Detection Method: Computer Vision

Computer Vision uses image recognition to analyze visual elements in messages, attachments, and web content to detect threats or impersonation attempts. It examines logos, screenshots, and HTML to find signs of phishing or fraud.
Computer Vision can detect:
  • Brand impersonation with fake logos (e.g., Microsoft, PayPal)
  • Visual elements of phishing pages, like login forms
  • CAPTCHAs used to bypass security systems
  • Malicious content disguised as legitimate visuals
For example, attackers often create fake login pages mimicking trusted brands, and Computer Vision can detect these attempts by recognizing misused logos with high confidence.
Rule Name & Severity
Last Updated
Author
Types, Tactics & Capabilities
Brand impersonation: USPS
5d ago
Mar 25th, 2026
Sublime Security
Cloud storage impersonation with credential theft indicators
7d ago
Mar 23rd, 2026
Sublime Security
Link: Figma design deck with credential theft language
26d ago
Mar 4th, 2026
Sublime Security
Brand Impersonation: Disney
26d ago
Mar 4th, 2026
Sublime Security
Attachment: QR code with recipient targeting and special characters
1mo ago
Feb 21st, 2026
Sublime Security
Brand impersonation: Gusto
1mo ago
Feb 18th, 2026
Sublime Security
Impersonation: Recipient organization in sender display name with credential theft image
1mo ago
Feb 17th, 2026
Sublime Security
Brand Impersonation: PayPal
1mo ago
Feb 13th, 2026
Sublime Security
Brand impersonation: TikTok
1mo ago
Feb 12th, 2026
Sublime Security
Callback Phishing via Zoom comment
1mo ago
Feb 11th, 2026
Sublime Security
Brand impersonation: Fake Fax
1mo ago
Feb 5th, 2026
Sublime Security
Brand impersonation: File sharing notification with template artifacts
2mo ago
Jan 23rd, 2026
Sublime Security
Brand impersonation: Quickbooks
2mo ago
Jan 15th, 2026
Sublime Security
Callback phishing via e-signature service
2mo ago
Jan 12th, 2026
Sublime Security
Attachment: QR code with credential phishing indicators
2mo ago
Jan 12th, 2026
Sublime Security
QR Code with suspicious indicators
2mo ago
Jan 12th, 2026
Sublime Security
Suspicious invoice reference with missing or image-only attachments
2mo ago
Jan 12th, 2026
Sublime Security
Credential phishing: DocuSign embedded image lure with no DocuSign domains in links
2mo ago
Jan 12th, 2026
Sublime Security
Callback phishing via Adobe Sign comment
2mo ago
Jan 12th, 2026
Sublime Security
Attachment: HTML smuggling - QR Code with suspicious links
2mo ago
Jan 12th, 2026
Sublime Security