ExchangeDefender Blog

ExchangeDefender SMS Proxy – Letting your clients txt your team’s email, phones, Slack, and Microsoft Teams.

Last Christmas we delivered ExchangeDefender SMS Proxy, a simple virtual number that can forward TXT messages to up to 5 other mobile devices. That beta release has been so wildly successful, all over the world, that three months later we’re using it to solve a much bigger problem:

Integrating client and vendor TXT messages into where your team works: mobile phones, email, Slack, and Microsoft Teams chat rooms.

The disruption that 2020 brought to our lives, businesses, and the way we communicate has been immense. Our mobile phones have become the default place for notifications from everyone we interact with – appointment reminders from every professional service you rely on, your airplane boarding pass, suspicious transaction notifications from your bank, every other web site txting you a short code to verify your identity – everyone is texting. Your business should too.

ExchangeDefender SMS Proxy has made that simple. No more relying on the lone “office cell phone” that multiple people share but nobody charges. No more hoping that some hack job of web services that someone setup years ago continues to work. No more worrying about legal implications – with no archiving, access, or supervision.

ExchangeDefender SMS Proxy answers all of those questions and does so for far less than a cost of monthly cell service. We also stand behind it with a full SLA and 24/7 support. Most importantly, we reliably deliver messages to where your staff is already working – be it a phone, email, Slack, or Microsoft teams.


Interested? Contact us today to get started! Learn more about ExchangeDefender SMS Proxy.

Signup for our ExchangeDefender SMS Proxy Webinar to get the full feature showcase of the new texting service! The event is scheduled for April, 13 2021 at 12:00pm EST.

How to expand your MSP service offerings

One of the biggest challenges that MSPs are currently facing right now is knowing what to offer (in terms of services) and how to offer it. Due to the pandemic, the business landscape is tricky, and has forced all professional businesses to really look at their services/products and to find a way to reinvent them.

Today, we’ll explore a few ways that could help your MSP business flourish during hard times. The key here is to be resilient, and to create the best conceivable plan for success that will overcome current obstacles.

1. Add more to your current service offerings

The most valuable data you have on your business, is what you currently offer in terms of services. Ask yourself, what do I offer? and What could I be offering now? The most in-demand solutions for our particular industry as MSPs are email security, backup, compliance, and disaster recovery. A great portfolio would showcase an array of solutions that would cover the demand for businesses today.   If you offer just security, but not compliance or disaster recovery solutions – research vendors that could help you add these services to your offering (almost instantly).  

2. Go bigger with your client size

Sounds like common sense but many MSPs tend to go after companies that are the same size that they are. It’s only natural, but there is a major opportunity for service providers to start making their way into to larger organizations with 50 employees or more. If you already have solid experience with servicing small businesses (25 employees or less), now could be your opportunity to leverage your services to slightly larger organizations. Of course, you will have to think about how to position your business (resources, employees etc) when attempting to attract larger fish. A great way to enter a larger market size is on price, and the ability to offer the best service. Ask your prospective clients, what are they paying now, and perhaps position yourself at a lower price point to land your first larger client.

3. Service Bundles vs. a-la-carte – provide both!

A recent study revealed that 43% of solution providers listed Sales as their biggest challenge this year. Most likely, you are already offering your services a-la-carte, individually. This is a great option for clients who know exactly what they need, or are on a strict budget.

That’s no surprise – but we have a little pro-tip that may help you, as it helped us. Service Bundles are a great way to pitch clients. They offer a clear way to understand the actual cost of services, and the value that they bring. A “bundle” already tells us that there is more than one service included, and that is of great value! What type of service bundles do you currently offer? Here at ExchangeDefender, our individual solutions can be packaged into three distinct packages: Security, Compliance, and Continuity. We looked at all of our clients and determined which services were most popular. Our study showed that for email compliance, our clients were using our Corporate Encryption and our Email Archiving solutions individually. So, we bundled them together and called it a “Compliance Suite”, which automatically raised our revenue, even if by a few dollars per user.

4. Create a sales and marketing plan

Yes, we know – you have heard this a lot, but its true. About 60% of service providers, we surveyed claimed that they did not have overall sales goals, even though they have a solid business plan. It’s important to create brand awareness, to show the world that your company does exist, and has been operating in good-standing since (enter year number here.) Is your website current? Have you created social media profiles for your company? Now is the time to send out company mailers, email newsletters, along with social media ads for facebook, reddit, google – you name it. Here’s a great guide on how to create your own sales and marketing plan.

It sounds like a big money investment, but you control the budget for every aspect. For ads for example, you create your own limits, even if it’s just $5 dollar per day. The same can be said for facebook, youtube, and google ads. Creating your own company social media profiles are free, and so is starting a cool blog for your clients to spread the word.

Officially, official.

ExchangeDefender has recently launched an ‘Official Partner’ logo, designed exclusively for our current partners. The logo is a graphic brandmark that features our traditional ExchangeDefender design, as well as the addition of ‘Official Partner’ underneath in dark grey.

There are currently two different versions of the logo to best assist all partners and their individual websites. The option to choose the light, or dark version is totally up to the preference of the partner, (their brand colors, website colors etc.)

Ways to use

We have a few suggestions on how to use your Official Partner logo. The first is on your website. You can download the logo and paste it into your website. Preferably on the front page to show your clients, and prospective clients the current security vendors that you are in partnership. We believe the display of partner logos help express credibility to future clients that you are in good company, and collaborate well with others.

The second option is adding the logo to documents, sale sheets, brochures, invoices – things you would normally give to a potential client. Normally, you would add your company’s logo on the left side, with your partner logo on the right side. Visually its outstanding, and assures the client that you are doing well as an ExchangeDefender business partner, (which you are!).

The third option is using your email footer for when you are emailing back and forth with clients. For example, if you were to look at a company’s signature – you would see the name, title, contact details, as well as any programs, or products that they are currently associated with. The logo is easy to add into outlook or Gmail, and should only take a few mins to complete.

Oh! You can also use the partner logo when making posts on your MSP social media. This could be attached to product specific offerings, or showcasing the third-party vendors that you currently are in partnership.

How to download?

To download is simple.
Below, you’ll find the light version and dark version of the logo. The images are PNG and have transparent background to suit any color. To save, simply right click the image and click save.

Remote-work friendly solutions for business.

There is no doubt, the Covid-19 pandemic has completely changed the way that we work today. Daily restrictions of social distancing require all of us to keep our space with many of us still working from home. Despite the current grim reality of 2021, the mobile workforce has been on the rise since before the crisis struck.

It is our jobs as service providers to prepare businesses with solutions that promote secure productivity that is accessible from anywhere. Here at ExchangeDefender, we wanted to share the most popular solutions being sold this year that are remote-work friendly.

Advanced Email Security (ExchangeDefender PRO)

Securing company email is non-negotiable in our digital age, and in 2021 as cyber-attacks have quadrupled in the last year alone. ExchangeDefender Advanced Email Security provides a multi-layered defense against email-borne threats like SPAM, viruses, malware, spoofing, phishing and more. Being honest here, more businesses are asking for our security for our stellar SPAM filtering, and for our advanced phishing and spoofing policies. They are proven to be gold standard in the market right now, most likely because we don’t trust sources easily. Our AI-based email protection provides the strongest defense against spear phishing, account compromise and domain fraud. It offers protection to employees from falling prey to sophisticated email-based attacks.

Web File Sharing

This is our secure file sharing and storage platform that simplifies collaboration in the digital workplace. You can share large files, manage documents, and have unlimited storage for one flat rate. A major benefit is giving your clients access to your file sharing portal to complete transactions together. For security, you can password-protect any file, and control user access to content with expiration dates. Web file sharing makes it easy for teams to share documents without having to rely on email, or old file servers. Of course, Web File Sharing is a regulatory web service and is compliant with all E.U and US regulations.

Live Archive (Email outage protection)

Our rising star as most employees were being sent to work from home, is Live Archive – our email outage protection. It offers interrupted access to live and archive email. It gives businesses an email continuity solution that keeps an organization sending and receiving email without disruption. In plain English, if Gmail or Outlook is experiencing a service outage (which they often do), you would still be able to continue emailing using ExchangeDefender’s live archive. See how it works here!

Corporate Encryption

This was our best-seller last year (in 2020). It was relaunched with advanced encryption options, and became the first of its kind to offer 3 different ways to send a secure message. You can easily send and receive encrypted messages by email, url, or by sms text message. ExchangeDefender Corporate Encryption is easy to use, can auto-detect sensitive data, and offers real-time reporting. Our service integrates easily, and is compatible with all major email service providers – including Office 365, on-premise Exchange, and G-Suite for Business.


If you are an ExchangeDefender partner, we would strongly suggest you to push these remote-work friendly solutions to your clients if you have not already. Our current data shows that the solutions mentioned above have been the most requested from clients since the beginning of 2020. All ExchangeDefender services are available via the cloud, and do not require any downloads or software installations to use. If you are interested in sales and marketing collateral, please submit a ticket request at our support portal – we will have the information to you within 24 hours.

4 growth strategies to expand your MSP business.

Every business on the planet is looking for ways to grow, whether you have 2 people on the books, or 2,000. One of the major challenges for MSPs in particular right now is creating and executing a growth strategy. Easier said than done of course, but today we’ll explore a few strategies that will help point you in the right direction.

What is a growth strategy?

A growth strategy can be defined as a special business plan that is created to overcome current or future challenges in order to achieve goals of expansion. Some good examples of growth strategy goals could be: improving your business’ products or services. It could be to acquire new assets like people or resources.  Today, we’ll go over the four main growth strategies that companies use in hopes of expansion.

Strategy #1 – Market Penetration

When we talk about market penetration, we are really talking about how well-known a product or service in a particular market. Normally, this is measured by the amount of sales compared to the total market share for that product/service.  

What are some examples of market penetration strategy? This could be the raising or lowering of your prices. Often, customers will look for a service that is the best in the market for the lowest price. It is really hard to compete like this, but if you can be competitive (not cheap) with your pricing then you may be able to acquire more customers. Another strategy is defining new target market segments. Let’s say – you’re a service provider, and you’ve only been servicing one type of businesses. You could consider offering your services to other professional businesses that are like-minded, and could use your service.

Strategy #2 – Service / Product Development

The main focus of this tactic is to be creative in how you offer your services. Take a look at your service offerings, could you sell something new? Like develop a new service bundle with your current services, or modify the existing services you offer in a way that would be beneficial for current pain points for businesses. This could be like how we upgraded and completely revamped our Corporate Encryption service. Of course, you could offer your same services but for a new market, as mentioned in the first strategy.

Strategy #3 – Market Expansion

A market expansion strategy focuses on selling current services in a completely new market from where your business currently operates in. For example, a company who operates solely via a partner-channel to sell their services, could start providing their services directly to customers in a direct-to-market strategy. The company is still offering the same services, but is offering them directly, instead via their channel of partners. This usually occurs when growth has peaked in a sales cycle, and the company develops an expansion strategy to overcome their current sales growth challenges.

Strategy #4 – Diversification Strategy

This particular plan is more complex and has at least 5 or 6 different types of diversification strategies. However, we will focus on the most common here, like horizontal diversification. This is when you introduce new services to your current offering in order to expand your market share. Normally a company will license new products, or even merge/acquire another company. Vertical diversification is another popular strategy which focuses on expanding its product line by creating a similar product for the same market. For example, a painting business that provides residential painting services, could start selling their own paint. Same target market (people who need their homes painted), but a new service and opportunity for the painting company to grow by not only painting the homes, but selling the paint itself to paint the homes.

Pro tip from us: Your current clients are your biggest assets. Take a look at what industries they are in, and explore if there are other sectors that could benefit from your services. Like if you currently service law firms, you could also service accountant and financial professionals, right? Secondly, take a look at the services that you are offering. Is there any way that you could expand your service offerings without shelling out too much money upfront? Be sure to compare vendors – their pricing, their fees, solutions offered etc.


Partner with us! Learn more about ExchangeDefender.

ExchangeDefender is proud to announce the successful rollout of the first phase of our OAUTH implementation across three of our major products: ExchangeDefender Mail Security (Admin Portal), Encryption and WebShare. Originally, our rollout was planned to be a massive shotgun change across all services which would have required users to reset their passwords, but users had to be aware of their current password. In December, we started to log and analyze the entry points users took into the application and found that a majority of users relied on “one-click” login methods like quarantine reports to access their portal and would then jump to other services like Encryption via the “quick links.” Armed with the aggregated analysis, we realized our previous deployment strategy would unfortunately lead to many users being unable to access their services as many users were never aware of their password, thus putting an additional strain on our partners. However, we also know that the current security method was not sustainable for the future.

Enter: Deployment 2.0.

We knew our login system had to be smarter, safer, but also flexible. We knew we needed to rethink a lot of our auxiliary entry points (like quarantine reports) as well as our main entry points to work together in tandem, instead of hard cutovers or independent, one off operations. For example, we needed to continue to allow the legacy password hashing style to be accepted during login, but in-line upgraded to our new hashing algorithm. There were a lot of technical difficulties to overcome as each product maintained its own login page (which many users would save in their browser credential store) and in some instances, had additional security features that do not exist in other products (such as IP restrictions and 2FA in admin, but not encryption or Webshare).

Even more complicated than individual service login logic, some services maintained a list of users who are external entities to the end user’s organization (think Webshare or encryption recipients), and in most cases, these external recipients aren’t in the ExchangeDefender eco system. Ultimately, we decided to allow ExchangeDefender users to continue using each service’s independent login screens for a few weeks before disabling the legacy functionality and hinting to users to click the OAUTH login button “Login with ExchangeDefender” (or even “Login with Google” or “Login with Microsoft” more details below).

Originally, our plan involved redirecting all users to the new login server, which unfortunately would be the Achilles heal of those users who relied on their browser credential store. Ultimately, we landed on a hybrid approach, using the flexibility of using different OAUTH grant styles depending on the application.

The Deployment Timeline

Feb 19th: Activate the new login system for Encryption and Webshare

Feb 21st: Activate the new login system for Admin

Feb 26th: Activate the new centralized navigation headers

Feb 27th: Activate “Login with ExchangeDefender/Google/Microsoft” button to Admin, Encryption and Webshare. Add warning notification to users about the incoming login changes.

Mar 6th: Disable legacy password grant from services, enforce “Login with ExchangeDefender” when a user attempts to login with a username and password on each services page.

Throughout the remaining quarters of 2021, we will continue to integrate the rest of our services into the new login system, including support.ExchangeDefender.com, Compliance Archive, LiveArchive. Time permitted, we also plan on releasing a few tools to improve end user experience such as our Outlook/OWA plugin, built from the ground up to manage quarantine and user whitelists.

New Features to Expect

1 – Integration with Google and Microsoft OAUTH: Users are now able to utilize Google and/or Microsoft as their login provider. Authenticated users will now see buttons to link their Google or Microsoft identity to their ExchangeDefender account. Once linked, users can utilize the “Login with Google” or “Login with Microsoft” buttons instead of inputting their ExchangeDefender credentials to login.

2 – Improved 2FA integration: Users are now able to integrate 2FA applications like Google Authenticator or Authy. To setup 2FA users should login to admin.exchangedefender.com and navigate to the Settings for their account. Please keep in mind that the enforcement of 2FA logins (when enabled by the user) will come with the March 6th deployment. We strongly encourage users to set up 2FA before the full activation of our new login system.

3 – Trusted Devices: Coupled with 2FA, users can elect to mark a device they’re logging in with as a trusted device. Once a device is marked trusted, subsequent logins using the same device will not be prompted for 2FA again for 3 months.

4 – Improved Remember Me: On our login server we improved the remember me functionality to allow users to remain authenticated for 7 days if selected during login.

5 – Login to one, access to all: Users who now login to admin, encryption or webshare will inherently be authenticated to all other services using the new login method. This list will grow as we continue integrating services into the new login system.

6 – Centralized Navigation: Users will see a consistent navigation system across all products utilizing the new login system. More importantly, navigation to other products is streamlined and consistent.

7 – External Integrations: While redesigning the login system, we also elected to start centralizing API endpoints in anticipation of allowing partners and external providers to design their own tools and solutions, backed by ExchangeDefender.

Mid-pandemic, resilience is key to business survival

It is crucial for business to reimagine both the labor force and work strategy to be resilient. This include the ability to be flexible, adapt, and respond to change.  SMB’s best survival chance is to evolve, execute intentional actions and focus on Resilience being in the forefront.

Adapting the tradition

Traditionally, Efficiency has been a primary focus in most organizations.  The pandemic has caused a shift in the way businesses play out their day to day.  The primary focus is/was to get the job done faster with inflexible processes that enabled agents to work more competently.

This is not to say efficiency is no longer required but merely has traded places with resiliency.  Frankly, corporations must now ensure assets, employees, and their workload are ready to constantly shift with ongoing changes.

Resilience is key

Resilience can be defined as the ability to bounce back after life’s challenges. Businesses who are more resilient have learned to move past obstacles in a healthy way.  Resilient people learn and know how to weather the storms that come along in life.  They are aware of difficult conditions, can interpret the situation and make sound decisions on what needs to be done.

On the road to resilience – at the onset of the pandemic, companies primarily hoped for the best. They struggle to keep operations running, and are having to furlough or lay off laborers. The main focus at this point for business is financial survival, as COVID-19 continues to devastate our ‘business as usual’.

Well-fed and well-led employees

Companies aggressively protected workers, workplaces, and customers from infections. Also implemented practices to address the core needs of safety and well-being.  They focused on being supportive to employees and their families.  Cultivated employees to work smarter, by developing new skills and cross-training with other departments thus increasing productivity.

Time to Pivot

SMB’s have accepted, due to the ever-changing market that change is inevitable. Organizations reinvented the hiring process, job design, performance management and pay to coincide with the new operating model.  Pivoting toward new markets, services or goods is a great way to build on the foundation a business already has, expands revenue, and brings more income to the organization.


ExchangeDefender provides email security, compliance, and email continuity solutions for small business. To explore our solutions, click here.

There are tons of Antivirus software to choose from and finding the right solution for your business can be complicated.  ExchangeDefender can help in assisting SMBs to make the right decision. 

What makes a good Antivirus?

Any Anti-virus will do just that, to some degree, that is to fights viruses and other malicious software.  Maintaining your personal identification and safeguarding your privacy goes well beyond standard virus protection.  SMB’s must understand the difference between an average antivirus protection and outstanding antivirus protection. Don’t rely on just the antivirus that’s built-in to your computer applications.

The difference between good and GREAT

What makes a great Antivirus? A multithread and multi-layered protection approach scanning incoming data.   Remember extra, matters – especially if they are within budget.

A few must-haves when selecting Antivirus protection:

  1. Real-time Protection against viruses, trojans, malware, spyware, and adware.
  2. Cloud based, User control, Firewall protection
  3. An Antivirus that works well with others, i.e., MaC, iPhone, and Android
  4. Attachment blocking and attachment policy management
  5. Stops identity theft by blocking phishing attempts

This is where ExchangeDefender comes in with our top-selling advanced security suite known as ExchangeDefender PRO. ExchangeDefender possesses enterprise-grade email security suite offering multi-level protection against email-borne attacks. It not only provides exceptional virus protection, but also, phishing, spoofing, attachment blocking, Fraud prevention and so much more.

Our commercial antivirus engines use up to six antivirus engines to scan each incoming message

Cyber attacks continue to rise in 2021

Cyberattacks are here to stay and data breaches are on the rise as we come into the new year, affecting business owners with financial loss, brand damage, and legal ramifications.  It is imperative for businesses of all sizes to prevent data breaches.  ExchangeDefender’s high Throttled Malware & Trojan Control – has a built-in identification system that tracks the message & attachment MD5 checksums and responds by temporarily delaying messages that match the bulk-mail criteria. 

Malware Attachment Filtering & Sanitation is a must – The days of text-only SPAM are long gone. Today SPAM is distributed as a PDF, zip file, image, even an audio file! At the same time, we use our email as more of a file sharing mechanism than a communications platform. Subsequently, it is essential to understand the attachment type and what type of a threat it poses. ExchangeDefender analyzes attachments on multiple layers, using checks for file names, file types, MIME headers and archives to properly protect you from all dangerous content. 

From a business perspective, your brand reputation could be on the line, a solid Anti-virus software service would prove essential to protect your company’s, files, systems, and sensitive data. 

To learn more about ExchangeDefender’s advanced email security suite,
please click here.

The 2020 Covid-19 pandemic and recent presidential election turmoil notwithstanding, cybersecurity remains one of the most non-political, bi-partisan challenges facing our nation in 2021. It doesn’t matter if you are a government organization or a private sector company, a non-profit or a for-profit, a Fortune 500 or an unfortunate 5000, everyone is being challenged daily to deal with the fervent bombardment of cybersecurity attacks on governments, businesses, and ordinary people.

While we’ve been on the cyber-defensive with nation-state, and high level cyber-criminals for decades, the executive branch of the federal government’s response has wobbled, staggered, and lurched in spastic fits that has essentially paralyzed any consistent national direction.

Most critical of all, there has been no clear guidance to the nation on exactly what is the federal government’s role in cybersecurity. Twenty years ago, dealing with foreign attacks were the sole responsibility of the federal government. Today, every private sector company, big and small, and every government organization—federal, state and local—find themselves outmatched and under-resourced in an unfair battle defending themselves against nations and organizations with far more dedicated assets. 

As overwhelming as these new trends may be, there are steps to mitigate some of the financial challenges SMB’s are facing.  Companies can invest in an affordable email protection in conjunction with sound business practices without breaking the bank.

Cybersecurity tips for 2021

Try reducing your organizations reliance solely on passwords and add Multi-factor authentication to ensure only authorized users gain access. Introduce technical security solutions with the use of “throttling” or account lock outs. Ensure that all corporate web applications require authentication use HTTPS.  Enlist a password management software, such a WRKOO or other secure storage.   Implement a disaster recovery plan that includes email continuity. ExchangeDefender offers Email outage protection that is flexible to fit you company’s needs. The service is quick and easy to setup. There are no software installations, and no manual switches. The easy part is that there is no management or maintenance required. ExchangeDefender’s Live Archive solution is designed to keep your organization in business whenever a disaster strikes. It provides continuous email communications regardless of internal network outages. Our service helps businesses preserve their brand and reputation while ensuring a reliable email continuity plan.

ExchangeDefender is starting 2021 with a subtle yet huge change in the way our applications and services interact on the backend – we have fully implemented OAuth. OAuth is a popular authentication / login framework that uses authorization tokens instead of passwords to grant you access to different/unrelated services.

What this means in practical terms is that once you login to ExchangeDefender, you will be authorized to access all of the applications you have access to without logging in again and again as you hop from your SPAM Quarantine to your Password Vault to Wrkoo Invoices or ExchangeDefender support.

It also means you are now able to use authenticator apps from Google, Microsoft, as well as SMS. We are already working on Microsoft Authenticator, and for users that don’t trust big tech, Authy.  

What will it look like?

Deployment of OAuth is completely transparent to the user and their login experience will not change. We are currently running OAuth in an open beta with our larger MSPs and enterprise customers and the login screen looks like this:

After you login with your username and password, you will be taken to our OAuth enrollment screen where you will be prompted for your password again (or prompted to reset it, if it’s older than 90 days).

That’s all. You’ll be enrolled in OAuth and from that point on your access to all our sites and services will be handled with authentication tokens instead of passwords.

After you’re authenticated, your avatar in the upper right hand side will feature shortcuts to the rest of the ExchangeDefender/Wrkoo/Own Web Now sites you have access to and they’ll be just a click away. This implementation will help us streamline access to all of the services the user is authorized to access, making it much easier to access all the services without dealing with multiple portals, sites, and login  credentials.

P.S. I have blogged repeatedly imploring our partners and clients to adopt better password policies and two-factor authentication. Truth is, no matter how amazing and unique your password is, it’s passing through series of potentially compromised routers and networks. Even though ExchangeDefender offers free 2FA, OTP, and requires strong passwords with option to automatically expire them – the adoption rate is still under 10%.