Allow Listing CyberHoot in Sophos EndPoint Protection

1st May 2025 | HowTo, MSP, Technology Allow Listing CyberHoot in Sophos EndPoint Protection

When Phish testing environments where Sophos EDR is present, you will need to enable allow listing and add the CyberHoot addresses.  Otherwise the Website Management defenses will intercept any attempt to click on a link taking you to a nefarious phish testing website.

There are three steps to accomplish this as shown in the graphic above.

  1. From Sophos Central, click on “Global Settings”
  2. From Global Settings, click on “Website Management”
  3. From Website Management, click on “Add” and then define the domains, individual IP addresses, or CIDR for CyberHoot as outlined in the article below.

                    CyberHoot Mail Relays to Add to your Allow-Lists

Latest Blogs

Stay sharp with the latest security insights

Discover and share the latest cybersecurity trends, tips and best practices – alongside new threats to watch out for.

Microsoft Integrates Passkeys into Windows: is this the start of a Passwordless Future?

Microsoft Integrates Passkeys into Windows: is this the start of a Passwordless Future?

Let’s be honest, who hasn’t reset a password at least once this month? For decades, passwords have been our...

Read more
When You Become the Hacker: How Modern Attacks Trick You Into Hacking Yourself

When You Become the Hacker: How Modern Attacks Trick You Into Hacking Yourself

In a shift away from the usual “hack-meets-victim” narrative, a new kind of cyber-assault is emerging. One...

Read more
Domain Takedowns: How to Remove Fraudulent and Typo-squatted Domains and Websites

Domain Takedowns: How to Remove Fraudulent and Typo-squatted Domains and Websites

In cybersecurity, not all attacks happen through fancy malware or zero-day exploits. Some of the most effective...

Read more