Attack Type: Spam

Spam refers to bulk, unsolicited messages, often promoting questionable offers, fake opportunities, or irrelevant content you never asked for. These messages typically ignore basic rules around consent and use shady tactics to sneak past filters, like misspelled words (“W1NNER,” “FREEBlE”) or fake brand names that look close to the real thing (“L0WES,” “C0STC0”).
You’ve probably seen examples: work-from-home schemes with unrealistic pay, miracle health products, SEO pitches warning about your website, or companies pushing “verified” contact lists. Some spam even pretends to be part of an ongoing thread by adding fake “RE:” or “FWD:” subject lines.
Even when the emails look polished or pass authentication checks, they’re often filled with misleading claims, fake urgency, or vague references to prior contact. While not always malicious, spam clutters inboxes, wastes time, and occasionally serves as a delivery method for more serious threats.
Rule Name & Severity
Last Updated
Author
Types, Tactics & Capabilities
BEC/Fraud: Urgent language and suspicious sending/infrastructure patterns
3d ago
Apr 17th, 2026
Sublime Security
Spam: Website errors solicitation
6d ago
Apr 14th, 2026
Sublime Security
Attachment: Cold outreach with invitation subject and not attachment
17d ago
Apr 3rd, 2026
Sublime Security
Service abuse: Google Firebase sender address with suspicious content
18d ago
Apr 2nd, 2026
Sublime Security
Targeting: Specific AOL address
20d ago
Mar 31st, 2026
Sublime Security
Spam: Fake dating profile notification
1mo ago
Mar 20th, 2026
Sublime Security
Service abuse: Domains By Proxy sender
1mo ago
Mar 18th, 2026
Sublime Security
Body HTML: Comment with 24-character hex token
1mo ago
Mar 17th, 2026
Sublime Security
Sender: IP address in local part
1mo ago
Mar 12th, 2026
Sublime Security
Brand impersonation: SendGrid
1mo ago
Mar 12th, 2026
Sublime Security
Spam: Sexually explicit content with emoji in subject from freemail provider
1mo ago
Mar 10th, 2026
Sublime Security
Link: Blogspot hosting explicit romance content
1mo ago
Mar 9th, 2026
Sublime Security
Headers: risky-recover-production message ID
1mo ago
Feb 26th, 2026
Sublime Security
Reconnaissance: Empty message from uncommon sender
1mo ago
Feb 25th, 2026
Sublime Security
Spam: Sendersrv.com with financial communications and unsubscribe language
1mo ago
Feb 24th, 2026
Sublime Security
Reconnaissance: Email address harvesting attempt
1mo ago
Feb 23rd, 2026
Sublime Security
Service abuse: Apple TestFlight with suspicious developer reference
2mo ago
Feb 6th, 2026
Sublime Security
Spam: Commonly observed formatting of unauthorized free giveaways
3mo ago
Jan 14th, 2026
Sublime Security
Suspicious subject with long procedurally generated text blob
3mo ago
Jan 12th, 2026
Sublime Security
Open redirect: Cartoon Network
3mo ago
Jan 12th, 2026
Sublime Security