Phish Threat

Suggest, discuss, and vote on new ideas for Sophos Phish Threat. Phishing attack simulation and training for your end users.

Phish Threat

Suggest, discuss, and vote on new ideas for Sophos Phish Threat. Phishing attack simulation and training for your end users.

Suggest an Idea..

(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  1. When enrolling multiple users the Select All button should choose all customers

    Submitting on behalf of client.

    If you create a campaign and want to select all users in the organisation the "Select All" button only selects all users in the current view. For example if you have 200 users, hit "Select All" it would make sense to choose all 200 however only 50 users are selected at a time.

    You can scroll down in the list, let it populate, scroll down, repeat until you reach the bottom then hit the "Select All" button, however this is inconvenient for large lists.

    Only workaround at this time is to add all users to…

    2 votes
    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • sso
    • facebook
    • google
      Password icon
      Signed in as (Sign out)

      We’ll send you updates on this idea

      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
    • Use Sophos DNS names for click tracking

      Currently, it is required to whitelist all off Amazon tracking (*.awstrack.me) globally. This presents a potential privacy and security issue as it is so broad.

      Amazon allows for and documents how to use alias records so that customers see your DNS names and not Amazon's. It is easier to whitelist all of Sophos than it is to whitelist all of Amazon. As a security company, correcting these perceived issues should be paramount.

      See the link to Amazon's documentation for details.

      https://docs.aws.amazon.com/ses/latest/DeveloperGuide/configure-custom-open-click-domains.html

      1 vote
      Sign in
      Check!
      (thinking…)
      Reset
      or sign in with
      • sso
      • facebook
      • google
        Password icon
        Signed in as (Sign out)

        We’ll send you updates on this idea

        0 comments  ·  Flag idea as inappropriate…  ·  Admin →
      • Right-Click Report Message

        Add a way to report an email without Opening or using the Preview Pane.

        Like a right click context option, or allow the button to work on selected message without the reading pane active.

        1 vote
        Sign in
        Check!
        (thinking…)
        Reset
        or sign in with
        • sso
        • facebook
        • google
          Password icon
          Signed in as (Sign out)

          We’ll send you updates on this idea

          0 comments  ·  Flag idea as inappropriate…  ·  Admin →
        • More than 1 video per campaign

          Can you put the ability to add more than one video to a training campaign into version 2 like it was in version 1.

          2 votes
          Sign in
          Check!
          (thinking…)
          Reset
          or sign in with
          • sso
          • facebook
          • google
            Password icon
            Signed in as (Sign out)

            We’ll send you updates on this idea

            0 comments  ·  Flag idea as inappropriate…  ·  Admin →
          • Save and Continue

            I would like to request the ability to save and continue a campaign that I'm creating. I can't always run through the steps from start to finish without interruptions (or need to gather info). In v1 there was no Save and Continue option, but the program saved the campaign automatically.

            2 votes
            Sign in
            Check!
            (thinking…)
            Reset
            or sign in with
            • sso
            • facebook
            • google
              Password icon
              Signed in as (Sign out)

              We’ll send you updates on this idea

              0 comments  ·  Flag idea as inappropriate…  ·  Admin →
            • Users Name Format Support

              Allow support for users with naming convention of 'Last Name, First Name' in campaigns.

              Currently {FirstName} variable resolves to the users 'Last Name,'

              1 vote
              Sign in
              Check!
              (thinking…)
              Reset
              or sign in with
              • sso
              • facebook
              • google
                Password icon
                Signed in as (Sign out)

                We’ll send you updates on this idea

                0 comments  ·  Flag idea as inappropriate…  ·  Admin →
              • Phish Threat Training Campaign Shortened

                Recently noticed that Phish Threat campaigns that we're not able to manage the timeline to phish/training campaigns for less than a month. As the project Administrator, I should be able to dictate the duration of the testing campaign and not hard-limited to a month long campaign.

                2 votes
                Sign in
                Check!
                (thinking…)
                Reset
                or sign in with
                • sso
                • facebook
                • google
                  Password icon
                  Signed in as (Sign out)

                  We’ll send you updates on this idea

                  0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                • Import Phishing Mails

                  It would be glad to import existing real phishing mails (without the bad links). This would be much more realistic than sending the same fake thread the 3rd time

                  3 votes
                  Sign in
                  Check!
                  (thinking…)
                  Reset
                  or sign in with
                  • sso
                  • facebook
                  • google
                    Password icon
                    Signed in as (Sign out)

                    We’ll send you updates on this idea

                    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                  • enrolling multiple users through CSV

                    ability to enroll multiple users through CSV for a campaign instead of manually selecting them or avoid creating a user group manually.

                    3 votes
                    Sign in
                    Check!
                    (thinking…)
                    Reset
                    or sign in with
                    • sso
                    • facebook
                    • google
                      Password icon
                      Signed in as (Sign out)

                      We’ll send you updates on this idea

                      1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                    • Phish Threat Training Concept

                      Phish Threat Training Suggestion To Help IT with End Users
                      I was responding to another post and had this thought, I wanted to see what others think of it, the goal is to better incorporate the training before the test.

                      Currently sending an email for training in something you failed at in an email creates to much tension, end users can simply tell their boss they thought it was another test so they ignored the email. Bosses just don't want the breach so they encourage the training but also understand the end users point since they are just being extra…

                      5 votes
                      Sign in
                      Check!
                      (thinking…)
                      Reset
                      or sign in with
                      • sso
                      • facebook
                      • google
                        Password icon
                        Signed in as (Sign out)

                        We’ll send you updates on this idea

                        2 comments  ·  Flag idea as inappropriate…  ·  Admin →
                      • Ability test email flow

                        Test the email flow to a specific user in phishing campaign within the campaign. Need to ensure the email is getting through the intended network's email filter. At the moment, we need to create a test campaign every time we test this.

                        1 vote
                        Sign in
                        Check!
                        (thinking…)
                        Reset
                        or sign in with
                        • sso
                        • facebook
                        • google
                          Password icon
                          Signed in as (Sign out)

                          We’ll send you updates on this idea

                          0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                        • Phish Threat V2

                          Allow the ability to add multiple training modules per Training campaign (similar to V1 functionality).

                          3 votes
                          Sign in
                          Check!
                          (thinking…)
                          Reset
                          or sign in with
                          • sso
                          • facebook
                          • google
                            Password icon
                            Signed in as (Sign out)

                            We’ll send you updates on this idea

                            0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                          • Ability to remove campaigns

                            When testing out campaign functionality it would be useful to be able to remove the Campaign (restricted to Super Admin).

                            9 votes
                            Sign in
                            Check!
                            (thinking…)
                            Reset
                            or sign in with
                            • sso
                            • facebook
                            • google
                              Password icon
                              Signed in as (Sign out)

                              We’ll send you updates on this idea

                              0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                            • Azure AD Sync for Phish Threat

                              It would be helpful to have the ability to sync users with the Azure AD so that new users will automatically be added for training/testing.

                              3 votes
                              Sign in
                              Check!
                              (thinking…)
                              Reset
                              or sign in with
                              • sso
                              • facebook
                              • google
                                Password icon
                                Signed in as (Sign out)

                                We’ll send you updates on this idea

                                0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                              • Validate whether the "From" field has a name that matches a protected mailbox

                                I'd like to see Sophos scan the "From" field and compare it to the names on our protected mailboxes. If the name matches, but the email address is not the protected mailbox, have the ability to modify the subject or reject the email. It would be even better if you could have a level of security on this so that an exact match on the name can trigger a more strict action like rejection.

                                1 vote
                                Sign in
                                Check!
                                (thinking…)
                                Reset
                                or sign in with
                                • sso
                                • facebook
                                • google
                                  Password icon
                                  Signed in as (Sign out)

                                  We’ll send you updates on this idea

                                  0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                • Failed Training URL Export

                                  It would be good if we were able to export a list of URLs to each users training for when they have failed a campaign. We often have users deleting their emails so obtaining a copy of URL to send them would be handy.

                                  To note: This can be done on the US V1 portal however it is not available on the UK V2 portal.

                                  2 votes
                                  Sign in
                                  Check!
                                  (thinking…)
                                  Reset
                                  or sign in with
                                  • sso
                                  • facebook
                                  • google
                                    Password icon
                                    Signed in as (Sign out)

                                    We’ll send you updates on this idea

                                    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
                                  • Device Type under campain overview

                                    In phish threat under the campaign overview it shows "device breakdown". This displays either computers or mobile devices with respective statistics.

                                    It would be great to click the respective device group and display the users associated with this device type, or at least have the ability to see this information somewhere such as results.

                                    1 vote
                                    Sign in
                                    Check!
                                    (thinking…)
                                    Reset
                                    or sign in with
                                    • sso
                                    • facebook
                                    • google
                                      Password icon
                                      Signed in as (Sign out)

                                      We’ll send you updates on this idea

                                      0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                    • Campaign Overview Dropdown Filter should have "Not Completed"

                                      All other options are in the drop down filter. "Not Completed" which is the most important for managing open campaigns is not available in the Campaign quick view.

                                      3 votes
                                      Sign in
                                      Check!
                                      (thinking…)
                                      Reset
                                      or sign in with
                                      • sso
                                      • facebook
                                      • google
                                        Password icon
                                        Signed in as (Sign out)

                                        We’ll send you updates on this idea

                                        2 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                      • Export Reports to PDF in Current View

                                        I see that the option is now available to export Phish Threat reports to a CSV.

                                        It would be great for reporting and records purposes if we also had the option to Export as PDF in Current View, similar to the Export PDF of Current View option that is available when viewing DLP Events Logs.

                                        Currently exporting the CSV file spits out all the possible data on a campaign, including irrelevant data (such as in General Phishing campaigns, the CSV report includes fields for Attachments and Credential Harvesting). Exporting the Current View would be much more helpful for reporting and…

                                        2 votes
                                        Sign in
                                        Check!
                                        (thinking…)
                                        Reset
                                        or sign in with
                                        • sso
                                        • facebook
                                        • google
                                          Password icon
                                          Signed in as (Sign out)

                                          We’ll send you updates on this idea

                                          0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                        • Report for what training courses users have taken

                                          Need a report to show which training courses each user has taken so we can know what to assign for future campaigns.

                                          2 votes
                                          Sign in
                                          Check!
                                          (thinking…)
                                          Reset
                                          or sign in with
                                          • sso
                                          • facebook
                                          • google
                                            Password icon
                                            Signed in as (Sign out)

                                            We’ll send you updates on this idea

                                            0 comments  ·  Flag idea as inappropriate…  ·  Admin →
                                          ← Previous 1 3 4 5
                                          • Don't see your idea?

                                          Phish Threat

                                          Feedback and Knowledge Base

                                          icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.