Sublime Platform

Sublime Platform

#Access Control#Specialized Security

Machine learning project for intuitive threat analysis with a web interface.

Visit Website

An Open and Free Platform for Email Attack Detection

This platform is free and open, designed to detect and prevent email attacks such as Business Email Compromise (BEC), malware, and credential phishing. It provides visibility and control, allows users to hunt for advanced threats, and encourages collaboration within the community. Sublime utilizes Message Query Language (MQL), a specialized language created specifically for describing behaviors in email. MQL is compatible with any email provider, which allows defenders to write, execute, and share Detections-as-Code. The sublime-rules repository contains open-source detection rules and links to community feeds. To learn more about MQL, check out the Introduction to Message Query Language. Additionally, setup instructions, Docker Quickstart, alternative deployment methods, documentation, API details, release logs, and more resources are available.