AI TOOL PROFILE

PhishingBox: Phishing Simulation and Security Training

PhishingBox helps businesses and MSPs run simulated phishing attacks and deliver security training. It supports teams needing to quantify human risk and manage data residency in the US or EU.
  • Security
  • Security Awareness Training
  • Mid-market companies
  • Enterprise companies
  • Managed Service Providers (MSPs)
  • Security resellers
  • Organizations with US or EU data residency requirements

Pricing

Annual plans start at $825/year for the Standard tier. Additional email-based pricing ranges from $0.56 to $1.75 per email depending on volume. A 14-day free trial is available.

At a glance

Best for
Mid-market companies, Enterprise companies, Managed Service Providers (MSPs), Security resellers, Organizations with US or EU data residency requirements
Key use cases
Employee Vulnerability Assessment, Just-in-Time Security Coaching, MSP Client Management, Threat Reporting Workflow
Integrations
Microsoft, Google Workspace, OpenAI, Anthropic, Litmos
Visit phishingboxphishingbox software interface screenshot

How AI is used

PhishingBox is a security awareness platform designed to help organizations test employee resilience against social engineering. It combines a phishing simulator with an integrated Learning Management System (LMS) to provide coaching when a user fails a simulation.

The tool supports a range of users, from small businesses to enterprises, as well as Managed Service Providers (MSPs) and resellers who require multi-client management capabilities. It uses risk scoring to identify users who may require additional attention.

Beyond simulation, the platform includes tools for threat reporting and mitigation, such as an email scanning plugin and a centralized security inbox. This is designed to help security teams manage reported suspicious emails and analyze threat patterns.

Buyers should confirm which plan tier they need, as features like the LMS, AI-assisted triage, and the Security Inbox are available in the Professional and Enterprise tiers.

Key Features

  • Phishing Simulator

    Supports running phishing campaigns using a library of templates and landing pages.

  • Integrated Learning Management System

    A SCORM-compliant LMS for delivering cybersecurity courses, supporting built-in and third-party content.

  • KillPhish AI

    An email plugin that helps users report suspicious emails and uses AI for assisted triage and analysis.

  • Security Inbox

    A tool for security operations to manage reported emails, research threats, and apply blocklists.

  • AI-Driven Risk Scoring

    Analyzes behavior signals and simulation results to highlight users who may need more coaching.

  • Callback Phishing

    Supports testing beyond email to include voice-based social engineering scenarios.

  • Data Residency Options

    Offers a choice between hosted infrastructure in the United States or the European Union.

Use Cases

  • Employee Vulnerability Assessment

    Running phishing tests to identify staff members who interact with simulated malicious links.

  • Just-in-Time Security Coaching

    Delivering training moments and remedial courses to users after they fail a phishing simulation.

  • MSP Client Management

    Using multi-client capabilities to manage security awareness and phishing testing for multiple external customers from one system.

  • Threat Reporting Workflow

    Providing employees with a reporting tool and using a security inbox to triage and mitigate reported threats.

Integrations

  • Microsoft
  • Google Workspace
  • OpenAI
  • Anthropic
  • Litmos
  • Cornerstone
  • Bridge
  • Captivate

FAQ

What are the different pricing plans for PhishingBox?

PhishingBox offers Standard ($825/year), Professional ($1,196.25/year), and Enterprise ($1,567.50/year) annual plans, with additional costs based on the number of emails sent.

Can PhishingBox be used by MSPs?

Yes, PhishingBox includes multi-client capabilities designed for auditors and MSPs to manage multiple clients from one system.

Does PhishingBox support data residency outside the US?

Yes, the platform provides hosted regional infrastructure options in both the United States and the European Union.

Can I use my own training content in PhishingBox?

Yes, PhishingBox supports SCORM-ready content and allows users to redirect targets to third-party hosted training pages.

Source category: Security

Source subcategory: Security Awareness Training

More tools in Security

Other published listings in the Security category.

Browse all tools in Security

More tools in the Security Awareness Training software type

Related listings that share the same software type for comparison and shortlisting.

Browse all Security Awareness Training software type tools