Phishing Defense levels up: reporting a phish now counts

  • Chris Vandermarel

Your phishing campaign results tell you who fell for it. They say nothing about the employee who smelled something fishy, hit the report button, and got on with their day.

That employee is the whole point of security awareness training. Meet Reporter, the newest part of Phishing Defense, built to give them the credit they've earned.

Report from the inbox, get credit in the dashboard

When an employee reports a simulated phishing email using the report button already built into Gmail and Outlook, Ethena catches it, and that report shows up in your admin portal.

On a recent demo, an IT leader asked us: "So you get a specific phish button for Ethena, as opposed to the regular Google one?" Nope, and that's the point. The regular one is the button that counts. Nothing for employees to install. Nothing new for them to learn.

A new Flagged status appears alongside delivered, opened, and clicked, per campaign and per employee, so you can report on the positive behavior instead of just the slip-ups.

The behavior you're actually trying to build

Nobody runs phishing tests to catch employees clicking. You run them to build a workforce that pauses, checks the sender, and reports what looks off. Until now, that instinct was invisible in your results: an employee who reported your test email looked exactly like one who ignored it.

It's the ask we kept hearing from IT leaders, almost verbatim: "Is there a way to see that someone saw it, didn't click on it, and actually reported it?" Now there is. Reporter makes the right behavior measurable, your next security review gets a new stat worth sharing, and your most vigilant employees stop being a rounding error.

Click data you can trust

If your security stack pre-scans links, you've probably had "clicks" that were really a scanner doing its job, inflating your failure rates and making results hard to defend. Phishing Defense now screens out scanner pre-loads, so click rates reflect materially more of what humans actually did.

Part of Phishing Defense

Reporter joins a phishing toolkit that already works hard:

  • Realistic tests, minus the busywork: Simulator builds campaigns from 100+ real-world templates with randomized, staggered delivery, so your cover isn't blown by everyone getting the same email at once.
  • Failure becomes a teachable moment: employees who click get remediation training assigned automatically.
  • One platform, one roster: phishing lives alongside all your compliance training, including Cybersecurity Awareness. No separate tool, no separate employee list, one dashboard.

Setup is a one-time IT task

Your IT team connects your Google Workspace or Microsoft 365 email to Ethena once. After that, reporting flows in on its own.

Give your employees credit

Reporter is live now for Ethena Phishing customers. Not running Phishing Defense yet? Let's talk.

Articles

View All

[Upcoming Webinar] Let’s Talk About Pay: Comp conversations in the AI era

Date/Time: Wednesday, September 30th @ 12pm ET / 9am PT Comp conversations are some of the hardest conversations, and most HR leaders are having it without a real playbook. Add...

2 min read

New features coming to Hotline & Case Management

New features are leaving beta in Hotline & Case Management. Each one takes a piece of that administrative work off your desk. Check your settings page once they are live...

< 1 min read

Where does your hotline sit on the AI maturity curve?

Twelve questions, three stages, and an honest answer about how much of your speak-up program still runs on people doing things by hand.

5 min read

Disclosures is here: run conflict of interest reviews where your compliance program already lives

Disclosures is rolling out to Ethena customers: campaigns that reach everyone, manager first review, and one triage queue for the compliance team.

2 min read