Skip to content

Latest commit

 

History

History
25 lines (19 loc) · 1.19 KB

README.md

File metadata and controls

25 lines (19 loc) · 1.19 KB

Sublime Logo

Sublime Rules

by Sublime Security

This repo contains open-source detection rules and queries for the Sublime Platform.

Common phishing defense rules

  • CEO, executive, brand, vendor, and contact impersonation
  • Lookalike and homoglyph attacks
  • Suspicious HTML attachments
  • Mass mailer abuse (eg Sendgrid, Constant Contact)
  • Blocking IOCs (sender emails, domains, hashes)

Learn more

Follow us on Twitter for updates on new rules and detection capabilities.

Sublime Platform is currently in early access, which means it's not publicly available yet. You can request early access here.