Phish Threat

Suggest, discuss, and vote on new ideas for Sophos Phish Threat. Phishing attack simulation and training for your end users.

Phish Threat

Suggest, discuss, and vote on new ideas for Sophos Phish Threat. Phishing attack simulation and training for your end users.

  1. Ability test email flow

    Test the email flow to a specific user in phishing campaign within the campaign. Need to ensure the email is getting through the intended network's email filter. At the moment, we need to create a test campaign every time we test this.

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  2. Phish Threat V2

    Allow the ability to add multiple training modules per Training campaign (similar to V1 functionality).

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  3. Ability to remove campaigns

    When testing out campaign functionality it would be useful to be able to remove the Campaign (restricted to Super Admin).

    15 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  4. Azure AD Sync for Phish Threat

    It would be helpful to have the ability to sync users with the Azure AD so that new users will automatically be added for training/testing.

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  5. Validate whether the "From" field has a name that matches a protected mailbox

    I'd like to see Sophos scan the "From" field and compare it to the names on our protected mailboxes. If the name matches, but the email address is not the protected mailbox, have the ability to modify the subject or reject the email. It would be even better if you could have a level of security on this so that an exact match on the name can trigger a more strict action like rejection.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  6. Failed Training URL Export

    It would be good if we were able to export a list of URLs to each users training for when they have failed a campaign. We often have users deleting their emails so obtaining a copy of URL to send them would be handy.

    To note: This can be done on the US V1 portal however it is not available on the UK V2 portal.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  Flag idea as inappropriate…  ·  Admin →
  7. Device Type under campain overview

    In phish threat under the campaign overview it shows "device breakdown". This displays either computers or mobile devices with respective statistics.

    It would be great to click the respective device group and display the users associated with this device type, or at least have the ability to see this information somewhere such as results.

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  8. Campaign Overview Dropdown Filter should have "Not Completed"

    All other options are in the drop down filter. "Not Completed" which is the most important for managing open campaigns is not available in the Campaign quick view.

    5 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  Flag idea as inappropriate…  ·  Admin →
  9. Export Reports to PDF in Current View

    I see that the option is now available to export Phish Threat reports to a CSV.

    It would be great for reporting and records purposes if we also had the option to Export as PDF in Current View, similar to the Export PDF of Current View option that is available when viewing DLP Events Logs.

    Currently exporting the CSV file spits out all the possible data on a campaign, including irrelevant data (such as in General Phishing campaigns, the CSV report includes fields for Attachments and Credential Harvesting). Exporting the Current View would be much more helpful for reporting and…

    8 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  10. Report for what training courses users have taken

    Need a report to show which training courses each user has taken so we can know what to assign for future campaigns.

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  11. Add more Ways to install the Report Message Addin

    For office 365 tenants that do not have Office 365 ProPlus. Please create a msi or EXE installer that can install the Report Message Addin.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  12. Thai Language content

    If possible I request Thai language content both Phishing and Training campaign

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  13. Ability to manually add "reported" phishing email by user

    Ability to manually add "reported" phishing email by user

    15 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    3 comments  ·  Flag idea as inappropriate…  ·  Admin →
  14. Cleaning Up The Links For Phish Threat Training

    We're reaching out regarding an issue with the Phish Threat product. The training campaigns work just fine except that the link within the enrollment email shows a URL that looks illegitimate to end users. We deployed it to one of our clients and they thought that the training was a phishing spam. The same issue occurred when looking at the URL on the Training landing page. Is there a way that can be cleaned up so that the URL's for the Phish Threat product don't look like the very spam we're training users to avoid?

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  15. Order of training videos

    Hello. It would be really cool if we could arrange the order of training in the Sophos Phish Threat application. We are using that for out annual security training and would like to present 4 training videos to our users in a particular order. Thanks!

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  16. Remove users from in-progress campaigns

    We should be able to remove users from running campaigns as our training campaigns could run for weeks and people can leave the organisation during the campaign.

    14 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  17. Export and Import the customized attack template between tenants

    As SaaS Provider of Phish Threat, they would like to share the same customized attack mail template between multiple tenants. Therefore, export/import feature is necessary for avoiding customizing per each tenant.

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  18. Be able to add custom valid domains

    In the fishing campaigns we are limited to the domains you guys offer, most are not even close to my employers name or tools we use.
    most of our users are well educated on security, so I like to step it up and sent phishing campaigns more elaborated with domains I can add myself, like any other fishing tool.
    thanks

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  19. Emailed certificate once training is complete

    In V1 there was a certificate of completion emailed to each user, once the training had been completed, will that come in V2 as well? It would be good for tracking purposes within our organization.

    10 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  20. Landing Page - No Training Option

    We would like to be able to let the user know that they have made a mistake by opening the attachment on the attachment campaign but we do not want them to be enrolled in training as it is too Americanised for us and we already have our own cyber security training.

    Is there a way to send them the caught page with no training, or send them the caught page and add our own training.

    23 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos ID New Sophos ID
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Phish Threat

Categories

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.