Operations & IT Manager at Clinton Polley Insurance Brokers
Best Practices for Admins Evaluating Suspicious Emails - Tools Used?
What tools are admins using to evaluate suspicious email? I've used virustotal.com quite a bit but are seeing a lot more obviously malicious links come up clean.
Hi Matt, I am G2's cybersecurity research analyst.
Shana is correct her description of PhishER. KnowBe4 also has a phishing-specific solution called KnowBe4 Phishing Security Test which can be seen here: https://www.g2.com/products/knowbe4-phishing-security-test/reviews
In addition, and for non-training purposes, I would suggest an Anti-spam tool. There are many products listed here: https://www.g2.com/categories/email-anti-spam
These tools will provide more granular control over what is and is not tagged as suspicious. Many of those tools are free and if you are considering a new solution, there are a number of professional-grade antispam solutions that have native integration with security and phishing training tools. Webroot, Proofpoint, and Barracuda are a few that come to mind, but there are definitely more options available.
Hope this helps!
If you can view the emails then you can already do 99% of the evaluation. As long as you understand what the risks look like you can make a pretty good judgement there and then.
To assist with making that judgement, using tools like KnowBe4 to give you and or your staff training can help in identifying risky emails. Plus KnowBe4 can also do testing via emails and phone calls too.
I do at times use a sandbox environment to open suspicious links just in case I feel like double checking, or seeing what the other party is attempting to. The 1903 and up version of Windows 10 now has a SandBox environment built in.
KnowBe4 - with their platform you can simulate phishing e-mails which can be randomly sent to your employees. You are able to monitor who click on the threat in the mail and system can then automatically assign to those people an educational video - awareness training. And what is good they have the mails and videos available in a lot of languages. Which is great for international companies.
KnowBe4 has a product called PhishER that ties in nicely with their awareness training. It uses VirusTotal in its research of emails reported by employees via the PhishAlert button. It's easy to administer and helps with identifying threats.
As the world's largest security awareness and compliance training and simulated social engineering product, KnowBe4 empowers organizations to transform their employees into a strong line of defense ag
With over 2.5 million reviews, we can provide the specific details that help you make an informed software buying decision for your business. Finding the right product is important, let us help.