Team: Huntress Managed Security Awareness Training (SAT)
Product: Phishing
Environment: SAT Portal
Summary: The Microsoft Report a Phish Button add-in can be used to allow Huntress Managed SAT phish emails to be sent directly to the SAT portal and recorded as a reported phish email.
This is currently in Beta. If you would like access to this feature, please reach out to the Huntress support team or your Huntress account rep.
The Microsoft Outlook Ribbon Report a Phish Button add-in provides users of Huntress Managed SAT with a method to report suspected phishing messages. Reporting simulated phishing emails originating from Huntress results in an immediate message congratulating the learner and a record in Huntress platform to include in reports. Messages that are not simulated phishing sent by Huntress are forwarded to the email address designated in the administrator portal.
Requirements
Installation
Updating to a New Version
End User Experience
Removal / Reinstallation
Requirements
Currently only Outlook on the web and new Outlook on Windows are supported.
Note: Only licensed Microsoft 365 accounts are supported for use of the integrated Outlook Ribbon Report a Phish button.
Installation
- Log in to your administrator portal at mycurricula.com. If you are an MSP channel partner, drill down into the customer organization.
- Access the Admin Settings page and navigate to Settings > Phishing.
- Locate the Report Phishing Service section. Here you will find the Report a Phish Button Add-in for Outlook install information.
- Accept permissions required for the add-in by clicking the Accept Microsoft Permissions button - this will open a consent page in a new browser tab. Only a Microsoft 365 admin for your organization will be able to authorize consent. If consent is not authorized here, you will be required to authorize consent during installation.
- A new tab will open for the Microsoft permissions request page. Log in with your Microsoft 365 admin account. Review the required permissions and click Accept.
- On successful authorization, you will be redirected to the Authorization Complete page.
- Return to your Huntress Managed SAT Curricula admin portal Settings page. Click Download installation manifest to download the HuntressLabsRAPManifestRB.xml manifest file for manual installation. This will generate an installation manifest unique to your organization. MSP channel partners must drill into individual customer organizations to download the correct manifest.
- Log in to your Microsoft 365 admin center and go to the Integrated Apps manager ( Settings > Integrated Apps ). Click on the Add-ins link. Alternatively, you can access the Add-ins manager directly.
- Once in the Add-ins manager, click Deploy Add-in.
- A window for the Centralized Deployment service should now be displayed. Review and click Next.
- Click on Upload custom apps.
- Choose I have the manifest file (.xml) on this device and click Choose File to select the HuntressLabsRAPManifestRB.xml file you downloaded. Click Upload to upload the manifest to be deployed.
- On the Configure add-in screen, choose which users can access the add-in button and the method you want to use to deploy the add-in. It is recommended to use the default Fixed method for deployment and to allow all users access to the add-in. Click Next.
- Review the add-in permissions and click Save.
- A screen confirming deployment of your add-in should display. Please note that it can take up to 24 hours for the add-in to be completely deployed to your users.
- Installation is now complete. You may now Close the pop-up window or continue to the next screen to review additional tips for your deployment.
Updating to a New Version
New features for this add-in may require an updated manifest to be uploaded and deployed. New versions will be available for download on the Huntress Managed SAT admin portal as they are released.
- Log in to the Huntress Managed SAT admin portal and download the updated manifest file.
- Log in to your Microsoft 365 admin center and go to the Add-ins manager page.
- Select the Huntress Labs Report a Phish add-in to display a configuration window.
- Click Update add-in on the bottom right hand corner of the window.
- On the Update Huntress Labs Report a Phish pop-up, select I have the manifest file (.xml) on this device and click Choose File.
- Select your new manifest file and click Update. Please note that updates may take up to 72 hours to be deployed to your users.
- You may be required to re-authorize permissions in order to use the update. This can be done on the Huntress Managed SAT admin portal Settings page.
End User Experience
Upon clicking the ribbon button, users will be prompted to confirm that they believe the email to be malicious in nature and phishing, rather than spam.
This will result in one of two follow up messages:
If the email is a simulated phishing email from Huntress, the user will be congratulated on their success and the reported phish will be logged.
If the email is not a simulated phishing email from Huntress ,the user will receive a message stating the phish was reported, and the message was successfully reported as malicious.
Removal / Reinstallation
- Log in to your Microsoft 365 admin center and go to the Add-ins manager page.
- Select the Huntress Labs Report a Phish add-in to display a configuration window.
- Click Remove add-in on the bottom right hand corner of the window.
- Click Remove on the confirmation pop-up.
- Confirm it has been removed by refreshing and double-checking the Add-ins page before attempting to re-install the XML manifest file.
- To re-install the manifest file, refer to the steps in the Installation section.