Product - Abuse Mailbox - Abnormal Security

Automate
Your Abuse
Mailbox

Save time with AI-driven analysis, investigation and auto-remediation of employee-reported phishing emails.

Automate Your Abuse Mailbox

Save time with AI-driven analysis, investigation and auto-remediation of employee-reported phishing emails.

Next-Gen Inbound Protection + mSOAR Capabilities to Automate Your Abuse Mailbox

With Abnormal’s Abuse Mailbox, we apply our AI-powered inbound protection technology to pass judgement on employee-reported phishing emails. Abuse Mailbox automatically determines if an email, whether it’s a standalone message or a part of a coordinated campaign sent to multiple employees, is safe or malicious.

All malicious employee-reported emails are auto-remediated from the employee’s inbox, giving analysts built-in mSOAR (email Security Orchestration, Automation and Response) capabilities.

With Abnormal’s Abuse Mailbox, we apply our AI-powered inbound protection technology to pass judgement on employee-reported phishing emails. Abuse Mailbox automatically determines if an email, whether it’s a standalone message or a part of a coordinated campaign sent to multiple employees, is safe or malicious.

All malicious employee-reported emails are auto-remediated from the employee’s inbox, giving analysts built-in mSOAR (email Security Orchestration, Automation and Response) capabilities.

Pulls all employee-reported phishing emails into one place

Automatic judgement via Abnormal’s signal detection

Auto-remediates malicious email campaigns

Integrates with ServiceNow, Splunk, Demisto and more

Product Capabilities

See what enables Abnormal to uniquely respond to employee-reported phishing

Automation that you can see

Automatically Triage Employee-Reported Email

Abuse Mailbox monitors for phishing emails reported by employees, groups them into campaigns, and filters out incorrectly reported emails (safe emails) to help security teams respond to real attacks faster.

Automatically Triage Employee-Reported Emails

Abuse Mailbox monitors for phishing emails reported by employees, groups them into campaigns, and filters out incorrectly reported emails (safe emails) to help security teams respond to real attacks faster.

Powerful Dashboard and Reporting Capabilities

Analysts can quickly view quantitative highlights of the submission breakdown between malicious, safe and spam messages, as well as remediated campaigns and messages. Additionally, Abuse Mailbox provides downloadable PDF and CSV reports with custom date ranges, especially useful for an executive audience.

Powerful Dashboard and Reporting Capabilities

Analysts can quickly view quantitative highlights of the submission breakdown between malicious, safe and spam messages, as well as remediated campaigns and messages. Additionally, Abuse Mailbox provides downloadable PDF and CSV reports with custom date ranges, especially useful for an executive audience.

Multiple Remediation Options

Abuse Mailbox supports marking campaigns as safe, moving malicious emails to a junk folder or a ‘Permanently Delete’ remediation option for analysts that want to remove entire campaigns from users’ inboxes for both O365 and GSuite.

Multiple Remediation Options

Bulk Remediation Across Tenant​

Abuse Mailbox supports marking campaigns as safe, moving malicious emails to a junk folder or a ‘Permanently Delete’ remediation option for analysts that want to remove entire campaigns from users’ inboxes for both O365 and GSuite.

Security Workflow Integration

Abuse Mailbox integrates with SIEM/SOAR tools such as Splunk, LogRhythm, QRadar, Demisto and others as well as existing ticketing systems such as ServiceNow.

For organizations that have an existing end-user phishing report workflow, Abuse Mailbox integrates with Cofense/PhishMe and KnowBe4 buttons, as well as the native Microsoft O365 ‘Report Message’ button.

White Paper

Augmenting Your O365 Email Security

Report

Q3 Quarterly BEC Report

Datasheet

Cloud Email Security Platform

Want to learn more?

Schedule a personalized product demo to see:

  • Threat analytics, insights and reporting
  • Automated Triage, Investigation and response tools
  • Platform integrations into SIEM, SOAR 

…and more

Threat analytics, insights and reporting

Want to learn more?

Threat analytics, insights and reporting

Schedule a personalized product demo to see:

  • Threat analytics, insights and reporting
  • Automated Triage, Investigation and response tools
  • Platform integrations into SIEM, SOAR 
  • …and more