• Sublime Core Feed
Login to Sublime

Sublime Core Feed

This repo contains open-source Rules for Sublime, a free and open platform for detecting and preventing email attacks like BEC, malware, and credential phishing.

Sublime Security
Last updated Sep 9th, 2026
Feed Source
GitHub
Detection Method is
Rule Name & Severity
Author
Last Updated
Labels
VIP local_part impersonation from unsolicited sender
Sublime Security
1mo ago
Jul 29th, 2026
Impersonation: VIP
Spoofing
Header analysis
Sender analysis
Impersonation: VIP
Spoofing
Header analysis
Sender analysis
Xero invoice abuse
Sublime Security
8mo ago
Dec 17th, 2025
BEC/Fraud
Credential Phishing
Impersonation: Brand
Impersonation: Employee
Social engineering
Natural Language Understanding
Content analysis
Sender analysis
BEC/Fraud
Credential Phishing
Impersonation: Brand
Impersonation: Employee
Social engineering
Natural Language Understanding
Content analysis
Sender analysis
X (Twitter) impersonation with credential phishing motives
Sublime Security
3mo ago
May 15th, 2026
Credential Phishing
Impersonation: Brand
Social engineering
Computer Vision
File analysis
Header analysis
Optical Character Recognition
Natural Language Understanding
Sender analysis
Credential Phishing
Impersonation: Brand
Social engineering
Computer Vision
File analysis
Header analysis
Optical Character Recognition
Natural Language Understanding
Sender analysis
753 Rules
Page 16 of 16