• Sublime Core Feed

Sublime Core Feed

This repo contains open-source Rules for Sublime, a free and open platform for detecting and preventing email attacks like BEC, malware, and credential phishing.

Sublime Security
Last updated Mar 4th, 2026
Feed Source
Tactic or Technique is
Rule Name & Severity
Author
Last Updated
Labels
Attachment: EML file with IPFS links
Sublime Security
4mo ago
Nov 4th, 2025
/feeds/core/detection-rules/attachment-eml-file-with-ipfs-links-1fe9d7e7
Credential phishing: Engaging language with IPFS link
Sublime Security
2y ago
May 3rd, 2024
/feeds/core/detection-rules/credential-phishing-engaging-language-with-ipfs-link-996c4d83
Link: IPFS
Sublime Security
1mo ago
Jan 12th, 2026
/feeds/core/detection-rules/link-ipfs-19fa6442
Vendor compromise: GovDelivery message with suspicious link
Sublime Security
7mo ago
Aug 5th, 2025
/feeds/core/detection-rules/vendor-compromise-govdelivery-message-with-suspicious-link-0d2d5172