Rule Name & Severity | Last Updated | Author | Types, Tactics & Capabilities | |
|---|---|---|---|---|
Brand impersonation: Microsoft with low reputation links | 4d ago Nov 8th, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-microsoft-with-low-reputation-links-b59201b6 | |
Brand impersonation: SharePoint PDF attachment with credential theft language | 5d ago Nov 7th, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-sharepoint-pdf-attachment-with-credential-theft-language-ae3756fa | |
Compensation review with QR code in attached EML | 7d ago Nov 5th, 2025 | Sublime Security | /feeds/core/detection-rules/compensation-review-with-qr-code-in-attached-eml-98a2f03c | |
Brand impersonation: USPS | 7d ago Nov 5th, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-usps-28b9130a | |
Spam: Mastercard promotional content with image-based body | 7d ago Nov 5th, 2025 | Sublime Security | /feeds/core/detection-rules/spam-mastercard-promotional-content-with-image-based-body-5f2cb559 | |
Brand impersonation: TikTok | 13d ago Oct 30th, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-tiktok-aaacc8b7 | |
Brand impersonation: Discord notification | 20d ago Oct 23rd, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-discord-notification-97007826 | |
Brand impersonation: Toronto-Dominion Bank | 21d ago Oct 22nd, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-toronto-dominion-bank-2dc16a55 | |
Brand impersonation: DocuSign branded attachment lure with no DocuSign links | 21d ago Oct 22nd, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-docusign-branded-attachment-lure-with-no-docusign-links-814a5694 | |
Callback phishing via SignFree e-signature request | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/callback-phishing-via-signfree-e-signature-request-21381c37 | |
Callback phishing via Xodo Sign comment | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/callback-phishing-via-xodo-sign-comment-6f722c5d | |
Brand impersonation: Sharepoint | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-sharepoint-284b1b70 | |
Brand impersonation: Google Drive fake file share | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-google-drive-fake-file-share-b424a941 | |
Callback phishing via e-signature service | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/callback-phishing-via-e-signature-service-ed37b4fd | |
Brand impersonation: Adobe with suspicious language and link | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-adobe-with-suspicious-language-and-link-32cc8bf1 | |
QR Code with suspicious indicators | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/qr-code-with-suspicious-indicators-04f5c34f | |
Callback Phishing via Signable E-Signature Request | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/callback-phishing-via-signable-e-signature-request-4599575d | |
Brand impersonation: Microsoft with embedded logo and credential theft language | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/brand-impersonation-microsoft-with-embedded-logo-and-credential-theft-language-3ee9ef3d | |
Credential phishing: DocuSign embedded image lure with no DocuSign domains in links | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/credential-phishing-docusign-embedded-image-lure-with-no-docusign-domains-in-links-dfe8715e | |
Callback phishing via Adobe Sign comment | 26d ago Oct 17th, 2025 | Sublime Security | /feeds/core/detection-rules/callback-phishing-via-adobe-sign-comment-7eb4516d |