Tactic or Technique: Social engineering

Social engineering targets people instead of systems. Attackers use persuasion, pressure, or emotional cues to get you to act quickly and bypass security tools without realizing it.
Messages often create urgency, mimic authority figures, or feel familiar enough to lower your guard. An attacker might pose as your manager asking for a quick favor, reference a recent company event, or claim your account is about to be locked. These tricks are designed to feel legitimate and get you to respond without verifying the request.
Common approaches include pretexting, where attackers invent a believable scenario; baiting, where they offer something enticing; or quid pro quo, where they offer help in exchange for access. Even a single successful interaction can lead to broader compromise, including data theft, ransomware, or a full network breach.
Rule Name & Severity
Last Updated
Author
Types, Tactics & Capabilities
Brand impersonation: USPS
14h ago
Jun 1st, 2026
Sublime Security
Brand impersonation: Sharepoint
14h ago
Jun 1st, 2026
Sublime Security
Brand impersonation: Quickbooks
15h ago
Jun 1st, 2026
Sublime Security
Brand impersonation: DocuSign
20h ago
Jun 1st, 2026
Sublime Security
Brand Impersonation: PayPal
21h ago
Jun 1st, 2026
Sublime Security
Brand impersonation: Adobe with suspicious language and link
22h ago
Jun 1st, 2026
Sublime Security
Observed IOC: Malicious sender email addresses
4d ago
May 29th, 2026
Sublime Security
Credential phishing: Engaging language and other indicators (untrusted sender)
4d ago
May 29th, 2026
Sublime Security
Reconnaissance: Short generic greeting message
4d ago
May 29th, 2026
Sublime Security
Brand impersonation: Meta and subsidiaries
4d ago
May 29th, 2026
Sublime Security
Body: HTML whitespace stuffing with short initial message
4d ago
May 29th, 2026
Sublime Security
Attachment: ICS calendar file with suspicious product identifier
4d ago
May 29th, 2026
Sublime Security
Impersonation Link: Cloud branding service with credential theft language
4d ago
May 29th, 2026
Sublime Security
Credential phishing: Suspicious e-sign agreement document notification
4d ago
May 29th, 2026
Sublime Security
Attachment: Compensation-themed DOCX with QR code credential theft
4d ago
May 29th, 2026
Sublime Security
Service Abuse: HelloSign share with suspicious sender or document name
5d ago
May 28th, 2026
Sublime Security
Impersonation: Employee using fabricated identity in initial contact
5d ago
May 28th, 2026
Sublime Security
Business Email Compromise: Request for mobile number via reply thread hijacking
5d ago
May 28th, 2026
Sublime Security
Credential phishing: Fake storage alerts (unsolicited)
5d ago
May 28th, 2026
Sublime Security
Credential phishing: AWS Lambda URL with recipient targeting
5d ago
May 28th, 2026
Sublime Security