Phish Threat

Suggest, discuss, and vote on new ideas for Sophos Phish Threat. Phishing attack simulation and training for your end users.

Phish Threat

Suggest, discuss, and vote on new ideas for Sophos Phish Threat. Phishing attack simulation and training for your end users.

  1. Phish Threat Quiz Visibility

    We had numerous complaints from users that they completed training but kept receiving email reminders. In reality, they did not noticed the "Quiz" button and assumed that was it.

    Would be nice to have some kind of highly visible pop up after video is over to tell users that there is also a quiz to follow.

    5 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Flag idea as inappropriate…  ·  Admin →
  2. Phish Threat Reporting

    It would be great to integrate Phish Reporting with G Suite Gmail and not only Outlook.

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Flag idea as inappropriate…  ·  Admin →
  3. General settings in Phish Threat V2 missing options

    In Phish V1 there were several "General Settings" which gave options such as these features should make it over to V2 as they are important settings required:


    • Email Sending

    • Training Reminders

    • Grading Options

    • Notify employee's manager on failed phishing attacks

    • Responses to Phishing Email

    • Language options

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  4. Automatically enroll users in a default campaign

    In Phish V1 they had the ability to enroll newly added users to a default campaign. This feature was not carried over to V2.

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    3 comments  ·  Flag idea as inappropriate…  ·  Admin →
  5. Enroll users in an active training campaign

    Allow the ability to add users to an existing and running campaign

    9 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  6. When enrolling multiple users the Select All button should choose all customers

    Submitting on behalf of client.

    If you create a campaign and want to select all users in the organisation the "Select All" button only selects all users in the current view. For example if you have 200 users, hit "Select All" it would make sense to choose all 200 however only 50 users are selected at a time.

    You can scroll down in the list, let it populate, scroll down, repeat until you reach the bottom then hit the "Select All" button, however this is inconvenient for large lists.

    Only workaround at this time is to add all users to…

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  7. Use Sophos DNS names for click tracking

    Currently, it is required to whitelist all off Amazon tracking (*.awstrack.me) globally. This presents a potential privacy and security issue as it is so broad.

    Amazon allows for and documents how to use alias records so that customers see your DNS names and not Amazon's. It is easier to whitelist all of Sophos than it is to whitelist all of Amazon. As a security company, correcting these perceived issues should be paramount.

    See the link to Amazon's documentation for details.

    https://docs.aws.amazon.com/ses/latest/DeveloperGuide/configure-custom-open-click-domains.html

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  8. Right-Click Report Message

    Add a way to report an email without Opening or using the Preview Pane.

    Like a right click context option, or allow the button to work on selected message without the reading pane active.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  9. More than 1 video per campaign

    Can you put the ability to add more than one video to a training campaign into version 2 like it was in version 1.

    10 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  10. Save and Continue

    I would like to request the ability to save and continue a campaign that I'm creating. I can't always run through the steps from start to finish without interruptions (or need to gather info). In v1 there was no Save and Continue option, but the program saved the campaign automatically.

    24 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  11. Users Name Format Support

    Allow support for users with naming convention of 'Last Name, First Name' in campaigns.

    Currently {FirstName} variable resolves to the users 'Last Name,'

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  12. Phish Threat Training Campaign Shortened

    Recently noticed that Phish Threat campaigns that we're not able to manage the timeline to phish/training campaigns for less than a month. As the project Administrator, I should be able to dictate the duration of the testing campaign and not hard-limited to a month long campaign.

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    3 comments  ·  Flag idea as inappropriate…  ·  Admin →
  13. Import Phishing Mails

    It would be glad to import existing real phishing mails (without the bad links). This would be much more realistic than sending the same fake thread the 3rd time

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  14. enrolling multiple users through CSV

    ability to enroll multiple users through CSV for a campaign instead of manually selecting them or avoid creating a user group manually.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  15. Phish Threat Training Concept

    Phish Threat Training Suggestion To Help IT with End Users
    I was responding to another post and had this thought, I wanted to see what others think of it, the goal is to better incorporate the training before the test.

    Currently sending an email for training in something you failed at in an email creates to much tension, end users can simply tell their boss they thought it was another test so they ignored the email. Bosses just don't want the breach so they encourage the training but also understand the end users point since they are just being extra…

    16 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    3 comments  ·  Flag idea as inappropriate…  ·  Admin →
  16. Ability test email flow

    Test the email flow to a specific user in phishing campaign within the campaign. Need to ensure the email is getting through the intended network's email filter. At the moment, we need to create a test campaign every time we test this.

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  17. Phish Threat V2

    Allow the ability to add multiple training modules per Training campaign (similar to V1 functionality).

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  18. Ability to remove campaigns

    When testing out campaign functionality it would be useful to be able to remove the Campaign (restricted to Super Admin).

    15 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  19. Azure AD Sync for Phish Threat

    It would be helpful to have the ability to sync users with the Azure AD so that new users will automatically be added for training/testing.

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  20. Validate whether the "From" field has a name that matches a protected mailbox

    I'd like to see Sophos scan the "From" field and compare it to the names on our protected mailboxes. If the name matches, but the email address is not the protected mailbox, have the ability to modify the subject or reject the email. It would be even better if you could have a level of security on this so that an exact match on the name can trigger a more strict action like rejection.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Phish Threat

Categories

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.