Brandon Murphy
Brandon Murphy
Detection

Brandon is a Threat Detection Engineer at Sublime. He is a seasoned cybersecurity professional with over a decade of experience protecting internet users. Prior to Sublime, Brandon put his detection engineering expertise to use as a Sr. Staff Threat Analyst at Proofpoint.

Contributions

Salesforce infrastructure abuse: Stopping email scams and spam sent via SFDC
Attack spotlight

Salesforce infrastructure abuse: Stopping email scams and spam sent via SFDC

November 13, 2025
ICS phishing: Stopping a surge of malicious calendar invites
Attack spotlight

ICS phishing: Stopping a surge of malicious calendar invites

November 3, 2025
Google Careers impersonation credential phishing scam with endless variation
Attack spotlight

Google Careers impersonation credential phishing scam with endless variation

October 14, 2025
Multi-RMM attack: Splashtop Streamer and Atera payloads delivered via Discord CDN link
Attack spotlight

Multi-RMM attack: Splashtop Streamer and Atera payloads delivered via Discord CDN link

July 31, 2025
AITM phishing with Russian infrastructure and detection evasion from a lapsed domain
Attack spotlight

AITM phishing with Russian infrastructure and detection evasion from a lapsed domain

June 12, 2025
Detecting an email-based ClickFix attack that delivers DCRat malware payload
Attack spotlight

Detecting an email-based ClickFix attack that delivers DCRat malware payload

May 29, 2025
Microsoft OAuth URL used as redirect to AITM credential phishing site
Attack spotlight

Microsoft OAuth URL used as redirect to AITM credential phishing site

March 20, 2025
Base64-encoding an SVG attack within an iframe and hiding it all in an EML attachment
Attack spotlight

Base64-encoding an SVG attack within an iframe and hiding it all in an EML attachment

March 6, 2025
Scripting Vector Grifts: SVG phishing with smuggled JS and adversary in the middle tactics
Attack spotlight

Scripting Vector Grifts: SVG phishing with smuggled JS and adversary in the middle tactics

February 25, 2025

Now is the time

See how Sublime delivers autonomous protection by default, with control on demand.