Tactic or Technique: Social engineering

Social engineering targets people instead of systems. Attackers use persuasion, pressure, or emotional cues to get you to act quickly and bypass security tools without realizing it.
Messages often create urgency, mimic authority figures, or feel familiar enough to lower your guard. An attacker might pose as your manager asking for a quick favor, reference a recent company event, or claim your account is about to be locked. These tricks are designed to feel legitimate and get you to respond without verifying the request.
Common approaches include pretexting, where attackers invent a believable scenario; baiting, where they offer something enticing; or quid pro quo, where they offer help in exchange for access. Even a single successful interaction can lead to broader compromise, including data theft, ransomware, or a full network breach.
Rule Name & Severity
Last Updated
Author
Types, Tactics & Capabilities
Impersonation: SAM/SBA federal registration
20m ago
Aug 27th, 2026
Sublime Security
Brand impersonation: Robinhood
20m ago
Aug 27th, 2026
Sublime Security
Attachment: ICS invite meeting lure
1h ago
Aug 27th, 2026
Sublime Security
Brand impersonation: McAfee
2h ago
Aug 27th, 2026
Sublime Security
Service abuse: Kagoya.net-hosted domains sending English business lures
2h ago
Aug 27th, 2026
Sublime Security
Link: Microsoft protected message with suspicious recipient patterns
2h ago
Aug 27th, 2026
Sublime Security
Body: HTML whitespace stuffing with short initial message
2h ago
Aug 27th, 2026
Sublime Security
Brand impersonation: Microsoft with low reputation links
4h ago
Aug 27th, 2026
Sublime Security
Body: CSS clamp() font obfuscation with suspicious URL
20h ago
Aug 26th, 2026
Sublime Security
Attachment: PDF Grant Payment lure with embedded link
21h ago
Aug 26th, 2026
Sublime Security
ClickFix: Clipboard hijack lure with copy-paste-to-terminal instruction
1d ago
Aug 26th, 2026
Sublime Security
BEC/Fraud: Self-addressed reply with unrelated link in ongoing thread
1d ago
Aug 26th, 2026
Sublime Security
Link: Self-sender with sender org in subject and credential theft indicator
2d ago
Aug 25th, 2026
Sublime Security
Link: Fake RFP/bid reference number lure
2d ago
Aug 25th, 2026
Sublime Security
Business Email Compromise (BEC) with request for mobile number
2d ago
Aug 25th, 2026
Sublime Security
Business Email Compromise: Request for mobile number via reply thread hijacking
2d ago
Aug 25th, 2026
Sublime Security
Attachment: Risk assessment PDF with inline image
2d ago
Aug 25th, 2026
Sublime Security
Brand impersonation: Automobile assistance associations
2d ago
Aug 25th, 2026
Sublime Security
Brand impersonation: Sedgwick Claims
2d ago
Aug 25th, 2026
Sublime Security
Attachment: Invoice and W-9 PDFs with suspicious creators
2d ago
Aug 25th, 2026
Sublime Security