“Plus gives you access to KnowBe4’s curated/confirmed list of phishing and threat emails as reported by other customers. That way if another organization reports something, KnowBe4 confirms it, then publishes to their global list so any customers with Plus automatically scan their inboxes for that same message.”
“We're having issues with false positives with knowbe4 phishing testing that are taking a while with their support to sort through. And with automated remedial training for failures people who weren't failing tests were getting lumped into the remedial group and getting bent out of shape.”
“The best knowledge I have on KnowBe4 is that they bill annually and discounts are based on individual customer size vs MSP aggregate usage. I get that this works well for large enterprise but think we're more MSP friendly.”
“The first phishing attempt was so amateuristic that we identified it imediately and afterwards everybody in IT just made a rule containing the knowbe4 smtp server to get auto dumped into spam. 6 weeks later we get an email saying we need to follow a training.”
“Recently, we transitioned from Knowbe4 to Bullphish. Based on what we've seen so far, Bullphish has better reporting tools and a friendlier interface than Knowbe4.”
“We went with Knowbe4 in the long run. Was a pain like u/Spug33 said with it fighting our recently migrated 365 mailbox rules, but once we got it configured (and reporting correctly on who ACTUALLY clicked the email) it does the job.”
“I use KnowBe4 and PhishER, but not PhishER+, yes. I’m possibly going to upgrade to + soon. I’m trying to automate more and the global blocklist feature of + might just hit the nail on the head for me.”
“We just made the switch from Safetitan to Knowbe4 last week. From what we have seen, Knowbe4 has better report capabilities and the UI is much better than Safetitan’s.”
“+1 for Ninjio. Timely, polished 5-minute monthly training videos that don’t suck and a good variety of phishing simulations price-competitive with KnowBe4.”
“I looked at Mimecast's offering, but they only had a fraction of the templates/categories compared to KnowBe4. How many templates/categories does Defender come with?”
“I have used knowbe4 for almost 4 years it never disappoints. Easy to setup campaigns and by adding the phish report tool to outlook you get the work done by each user”
“It's OK...We had a weird quirk with the Knowbe4 phishing addin for Outlook where users couldn't send emails. Went round and around trying to figure it out until I came across some vague ass forum from a decade ago that hinted that the issue was caused by their phishing addin.”
“Been with knowbe4 for several years, use them mostly for monthly employee training videos and whisking tests. Works well, find that new content is slowing down, but when we compared them to several other vendors recently, they were still half the price of the next closest vendor.”
“We are looking at adding cyber training and Phishing protection. Currently looking at KnowBe4 with PhishER Plus addon or Graphus with Bullphish. We are small shop of less than 200 employees using M365 Exchange Online.”
“They are considered a gold standard in training. They have a reporting dashboard. Great support and a good product. I never used them; our company was cheap.”
“Knowbe4 is pretty simple. It has canned templates and training, and handles most of the work for you. The hardest part is making sure you configure your email edge to not block or quarantine their emails or nuke their links.”
“The bigger concern for me was once it is in the PhishER platform, there is an option to scan attachments and URLs with VirusTotal. If you had sensitive info in an attachment it may be stored in their system.”
“The main concern with integrating PAB is that some users might (will) report legit emails. If those emails hold some sort of protected or sensitive information then you've just sent a copy to KnowBe4.”
“I’ve never used KnowBe4. Just wanted to mention that the [email filter](https://trustifi.com/) we use makes exceptions pretty simple and straightforward to implement.”
“We use the KnowBe4 phish button with PhishER. It is an excellent tool if you configure it in an intelligent manner. It helps a lot with gaining visibility into how well your filtering is doing and what is making it through so you can investigate why.”
“I wanted to set up KnowBe4's phish alert button (pab) but when i did so I noticed it required very broad gmail api access, full read, write, delete etc. I tried to do some digging on their [security overview page](https://www.knowbe4.com/security) to see if I could get some more details on this tool specifically but couldnt find anything.”
“I use Google Workspace and InfoSec IQ and we did just that. It wasn't all that difficult to download a CSV of the 171 phishy domains and then copy paste them into an allow list rule in Google Workspace.”
“We ended up switching to BreachSecureNow and never looked back. The training can have cheesy videos sometimes, other times they are hilarious and catchy.”
“When we went to them to cancel they were super smug, literally said that isnt their problem, here are the T&Cs. We got involved with their legal team who refused to budge.”
“The best thing we found for knowbe4 was the automation once setup including remedial training. Once configured it runs itself charge monthly management fee and sent a report to clients then once a year charge a renewal fee and you update the training content and let it do its thing for another year.”