Connect existing Report Phishing buttons to AutoPhish
If your company already uses a phishing-reporting button from another email-security vendor, AutoPhish can ingest those reports when the vendor can forward a copy of the reported message to an email address. For now, use this destination address: report@autophish.io This article covers providers where that forwarding path is documented: Proofpoint PhishAlarm Mimecast Email Incident Response Trend Micro Email Reporting Before you begin Make sure you have: an administrator acFew readersSet up Microsoft 365 Directory Sync (Beta)
Beta feature: Microsoft 365 Directory Sync is currently in beta. Review the sync history after setup and after making changes to groups, permissions, or verified domains. Microsoft 365 Directory Sync connects AutoPhish to Microsoft Entra ID. You select Microsoft 365 or security groups, and AutoPhish creates a corresponding target list for each group. The synchronization is one-way: Microsoft Entra ID → AutoPhish Each generated target list is an exact mirror of the group’sFew readersSet up on-premises Active Directory sync
AutoPhish can mirror the complete membership of selected on-premises Active Directory groups into managed target lists. A signed PowerShell tool runs inside your Windows domain and sends complete group snapshots to the AutoPhish public API over HTTPS. AutoPhish never connects inbound to your domain controllers, and the ZIP file never contains your API key or Active Directory credentials. Beta: On-premises Active Directory sync is currently a beta feature. How it works ActiveFew readers