Phish submissions
As part of your continuous email security posture, administrators and security analysts need to submit missed phishing samples to Email Security, so Cloudflare can process them and take necessary action.
Submitting missed phish samples to Cloudflare is of paramount importance and necessary for continuous protection. Submitting missed phish samples helps Cloudflare improve our machine learning (ML) models, and alerts us of new attack vectors before they become prevalent.
To submit a phish:
- Log in to Zero Trust ↗.
- Select Email Security.
- Select Settings.
- Under Phish submission, select View.
PhishNet is an add-in button that helps users to submit directly to Email Security phish samples missed by Email Security's detection.
To set up PhishNet O365:
- Log in to the Microsoft admin panel ↗. Go to Microsoft 365 admin center > Settings > Integrated Apps.
- Select Upload custom apps.
- Choose Provide link to manifest file and paste the the following URL:
- Verify and complete the wizard.
To set up PhishNet with Google Workspace you need admin access to your Google Workspace account.
- Log in to Google Workspace Marketplace apps ↗ using this direct link and an administrator account.
- Select Admin install to install Cloudflare PhishNet. Read the warning, and select Continue.
- You will be redirected to the Allow data access page, where you can choose to install Cloudflare PhishNet for Everyone at your organization, or Certain groups or organizational units. If you choose the latter option, you will have to select the users in the next step.
- After choosing the groups you want to install PhishNet for, agree with Google's terms of service, and select Finish.
- Cloudflare PhishNet has been installed. Select DONE.
You have now successfully installed Cloudflare PhishNet.
- In your Gmail web client, open the message you would like to flag as either spam or phish.
- Select the PhishNet logo on the side panel.
- Under Select Submission Type, select Spam or Phish.
- Select Submit Report.