@trojanfoxtrot@infosec.exchange
Post #3781945
2026-07-12 20:54 UTC
If I gave you a phishing email, how many of tools would open before you could produce IOCs, ATT&CK mappings, campaign relationships, blocklists, and report it?
#infosec
#threatintel
#cybersecurity
Replies (1)
-
@reput_io@infosec.exchange 2026-07-13 09:28
Honestly, too many. And half of them are just to answer one thing: is that link or sender a real service the attacker is hiding behind, or actually shady? Phishing leans on trusted names (SendGrid, a Google Doc, Cloudflare). Sorting the legit hops from the bad one eats most of the time.