Very easy to setup. We are using the PhishER Plus and it's great for building more realistic scenarios. That in turns provides much more valuable training. Review collected by and hosted on G2.com.
It takes a few times to make sure you haven't missed any steps in the setup but once you do you are golden Review collected by and hosted on G2.com.
Video Reviews
485 out of 486 Total Reviews for KnowBe4 PhishER/PhishER Plus
Overall Review Sentiment for KnowBe4 PhishER/PhishER Plus
Log in to view review sentiment.
It automates our analysis of phish alerted emails and frees up the helpdesk to focus on more important tasks. It's great for quickly responding to the user especially if they reported spam or a clean email. Not so much for threats though. There are false positives. Review collected by and hosted on G2.com.
The false positives on threat emails and how it quickly purges or "phish rips" them from everyone's email is both a blessing and a curse. If it gets it right it's great. In our experience about 20% of the time it misclassifies a safe email as a threat and then purges it from the whole company. Then the helpdesk has to go in and undo everything. It's a lot of extra work. Review collected by and hosted on G2.com.
PhishER is the natural companion to the PhishAlert button. We can't respond to every submission, and we don't want copies of potentially malicious emails sent to IT. PhishER gives us an outside mailbox that submissions go to so they can be analyzed and responded to automatically. You hope that the tool concludes that most if not all submissions are clean or even spam, but in the event the PhishER machine learning or VirusTotal scanning of links and attachments that indcate a threat, the tool can alert the submitter, your IT team, and take action to search for the same email across your mail server to pull them before anyone else has a chance to interact with it. We encourage our users to PhishAlert anything suspicious because they might not be the only person that received a malicious email, so reporting it first and getting all copies pulled fast can save the company. But let's face it, most submissions are benign, but at least users are getting immediate automated responses to their submissions that take manpower out of the equation. Submit all you want, I just need to be alerted to potential threats. PhishER has easily paid for itself. Review collected by and hosted on G2.com.
The VirusTotal integration relies on the customer getting an API key. The free account API key has a limitation on polls per day that we often experience when there's been a lot of submissions. Paid VT accounts are cost prohibitive and there's no alternative. Review collected by and hosted on G2.com.
I like the product because it does a pretty thorough job of reviewing emails sent in by our user base and if there is a known threat included in the submitted email, it will mark it as a threat. PhishER will also do the same for spam emails. If it doesn't know then it will sit in the inbox and let me classify it manually. Honestly it's usually able to drop down the amount of emails I need to review manually by at least 85%. It helps me save a lot of time for other things, as well as gets the clean emails back to the users in a more timely fashion.
Software is super to easy to install and use. Knowbe4 Support will jump on the phone with you and walk you through the rules process. I think it's pretty easy to set it up yourself, but they will set up a call as soon as you purchase. Review collected by and hosted on G2.com.
The only negative thing I have to say is that with the PhishRIP part of PhishER. The phishRIP does great, however once an email goes into that phishRip process, the report dashboard doesn't indicate which rip process is for which email. So it makes it a little difficult to trace sometimes. Review collected by and hosted on G2.com.

The ability to review critical information, including VirusTotal results, Mail Header, etc. in a single interface is crucial to be able to respond. Having all the important information and tools in place is fantastic! The user interface makes it easy to use and navigate. KnowBe4 support is there to help implement and integrate seamlessly. I use this tool daily and it is a critical part of our Security and Response Stack. Review collected by and hosted on G2.com.
I do wish it would group together the same email reported by many users to reduce clicks and administrative time. Review collected by and hosted on G2.com.

KnowBe4 is crucial in training and testing our users for phishing and cyber security concerns. Our users are engaged with the platform and view it as something more social and game-like than a dry required training. KnowBe4 has fostered a culture of healthy paranoia and good-hearted shaming among users. PhishER provides the additional layer of being able to investigate and automate the messages users are reporting with the skills they have learned.
The automation for how reported messages are handled, including the ability to scan with VirusTotal and PhishRip messages allows a faster and more in-depth response than trying to keep up with checking messages manually.
We appreciate the ease of setup and integration with Microsoft platforms. Customer support, product feedback, beta testing, and account representative checking in have all been phenomenal. Review collected by and hosted on G2.com.
The downside is that users can become slightly over-aggressive in reporting messages as phishing. From a security perspective, it is probably better to err on the side of caution, but from an IT perspective, it can create more work to restore legitimate messages that are needed. Review collected by and hosted on G2.com.
PhishER has done a fantastc job categorizing emails for our organization.
An email considered to be " clean " is sent right back to the user after inspection.
The most important piece to PhishER for our organization is the PhishRIP feature.
Any email considered to be a threat is then ripped from all user mailboxes within the organiation.
This allows the end user to play a role in cyber security becoming a valueable asset as well. Review collected by and hosted on G2.com.
Honestly I'm not sure that I have a downside.
I would like to see further improvement on emals categorzied as " unnkown"
As of now any email categorized as unknown we leave for admin review and notify a member of the IT team. Review collected by and hosted on G2.com.

We use Microsoft Office 365 in our organization and the simple and easy integration using the Phish Alert Button (PAB) with BOTH the Oulook client and Web Clients allows any of our users to report emails to us. Once they've been submitted we can create automations to classify emails without us having to get involved. Once it's been submitted and classified, we can then run a query to see who else may have received said email and quarantine it and then delete it from anyones mailbox preventing anyone from taking any action on it.
Should you ever have any issues, customer support is super easy to work with and will always find a way to solve one of your issues. Review collected by and hosted on G2.com.
There really isn't much to NOT like! The only complaint that I have is that the service can run slow sometimes and on occasion, you can't find any emails when running a query, but that can be easily rectified by altering the search parameters. Review collected by and hosted on G2.com.

Easy for our users to submit emails that they are unsure about.
Rapid feedback to users about the determination of their submission.
Works on many clients. Good Integration with Outlook and Entra ID.
Saves our SOC team hours per week from investigating potential phishing emails.
Helps our security team to close out cases in a timely way.
PhishRip is great at removing confirmed phishing emails from other users who may have received it. Limiting the potential damage. Review collected by and hosted on G2.com.
It was challenging to setup and required a KnowBe4 TAM. Our team felt like they didn't understand it enough to make adjustments or troubleshoot once setup and required a follow up engagement.
SOC team would like a more intuitive experience when manual determinations need to be made on a submission. Review collected by and hosted on G2.com.
Determining if an email is safe or not can be difficult these days. The PhishER takes the burned off my employees and allows them to submit messages and get a near real-time response. Review collected by and hosted on G2.com.
The AI engine at times can erroneously grade a message incorrectly. That said have seen this significantly improve over the past 30-60days. Please keep up the enhancements! Review collected by and hosted on G2.com.
The phish report button in Outlook sends the email straight to Phish ER which automatically checks the email lets the end user know if its a clean email or if it was part of a phishing simulation. Review collected by and hosted on G2.com.
Slightly hard to manage at first until the policies are set to how you want and the admin overhead can be a challenge at first if you tell all users to report suspicious emails in this manner. Review collected by and hosted on G2.com.