Below is a list of some of our integrations for PhishER. If you do not see the integration you are looking for, visit our API documentation to learn more about our API's capabilities. For more information on integrations for our other products, see our KSAT Integrations and Phish Alert Button (PAB) Integrations articles.
Note: These integrations are with third parties. We recommend contacting the third party if you need further help with an integration.
- Blumira is a cloud-based SIEM platform that uses Syslog to obtain PhishER data for security monitoring and incident detection. This integration allows you to centralize and analyze logs to detect and respond to threats.For more information, see the Blumira article Integrating KnowBe4 PhishER With Blumira.
- Cortex XSOAR is a SOAR platform that automates security operations and incident response. This integration allows you to send PhishER data to other connected platforms through XSOAR, automate manual functions, and send data back to PhishER to change attributes and add tags or comments. To learn about the benefits of this integration, see our Cortex XSOAR and KnowBe4 document.For more information, see our How to Integrate Cortex XSOAR with Your PhishER Platform article and XSOAR's PhishER article.
- CrowdStrike Falcon Sandbox is a platform that combines with CrowdStrike Falcon Intelligence's threat intelligence service to analyze files and URLs for malicious content. This integration allows you to submit files and URLs for analysis in a sandbox environment, and view a malware analysis report in your PhishER platform or your CrowdStrike Falcon platform. To integrate the CrowdStrike Falcon Sandbox with PhishER, you must have a PhishER Plus subscription and an active CrowdStrike Falcon Intelligence subscription. For more information, see our How to Integrate CrowdStrike with Your PhishER Platform article.
- FortiSOAR is a SOAR platform from Fortinet that automates your incident response management. This integration allows you to pull emails into PhishER to add and update tags, comments, and dispositions. For more information, see the PhishER integration documentation from FortiSOAR.
- INKY is a cloud-based email security platform designed to search for fraud and spot imposters by a pixel. This integration allows you to utilize the INKY reporting button and avoid false positives while still feeding reporting data to the KnowBe4 campaign. You can also send the email to your PhishER platform.For more information, see our INKY Phish Alert Button and PhishER Integrations article and the INKY article KnowBe4 & INKY Integration.
- Onyxia is a cybersecurity management platform that allows you to evaluate and organize your cybersecurity program. With this integration, you can send information from PhishER to Onyxia to get strategic cybersecurity program recommendations. For more information, see our Integrate Onxyia with Your PhishER Console article.
- Swimlane is a security operations management software that provides workflow tools, such as automated incident response. Their SOAR platform streams your incident response process by integrating your people, processes, and technology.For more information, see Swimlane's integration documentation.
- Tines is an automation platform that makes it easy for you to offload any of your monotonous workflows, giving you back time to increase your impact. You can connect to any REST API or web application in seconds.For more information, see our Tines and PhishER Webhook Integration article.
- VirusTotal is a service that inspects and analyzes files for malicious content. A VirusTotal scan is completed using over 70 antivirus scanners. If a file is submitted for a VirusTotal scan, the results will be shared publicly in the VirusTotal community. This integration allows the VirusTotal Public API to conduct scans in PhishER.For more information, see our How to Integrate VirusTotal with Your PhishER Platform article.
- Webroot provides the BrightCloud Web Classification and Web Reputation Service that uses machine learning-based intelligence to analyze URLs for malicious content. The Threat Intel feature for PhishER Plus is powered by an integration with this Webroot service. Threat Intel uses the Webroot API to allow PhishER to submit URLs for analysis, pull report data, and perform advanced search queries. For more information, see our Integrate Threat Intel with Your PhishER Console article.
- XM Cyber provides cloud security that helps organizations identify and fix security exposures in their networks. Its Security Control Monitoring (SCM) module provides you with insights into the configuration and activation of security controls. For more information, see our Integrating XM Cyber’s SCM with PhishER article.