Tactic or Technique: Social engineering

Social engineering targets people instead of systems. Attackers use persuasion, pressure, or emotional cues to get you to act quickly and bypass security tools without realizing it.
Messages often create urgency, mimic authority figures, or feel familiar enough to lower your guard. An attacker might pose as your manager asking for a quick favor, reference a recent company event, or claim your account is about to be locked. These tricks are designed to feel legitimate and get you to respond without verifying the request.
Common approaches include pretexting, where attackers invent a believable scenario; baiting, where they offer something enticing; or quid pro quo, where they offer help in exchange for access. Even a single successful interaction can lead to broader compromise, including data theft, ransomware, or a full network breach.
Rule Name & Severity
Last Updated
Author
Types, Tactics & Capabilities
Credential phishing: 'Secure message' and engaging language
2d ago
Apr 20th, 2026
Sublime Security
Attachment: ICS calendar file with QR code containing recipient email address
2d ago
Apr 20th, 2026
Sublime Security
Attachment: ICS calendar file with recipient address in UID field
2d ago
Apr 20th, 2026
Sublime Security
Credential phishing: Suspicious subject with urgent financial request and link
2d ago
Apr 20th, 2026
Sublime Security
Attachment: ICS file with links to newly registered domains
2d ago
Apr 20th, 2026
Sublime Security
BEC/Fraud: Urgent language and suspicious sending/infrastructure patterns
5d ago
Apr 17th, 2026
Sublime Security
Brand impersonation: DocuSign
5d ago
Apr 17th, 2026
Sublime Security
Link: WordPress admin targeting with recipient identifier in URL fragment
6d ago
Apr 16th, 2026
Sublime Security
Self-sender with copy/paste instructions and suspicious domains (French/Français)
6d ago
Apr 16th, 2026
Sublime Security
Brand impersonation: Wells Fargo
7d ago
Apr 15th, 2026
Sublime Security
Brand impersonation: Amazon with suspicious attachment
8d ago
Apr 14th, 2026
Sublime Security
Advance Fee Fraud (AFF) from freemail provider or suspicious TLD
8d ago
Apr 14th, 2026
Sublime Security
Link: Tax document lure Portuguese/Spanish with suspicious domains
8d ago
Apr 14th, 2026
Sublime Security
Attachment: Fake voicemail via PDF
8d ago
Apr 14th, 2026
Sublime Security
Attachment: Compensation review lure with QR code
8d ago
Apr 14th, 2026
Sublime Security
Brand impersonation: USPS
9d ago
Apr 13th, 2026
Sublime Security
Callback phishing via Microsoft comment
9d ago
Apr 13th, 2026
Sublime Security
Attachment: PDF with a suspicious string and single URL
12d ago
Apr 10th, 2026
Sublime Security
Attachment: PDF with credential theft language and invalid reply-to domain
12d ago
Apr 10th, 2026
Sublime Security
Link: Shortened URL with fragment matching subject
13d ago
Apr 9th, 2026
Sublime Security