Introducing G2.ai, the future of software buying.Try now
Matt S.
MS
Operations & IT Manager at Clinton Polley Insurance Brokers

Best Practices for Admins Evaluating Suspicious Emails - Tools Used?

What tools are admins using to evaluate suspicious email? I've used virustotal.com quite a bit but are seeing a lot more obviously malicious links come up clean.
4 comments
Looks like you’re not logged in.
Users need to be logged in to answer questions
Log In
Aaron M.
AM
Principal Research Analyst, Cybersecurity at G2
0
Hi Matt, I am G2's cybersecurity research analyst. Shana is correct her description of PhishER. KnowBe4 also has a phishing-specific solution called KnowBe4 Phishing Security Test which can be seen here: https://www.g2.com/products/knowbe4-phishing-security-test/reviews In addition, and for non-training purposes, I would suggest an Anti-spam tool. There are many products listed here: https://www.g2.com/categories/email-anti-spam These tools will provide more granular control over what is and is not tagged as suspicious. Many of those tools are free and if you are considering a new solution, there are a number of professional-grade antispam solutions that have native integration with security and phishing training tools. Webroot, Proofpoint, and Barracuda are a few that come to mind, but there are definitely more options available. Hope this helps!
Looks like you’re not logged in.
Users need to be logged in to write comments
Log In
Reply
Artur R.
AR
Group IT Manager at EMPR Group Holdings Pty Ltd
0
If you can view the emails then you can already do 99% of the evaluation. As long as you understand what the risks look like you can make a pretty good judgement there and then. To assist with making that judgement, using tools like KnowBe4 to give you and or your staff training can help in identifying risky emails. Plus KnowBe4 can also do testing via emails and phone calls too. I do at times use a sandbox environment to open suspicious links just in case I feel like double checking, or seeing what the other party is attempting to. The 1903 and up version of Windows 10 now has a SandBox environment built in.
Looks like you’re not logged in.
Users need to be logged in to write comments
Log In
Reply
Andrea G.
AG
Deputy CEO at Performia International AB
0
KnowBe4 - with their platform you can simulate phishing e-mails which can be randomly sent to your employees. You are able to monitor who click on the threat in the mail and system can then automatically assign to those people an educational video - awareness training. And what is good they have the mails and videos available in a lot of languages. Which is great for international companies.
Looks like you’re not logged in.
Users need to be logged in to write comments
Log In
Reply
Shana H.
SH
Technology Security Officer
0
KnowBe4 has a product called PhishER that ties in nicely with their awareness training. It uses VirusTotal in its research of emails reported by employees via the PhishAlert button. It's easy to administer and helps with identifying threats.
Looks like you’re not logged in.
Users need to be logged in to write comments
Log In
Reply