Last Updated

Key Takeaways

Generated from the text of customer reviews

CyberFOX AutoElevate is a privileged access management tool that removes permanent admin rights from company laptops and replaces them with temporary, self-destructing permissions. While it does not support Linux servers, the platform proactively blocks over 200 native Windows applications, binaries, and DLL files commonly exploited in LOTL attacks. Recently, CyberFOX launched a beta Partner API for connecting AutoElevate to third-party tools.

Our Verdict

CyberFOX AutoElevate is a strong fit for MSPs and IT teams that need to remove permanent admin rights, particularly where cyber insurance requirements make this a priority. Its endpoint-based pricing requires a direct quote, which can make initial budgeting harder for smaller MSPs. We recommend it for organizations with strict admin rights or cyber insurance requirements.

CyberFOX AutoElevate Specifications

  • Threat Intelligence
  • Multi-Factor Authentication
  • Security Audits And Reporting
  • Intrusion Detection

CyberFOX AutoElevate Features

Blocker

It has a specialized blocklisting engine that maintains a regularly updated list of known attack vectors. It actively targets and blocks over 40 native Microsoft threats and more than 180 Living-off-the-Land (LOTL) threat vectors (like hijacked command prompts or script execution tools) rarely used by normal employees. It also includes a recommendation engine to help IT easily create rules for what should be blocked.

See How It Works
Just-In-Time Admin

This feature allows IT to create a temporary, passwordless administrator account when a technical task needs to be performed. Technicians log in using the CyberFOX AutoElevate MFA-enabled mobile app without ever knowing, typing, or storing an actual local password. Technicians can securely log into a machine on the fly, and auditors get absolute proof that no permanent backdoor passwords are left active on company laptops.

See How It Works
PAM Automation (Robust Rules For PAM Automation)

It allows IT teams to build specific rules based on Windows User Account Control (UAC) prompt history. Technicians can review an application elevation request and decide whether to approve or deny it as a one-time occurrence or turn it into an ongoing, automatic rule for the entire organization. IT helpdesk technicians only have to evaluate and approve an application update (like QuickBooks or Adobe) once, instead of fielding repeated tickets from different users for the same software.

See How It Works
Automatic PSA Time Entries

Built specifically for IT business workflows, this feature automatically logs the exact amount of time a technician spends handling an elevation request and syncs it directly with the organization's professional services automation (PSA) software. It ensures that every second of remote support work is automatically tracked for client billing and technician productivity metrics without requiring manual timesheets.

See How It Works
Detailed Ticketing

Whenever an employee encounters a password prompt or requests access, AutoElevate automatically generates a highly detailed IT support ticket. This ticket captures the exact request, the person making it, their machine ID, and the final outcome. That eliminates the need for technicians to manually log support tickets for software approvals, ensuring an accurate history of activities on each computer.

See How It Works
Remote Management

This feature bridges the gap between office computers and mobile devices. Whenever an unapproved action occurs on a computer, the software sends a push notification to the IT team's smartphone apps (iOS/Android). Technicians can review and respond to these privilege requests in real time from anywhere in the world.

See How It Works

Pros And Cons of CyberFOX AutoElevate

Pros

  • Removes local admin rights while allowing users to complete necessary tasks

  • Automated elevation rules can reduce manual approvals and help desk requests

  • Supports deployment through PowerShell scripts and integration with RMM tools

  • Technician Mode reduces the need for repeated credential entry during administrative tasks

Cons

  • Users may receive frequent elevation prompts before policies are fully configured

  • Offers fewer granular policy controls for organizations managing complex privilege scenarios

CyberFOX AutoElevate Reviews

Total 1 reviews

3

All reviews are from verified customers

Rating Distribution

5

Stars

0%

4

Stars

0%

3

Stars

100%

2

Stars

0%

1

Stars

0%

Share your experience

JS

Jordan S.

Information Technology and Services, 11-50 employees

Less than a year

3.0
January 2024

lacks in some areas

Pros

What makes AutoElevate great is how simple it is as it either allows something or it does not.

Cons

The downside is that application whitelisting often involves a lot of gray area and when we were using it, it didn't offer many capabilities beyond basic whitelisting and blacklisting.

Rating Distribution

Ease of use

6

Value for money

5

Customer Support

6

Functionality

5

Frequently Asked Questions

What is a Privileged Access Management tool?

A Privileged Access Management (PAM) tool is a crucial cybersecurity solution that helps organizations protect sensitive data and prevent unauthorized access to critical systems. It provides a centralized platform to control and monitor privileged accounts and their activities. With a PAM tool, businesses can enforce granular access controls, track privileged user sessions, and enforce strong authentication methods, ensuring the security and integrity of their digital assets.

How does CyberFOX's PAM tool enhance security practices for MSPs and I

MSPs and IT professionals need a PAM tool because it provides an extra layer of security for privileged accounts, helps enforce the Principle of Least Privilege, and ensures compliance with industry regulations. It also streamlines privilege elevation, centralizes control and monitoring of admin accounts, and protects against credential theft, allowing businesses to ensure robust cybersecurity measures.

How does CyberFOX's PAM Solution work?

The software leverages Windows UAC (User Access Control) events to prompt for privilege elevation, ensuring safe and secure access through Windows UAC. This functionality enables the tool to provide Administrator credentials when requested by Windows. With our unique approach, there is no longer a need for permanently active local admin accounts, minimizing potential vulnerabilities.

Is your PAM Solution difficult to implement?

No. We’ve made it super easy to deploy across your IT ecosystem in just a few minutes with pre-written scripts for remote monitoring and management platforms. Once deployed simply audit the privileged events, create rules and you’re ready to remove admin privileges.

How does pricing work?

Our PAM solution pricing is all-inclusive, with no additional fees. We offer flexible contracts, and our pricing model is based on the number of endpoints managed.

What is the Principle of Least Privilege?

The principle of least privilege means users and applications are granted only the rights and authorizations required for the task at hand.

Will removing admin rights bury my helpdesk in tickets?

No — that is what the rule engine is for. Teams start in audit mode to see real elevation activity, convert recurring approvals into automatic rules, and handle the remainder as one-tap mobile approvals. Request volume falls as the rule set matures.

How long does deployment take?

Agents deploy in minutes per environment using pre-built scripts for the major RMM platforms, GPO, or Intune, and are auto-organized to match the client and location structure already in the RMM. Full rollout typically runs 10 to 50 days depending on the size of the commitment.