is of the essence in some of these, so the PhishRIP really saves us some stress.
Time saving, cleanliness, effectiveness, confidence, pro-activeness.
I think it has a good amount of useful things. It is reliant on your input and the end-users' participation. But if those are good, the usability becomes more robust and efficient.
I don't think I've used anything like this. It's not really a sandbox or even like a MIMEcast. It's somewhat distinct in its relationship to the PAB and how that works. Notifications, alerting, and blocking are similar to features that even Microsoft can offer. But the price point on this makes it a valuable QoL tool.

Do you think KnowBe4 PhishER/PhishER Plus delivers good value for the price?

Yes

Are you happy with KnowBe4 PhishER/PhishER Plus's feature set?

Yes

Did KnowBe4 PhishER/PhishER Plus live up to sales and marketing promises?

Yes

Did implementation of KnowBe4 PhishER/PhishER Plus go as expected?

Yes

Would you buy KnowBe4 PhishER/PhishER Plus again?

Yes

KSAT template creation, rip emails, and the global list are all very useful. The best thing is that it's just really easy to see all the tenant-reported emails in one simple dashboard. This is NOT a full sandbox. The protection is on you and your end users to be successful. If they aren't active and aggressive with the Phish Alert Button, it's mostly useless.

KnowBe4 PhishER/PhishER Plus Feature Ratings

Company-wide Incident Reporting
7
Integration with Other Security Systems
1
Centralized Dashboard
8
Machine Learning to Prevent Incidents
8
Live Response for Rapid Remediation
8

Comments

More Reviews of KnowBe4 PhishER/PhishER Plus