Allow Listing CyberHoot in Sophos EndPoint Protection

1st May 2025 | HowTo, MSP, Technology Allow Listing CyberHoot in Sophos EndPoint Protection

When Phish testing environments where Sophos EDR is present, you will need to enable allow listing and add the CyberHoot addresses.  Otherwise the Website Management defenses will intercept any attempt to click on a link taking you to a nefarious phish testing website.

There are three steps to accomplish this as shown in the graphic above.

  1. From Sophos Central, click on “Global Settings”
  2. From Global Settings, click on “Website Management”
  3. From Website Management, click on “Add” and then define the domains, individual IP addresses, or CIDR for CyberHoot as outlined in the article below.

                    CyberHoot Mail Relays to Add to your Allow-Lists

Latest Blogs

Stay sharp with the latest security insights

Discover and share the latest cybersecurity trends, tips and best practices – alongside new threats to watch out for.

Hackers steal your cookies. Chrome may help stop Session Cookie Theft!

Hackers steal your cookies. Chrome may help stop Session Cookie Theft!

Google has built and released a new cookie protection measure that makes stolen session cookies useless on any...

Read more
AI Found Your Weaknesses. Let’s Fix Them First.

AI Found Your Weaknesses. Let’s Fix Them First.

New benchmark data names MDASH and Claude Mythos Preview are the top AI agents finding zero-day vulnerabilities...

Read more
Your Identity Is Not Only a Front-Door Problem, It is an Internal Risk Too

Your Identity Is Not Only a Front-Door Problem, It is an Internal Risk Too

One Forgotten Password, Almost a Catastrophe A single Windows machine at a retail store location had a cached...

Read more