Flexibility to add recovery training for clicks
T
TJ Caldwell
I understand that clicking isn't an immediate failure/compromise in phishing campaigns. But in recent weeks, I've seen multiple instances of malicious remote access tools getting installed from opened attachments. Being able to choose whether or not recovery training goes out on clicks or compromise would be a nice feature for some clients who are a little more security conscious than others.
G
Graeme Camp
+1 on this, we have had a few of our customers asking about if this is a possibility to get manager notifications/training when a user clicks. We have seen instances before of M365 session hijacks using a compromised 3rd party SharePoint document that has a malicious URL in the doc that when clicked on then steals their session token.
Dima Kumets [Product Manager - Huntress]
Intersting - are they getting something executable via email? A doc with a link?