Attack Type: Spam

Spam refers to bulk, unsolicited messages, often promoting questionable offers, fake opportunities, or irrelevant content you never asked for. These messages typically ignore basic rules around consent and use shady tactics to sneak past filters, like misspelled words (“W1NNER,” “FREEBlE”) or fake brand names that look close to the real thing (“L0WES,” “C0STC0”).
You’ve probably seen examples: work-from-home schemes with unrealistic pay, miracle health products, SEO pitches warning about your website, or companies pushing “verified” contact lists. Some spam even pretends to be part of an ongoing thread by adding fake “RE:” or “FWD:” subject lines.
Even when the emails look polished or pass authentication checks, they’re often filled with misleading claims, fake urgency, or vague references to prior contact. While not always malicious, spam clutters inboxes, wastes time, and occasionally serves as a delivery method for more serious threats.
Rule Name & Severity
Last Updated
Author
Types, Tactics & Capabilities
Spam: Fake dating profile notification
10d ago
Mar 20th, 2026
Sublime Security
Service abuse: Domains By Proxy sender
12d ago
Mar 18th, 2026
Sublime Security
Body HTML: Comment with 24-character hex token
13d ago
Mar 17th, 2026
Sublime Security
Sender: IP address in local part
18d ago
Mar 12th, 2026
Sublime Security
Service abuse: Google Firebase sender address with suspicious content
18d ago
Mar 12th, 2026
Sublime Security
Brand impersonation: SendGrid
18d ago
Mar 12th, 2026
Sublime Security
Spam: Sexually explicit content with emoji in subject from freemail provider
20d ago
Mar 10th, 2026
Sublime Security
Link: Blogspot hosting explicit romance content
21d ago
Mar 9th, 2026
Sublime Security
Headers: risky-recover-production message ID
1mo ago
Feb 26th, 2026
Sublime Security
Reconnaissance: Empty message from uncommon sender
1mo ago
Feb 25th, 2026
Sublime Security
Spam: Sendersrv.com with financial communications and unsubscribe language
1mo ago
Feb 24th, 2026
Sublime Security
Reconnaissance: Email address harvesting attempt
1mo ago
Feb 23rd, 2026
Sublime Security
Service abuse: Apple TestFlight with suspicious developer reference
1mo ago
Feb 6th, 2026
Sublime Security
Spam: Commonly observed formatting of unauthorized free giveaways
2mo ago
Jan 14th, 2026
Sublime Security
Spam: URL shortener with short body content and emojis
2mo ago
Jan 12th, 2026
Sublime Security
Suspicious Links to Cloudflare R2 and Edge Services
2mo ago
Jan 12th, 2026
Sublime Security
Suspicious subject with long procedurally generated text blob
2mo ago
Jan 12th, 2026
Sublime Security
Open redirect: Cartoon Network
2mo ago
Jan 12th, 2026
Sublime Security
BEC/Fraud: Urgent language and suspicious sending/infrastructure patterns
2mo ago
Jan 12th, 2026
Sublime Security
Brand impersonation: Hulu
2mo ago
Jan 12th, 2026
Sublime Security