[{"data":1,"prerenderedAt":4527},["ShallowReactive",2],{"application-flags":3,"navbar":7,"always-visible-banner":36,"navbar-about-highlight":108,"navbar-resource-highlight":182,"trust-badges":226,"solution-nav":247,"fa-icon-sharp-regular-faFishingRod":387,"fa-icon-solid-faUserSecret":391,"fa-icon-sharp-regular-faLaptopCode":393,"fa-icon-solid-faTabletScreenButton":395,"fa-icon-solid-faThumbsUp":397,"fa-icon-solid-faPlugCircleXmark":399,"fa-icon-sharp-regular-faPuzzlePiece":401,"fa-icon-solid-faFileCircleXmark":403,"fa-icon-solid-faGhost":406,"fa-icon-solid-faQrcode":409,"fa-icon-solid-faCookieBite":411,"fa-icon-sharp-regular-faUserSecret":413,"fa-icon-sharp-regular-faRadar":415,"fa-icon-sharp-regular-faSatelliteDish":417,"fa-icon-sharp-regular-faShieldCheck":419,"fa-icon-sharp-regular-faBrainCircuit":421,"fa-icon-solid-faMobileScreenButton":423,"fa-icon-brands-faChrome":425,"fa-icon-solid-faDisplay":427,"fa-icon-solid-faFilter":429,"fa-icon-solid-faCloudArrowUp":431,"blog\u002Fagentic-threat-hunting-benefits-for-customers":433,"blog-topics":4120},[4],{"name":5,"enabled":6},"maintenanceMode",false,[8],{"createdDate":9,"id":10,"name":11,"modelId":12,"published":13,"meta":14,"query":22,"data":23,"variations":28,"lastUpdated":29,"firstPublished":30,"testRatio":31,"createdBy":32,"lastUpdatedBy":33,"folders":34,"rev":35},1742208588866,"1c7a4e423bf54ac1a328bb4063459ef2","Banner","1c6207a5f24948ab82d4a0b17f251193","published",{"breakpoints":15,"hasAutosaves":19,"kind":20,"lastPreviewUrl":21},{"medium":16,"small":17,"xsmall":18},768,640,320,true,"data","",[],{"link":24,"text":25,"type":26,"url":27},{},"Get our latest report analyzing browser attack techniques in 2026","web-banner","https:\u002F\u002Fpushsecurity.com\u002Fresources\u002Fbrowser-attacks-report",{},1774258294825,1742208637545,1,"CydmZnOWU1XuAaLhEDCoYNM4Z8W2","jKjF9r5jcvXU8tzZEfFQm31Iyvr2",[],"brvjc1sslx8",{"createdBy":37,"createdDate":38,"data":39,"folders":94,"id":95,"lastUpdated":96,"lastUpdatedBy":97,"meta":98,"modelId":102,"name":103,"published":13,"query":104,"testRatio":31,"variations":105,"firstPublished":106,"stageModifiedSincePublish":6,"rev":107},"ST0tXQM8slWpFrmioqKHmENB2qe2",1774965361051,{"ctaText":40,"text":41,"url":21,"blocks":42,"state":90},"ewrererw","testrfesssssssssss",[43,70,78],{"@type":44,"@version":45,"id":46,"component":47,"responsiveStyles":60},"@builder.io\u002Fsdk:Element",2,"builder-ca12c06a52de41d7b8743da53118cd38",{"name":48,"tag":48,"options":49,"isRSC":59},"TopBannerContent",{"text":50,"ctaText":51,"url":52,"mainText":53,"cta":56},"New Webinar Series: Join John Hammond, Troy Hunt, and Matt Johansen for the State of Browser Attacks","Save Your Spot","https:\u002F\u002Fpushsecurity.com\u002Fwebinar\u002Fstate-of-browser-security",{"content":54,"fontSize":55},"\u003Cp class=\"\">Employees using shadow AI tools? Push blocks them in the browser and enforces your AI policy.\u003C\u002Fp>","text-base",{"content":57,"fontSize":55,"url":58},"\u003Cp class=\"\">Get a free trial →\u003C\u002Fp>","https:\u002F\u002Fpushsecurity.com\u002Flp\u002Fshadow-ai-trial",null,{"large":61},{"display":62,"flexDirection":63,"position":64,"flexShrink":65,"boxSizing":66,"marginTop":67,"marginBottom":67,"fontSize":68,"fontWeight":69},"flex","column","relative","0","border-box",".56rem","1.125rem","700",{"@type":44,"@version":45,"id":71,"component":72,"responsiveStyles":76},"builder-a2e1f4b9f30b464bb814d7f5de5b0aa7",{"name":73,"options":74,"isRSC":59},"Custom Code",{"code":75,"scriptsClientOnly":6},"\u003Cstyle>\n  .top-banner.bg-web-orange{background:rgb(114, 79, 255);}\n\u003C\u002Fstyle>\n",{"large":77},{"display":62,"flexDirection":63,"position":64,"flexShrink":65,"boxSizing":66},{"id":79,"@type":44,"tagName":80,"properties":81,"responsiveStyles":85},"builder-pixel-65og51xnky7","img",{"src":82,"aria-hidden":83,"alt":21,"role":84,"width":65,"height":65},"https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fpixel?apiKey=f3a1111ff5be48cdbb123cd9f5795a05","true","presentation",{"large":86},{"height":65,"width":65,"display":87,"opacity":65,"overflow":88,"pointerEvents":89},"block","hidden","none",{"deviceSize":91,"location":92},"large",{"path":21,"query":93},{},[],"fd266d0172cc47429be7ad10f48c99ad",1787595768418,"tFqFyIzyczYOCRogcShKk6KBmEB2",{"breakpoints":99,"hasAutosaves":19,"hasErrors":6,"hasLinks":6,"kind":100,"lastPreviewUrl":101},{"medium":16,"small":17,"xsmall":18},"component","https:\u002F\u002Fpushsecurity.com\u002F?builder.space=f3a1111ff5be48cdbb123cd9f5795a05&builder.user.permissions=read%2Ccreate%2Cpublish%2CeditDesigns%2CeditLayouts%2CeditLayers%2CeditContentPriority%2CeditFolders%2CcreateProjects%2CsendPullRequests%2CfusionHostingPublish&builder.user.role.name=Designer&builder.user.role.id=creator&builder.cachebust=true&builder.preview=always-visible-banner&builder.noCache=true&builder.allowTextEdit=true&__builder_editing__=true&builder.overrides.always-visible-banner=fd266d0172cc47429be7ad10f48c99ad&builder.overrides.fd266d0172cc47429be7ad10f48c99ad=fd266d0172cc47429be7ad10f48c99ad&builder.options.locale=Default","0678d178ec8b41efb8a23c09dba7874d","always visible banner",[],{},1774968080803,"y4fj9dbjb7k",[109,145],{"createdBy":32,"createdDate":110,"data":111,"folders":134,"id":135,"lastUpdated":136,"lastUpdatedBy":32,"meta":137,"modelId":139,"name":140,"published":13,"query":141,"stageModifiedSincePublish":6,"testRatio":31,"variations":142,"firstPublished":143,"rev":144},1776247359804,{"link":112,"testimonial":113,"testimonialLink":133,"type":116},{},{"@type":114,"id":115,"model":116,"value":117},"@builder.io\u002Fcore:Reference","f028f2b685bb47cd8bf9e82a26dd5a79","testimonial",{"query":118,"folders":119,"createdDate":120,"id":115,"name":121,"modelId":122,"published":13,"data":123,"variations":127,"lastUpdated":128,"firstPublished":129,"testRatio":31,"createdBy":37,"lastUpdatedBy":37,"meta":130,"rev":132},[],[],1735823466309,"We found Push to be more accurate when compared to competitors and the browser agent offered features that others couldn’t match.","42035571a56940ac98bff4544aa79aa5",{"author":124,"jobTitle":125,"quote":121,"image":126},"Jason Waits","\u003Cp>CISO at Inductive Automation\u003C\u002Fp>","https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fimage\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2Ff04c0c0689ce4a89ac0f0708d78c0a07",{},1735910703862,1735823501152,{"kind":20,"lastPreviewUrl":21,"breakpoints":131,"hasAutosaves":19},{"small":17,"medium":16},"8lr4aug0kgg","\u002Fcustomer-stories\u002Finductive-automation",[],"9136a8f18b3b4a6ba29b8653a99372b1",1776247404986,{"breakpoints":138,"hasAutosaves":6,"kind":20,"lastPreviewUrl":21},{"medium":16,"small":17,"xsmall":18},"20d9eaa352304613b3d1a794b400703d","testimonial-inductive-automation",[],{},1776247404973,"tmziibs9ga9",{"createdBy":32,"createdDate":146,"data":147,"folders":174,"id":175,"lastUpdated":176,"lastUpdatedBy":32,"meta":177,"modelId":139,"name":172,"published":13,"query":179,"stageModifiedSincePublish":6,"testRatio":31,"variations":180,"firstPublished":181,"rev":144},1776255761419,{"description":148,"image":149,"link":150,"testimonial":153,"title":172,"type":173},"Learn about the latest techniques being used in the wild.","https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fimage\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2F7b4a5ebf81d64e8c9d7fc35f6c96c4a9",{"text":151,"url":152},"Download now","\u002Fresources\u002Fbrowser-attacks-report",{"@type":114,"id":154,"model":116,"value":155},"192acbb1f9ca4cac918c0ec435a8bae3",{"query":156,"folders":157,"createdDate":158,"id":154,"name":159,"modelId":122,"published":13,"data":160,"variations":166,"lastUpdated":167,"firstPublished":168,"testRatio":31,"createdBy":37,"lastUpdatedBy":32,"meta":169,"rev":171},[],[],1728981467463,"Push does for identity what CrowdStrike did for the endpoint",{"video":161,"jobTitle":162,"author":163,"qoute":21,"quote":164,"image":165},"https:\u002F\u002Fcdn.builder.io\u002Fo\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2F8b30e8ca50064058bbaef0f3c6164575%2Fcompressed?apiKey=f3a1111ff5be48cdbb123cd9f5795a05&token=8b30e8ca50064058bbaef0f3c6164575&alt=media&optimized=true","\u003Cp>Deputy CISO at Microsoft\u003C\u002Fp>\u003Cp>Former LinkedIn, Slack, Palantir\u003C\u002Fp>","Geoff Belknap","Push does for identity what CrowdStrike did for the endpoint.","https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fimage\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2F748f0ad0a5064a00a13f4721fcc8dea1",{},1742902158597,1728981782923,{"kind":20,"lastPreviewUrl":21,"breakpoints":170,"hasAutosaves":19},{"small":17,"medium":16},"w423t83vzcq","Report: 2026 Browser Attack Techniques","resource",[],"05a9322735fc427db12e2740e4302300",1776255810913,{"breakpoints":178,"hasAutosaves":6,"kind":20,"lastPreviewUrl":21},{"medium":16,"small":17,"xsmall":18},[],{},1776255810900,[183,205],{"createdBy":32,"createdDate":184,"data":185,"folders":195,"id":196,"lastUpdated":197,"lastUpdatedBy":32,"meta":198,"modelId":200,"name":172,"published":13,"query":201,"stageModifiedSincePublish":6,"testRatio":31,"variations":202,"firstPublished":203,"rev":204},1776256900280,{"description":148,"image":149,"link":186,"testimonial":187,"title":172,"type":173},{"text":151,"url":152},{"@type":114,"id":154,"model":116,"value":188},{"query":189,"folders":190,"createdDate":158,"id":154,"name":159,"modelId":122,"published":13,"data":191,"variations":192,"lastUpdated":167,"firstPublished":168,"testRatio":31,"createdBy":37,"lastUpdatedBy":32,"meta":193,"rev":171},[],[],{"video":161,"jobTitle":162,"author":163,"qoute":21,"quote":164,"image":165},{},{"kind":20,"lastPreviewUrl":21,"breakpoints":194,"hasAutosaves":19},{"small":17,"medium":16},[],"1f429607996e4e5fae8fe3f9b9610e55",1776256937553,{"breakpoints":199,"hasAutosaves":6,"kind":20,"lastPreviewUrl":21},{"medium":16,"small":17,"xsmall":18},"4829faa81e7c4ee8bd2d000e160e8d3c",[],{},1776256937540,"h00i46zz8yj",{"createdBy":32,"createdDate":206,"data":207,"folders":217,"id":218,"lastUpdated":219,"lastUpdatedBy":32,"meta":220,"modelId":200,"name":222,"published":13,"query":223,"stageModifiedSincePublish":6,"testRatio":31,"variations":224,"firstPublished":225,"rev":204},1776256949234,{"link":208,"testimonial":209,"testimonialLink":133,"type":116},{},{"@type":114,"id":115,"model":116,"value":210},{"query":211,"folders":212,"createdDate":120,"id":115,"name":121,"modelId":122,"published":13,"data":213,"variations":214,"lastUpdated":128,"firstPublished":129,"testRatio":31,"createdBy":37,"lastUpdatedBy":37,"meta":215,"rev":132},[],[],{"author":124,"jobTitle":125,"quote":121,"image":126},{},{"kind":20,"lastPreviewUrl":21,"breakpoints":216,"hasAutosaves":19},{"small":17,"medium":16},[],"ce043785b71b4ece98eac811ecf4ba10",1776256974140,{"breakpoints":221,"hasAutosaves":6,"kind":20,"lastPreviewUrl":21},{"medium":16,"small":17,"xsmall":18},"inductive-automation",[],{},1776256974130,[227,231,235,239,243],{"title":228,"logo":229,"createdDate":230},"SOC2","https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fimage\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2Fb6727a5e00004d6e9e69fc3068b8b64c",1784291539953,{"title":232,"logo":233,"createdDate":234},"GDPR","https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fimage\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2Ffe49f53211674deaa5a6640d929cdf42?format=webp",1784291672535,{"title":236,"logo":237,"createdDate":238},"Cyber essentials","https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fimage\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2F53558c1045a342a7a28def960cd54ae7?format=webp",1784291702710,{"title":240,"logo":241,"createdDate":242},"ISO IEC 27001","https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fimage\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2F578a404a61cf45db951a41fe3554d12d",1784291766222,{"title":244,"logo":245,"createdDate":246},"ISO IEC 27701","https:\u002F\u002Fcdn.builder.io\u002Fapi\u002Fv1\u002Fimage\u002Fassets%2Ff3a1111ff5be48cdbb123cd9f5795a05%2Fbe219844b13242fbba531959579a753c",1784291858848,[248,317,362],{"id":249,"label":250,"text":21,"navIcon":251,"items":252},"stop-browser-based-attacks","Stop browser-based attacks","solid:faShieldHalved",[253,258,263,268,273,278,283,288,293,297,302,307,312],{"title":254,"text":255,"url":256,"navIcon":257},"Phishing","Detect phishing behaviorally in the browser, regardless of the payload or delivery channel.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fzero-day-phishing","sharp-regular:faFishingRod",{"title":259,"text":260,"url":261,"navIcon":262},"Adversary-in-the-Middle","Detect and block MFA-bypassing AiTM phishing pages in real-time.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fadversary-in-the-middle-attacks","solid:faUserSecret",{"title":264,"text":265,"url":266,"navIcon":267},"ClickFix (and variants)","Intercept malicious copy and paste attacks at the point of interaction.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fclickfix-fix-variants","sharp-regular:faLaptopCode",{"title":269,"text":270,"url":271,"navIcon":272},"Device code phishing","Detect and block device code phishing kits designed to get around passkeys.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fdevice-code-phishing","solid:faTabletScreenButton",{"title":274,"text":275,"url":276,"navIcon":277},"Consent phishing","Detect and block malicious OAuth consent grants before access is authorized.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fconsent-phishing","solid:faThumbsUp",{"title":279,"text":280,"url":281,"navIcon":282},"Malicious OAuth integrations","Detect and block the root cause of SaaS supply chain attacks.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fmalicious-oauth-integrations","solid:faPlugCircleXmark",{"title":284,"text":285,"url":286,"navIcon":287},"Malicious browser extensions","Inventory, monitor, and block risky browser extensions.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fmalicious-browser-extensions","sharp-regular:faPuzzlePiece",{"title":289,"text":290,"url":291,"navIcon":292},"Malicious file downloads","Control which files users can download by type, source, and user group.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fmalicious-file-downloads","solid:faFileCircleXmark",{"title":294,"text":295,"url":296,"navIcon":292},"Infostealers","Detect infostealer delivery and respond to a compromise.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Finfostealer-malware",{"title":298,"text":299,"url":300,"navIcon":301},"Ghost logins","Surface hidden login paths that bypass SSO and expose accounts.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fghost-logins","solid:faGhost",{"title":303,"text":304,"url":305,"navIcon":306},"Mobile phishing (QR & SMS)","Detect phishing regardless of whether it arrives via email, SMS, or QR code.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fmobile-phishing-qr-code-sms","solid:faQrcode",{"title":308,"text":309,"url":310,"navIcon":311},"Credential stuffing","Identify reused and compromised credentials across SaaS logins.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fcredential-stuffing","custom:credentialStuffing",{"title":313,"text":314,"url":315,"navIcon":316},"Session hijacking","Detect and respond to stolen session token replay with browser session markers.","\u002Fsolution\u002Fstop-browser-based-attacks\u002Fsession-hijacking","solid:faCookieBite",{"id":318,"label":319,"text":21,"navIcon":320,"items":321},"achieve-security-outcomes","Achieve security outcomes","solid:faCheckToSlot",[322,327,332,337,342,347,352,357],{"title":323,"text":324,"url":325,"navIcon":326},"Stop account takeover","Stop ATO with stolen credential and compromised token detection.","\u002Fsolution\u002Fachieve-security-outcomes\u002Fstop-account-takeover","sharp-regular:faUserSecret",{"title":328,"text":329,"url":330,"navIcon":331},"Harden unmanaged identities","Harden access paths with visibility, detection, and guardrails.","\u002Fsolution\u002Fachieve-security-outcomes\u002Fharden-unmanaged-identities","sharp-regular:faRadar",{"title":333,"text":334,"url":335,"navIcon":336},"Investigate browser-related incidents","Investigate and respond faster with unique browser telemetry.","\u002Fsolution\u002Fachieve-security-outcomes\u002Finvestigate-browser-related-incidents","sharp-regular:faSatelliteDish",{"title":338,"text":339,"url":340,"navIcon":341},"Secure shadow SaaS","See and control shadow SaaS in the browser.","\u002Fsolution\u002Fachieve-security-outcomes\u002Fsecure-shadow-saas","sharp-regular:faShieldCheck",{"title":343,"text":344,"url":345,"navIcon":346},"Secure AI","See and control AI apps in the browser.","\u002Fsolution\u002Fachieve-security-outcomes\u002Fsecure-ai","sharp-regular:faBrainCircuit",{"title":348,"text":349,"url":350,"navIcon":351},"Secure BYOD","Extend consistent browser-based protection to unmanaged devices.","\u002Fsolution\u002Fachieve-security-outcomes\u002Fsecure-bring-your-own-device","solid:faMobileScreenButton",{"title":353,"text":354,"url":355,"navIcon":356},"Secure Chromebooks","Secure browser activity on Chromebooks without endpoint agents.","\u002Fsolution\u002Fachieve-security-outcomes\u002Fsecure-chromebooks","brands:faChrome",{"title":358,"text":359,"url":360,"navIcon":361},"Investigate and stop data loss","Detect and prevent data loss across AI tools, apps, and sessions.","\u002Fsolution\u002Fachieve-security-outcomes\u002Finvestigate-and-stop-data-loss","custom:investigateAndStopDataLoss",{"id":363,"label":364,"text":21,"navIcon":365,"items":366},"tool-replacements","Tool replacements","solid:faScrewdriverWrench",[367,372,377,382],{"title":368,"text":369,"url":370,"navIcon":371},"Remote browser isolation","Detect attacks that look like normal browsing.","\u002Fsolution\u002Ftool-replacements\u002Fremote-browser-isolation","solid:faDisplay",{"title":373,"text":374,"url":375,"navIcon":376},"Secure web gateways","Detect attacks inside the browser after SWGs allowed the connection.","\u002Fsolution\u002Ftool-replacements\u002Fsecure-web-gateways","solid:faFilter",{"title":378,"text":379,"url":380,"navIcon":381},"Cloud access security broker","Catch browser-based identity threats in real time, not after the fact.","\u002Fsolution\u002Ftool-replacements\u002Fcloud-access-security-broker","solid:faCloudArrowUp",{"title":383,"text":384,"url":385,"navIcon":386},"Security awareness training","Block real phishing instead of training users on simulations.","\u002Fsolution\u002Ftool-replacements\u002Fsecurity-awareness-training","custom:securityAwareness",{"w":388,"h":389,"d":390},448,512,"M284.6 0l91.4 0 0 160-48 0 0-112-36.6 0-203.4 58.1 0 181.9 40 0 0 224-128 0 0-224 40 0 0-218.1 17.4-5 224-64 3.2-.9zM80 336l-32 0 0 128 32 0 0-128zm176 8c0-76.8 64-136 96-152 32 16 96 75.2 96 152 0 32-16 80-64 112l32 40 0 16-128 0 0-16 32-40c-48-32-64-80-64-112zm128-32a24 24 0 1 0 -48 0 24 24 0 1 0 48 0z",{"w":388,"h":389,"d":392},"M171-16c-36.4 0-57.8 58.3-68.3 112L72 96c-13.3 0-24 10.7-24 24s10.7 24 24 24l24 0 0 32c0 17 3.3 33.2 9.3 48l-9.3 0 0 0-20.5 0c-15.2 0-27.5 12.3-27.5 27.5 0 3 .5 5.9 1.4 8.7l28.9 86.6C40.2 379.6 16 428.1 16 482.3 16 498.7 29.3 512 45.7 512l356.6 0c16.4 0 29.7-13.3 29.7-29.7 0-54.2-24.2-102.7-62.3-135.4l28.9-86.6c.9-2.8 1.4-5.7 1.4-8.7 0-15.2-12.3-27.5-27.5-27.5l-20.5 0 0 0-9.3 0c6-14.8 9.3-31 9.3-48l0-32 24 0c13.3 0 24-10.7 24-24s-10.7-24-24-24l-30.7 0c-10.4-53.7-31.9-112-68.3-112-9.6 0-19 3.9-27.5 8.2-8.2 4.1-18.4 7.8-25.5 7.8s-17.3-3.7-25.5-7.8C190-12.1 180.6-16 171-16zm93.7 484.4l-24.8-70.9 27.9-32.5c2.7-3.2 4.2-7.2 4.2-11.4 0-9.7-7.8-17.5-17.5-17.5l-61 0c-9.7 0-17.5 7.8-17.5 17.5 0 4.2 1.5 8.2 4.2 11.4l27.9 32.5-24.8 70.9-57-180.4 35.7 0c18.4 10.2 39.5 16 62 16s43.6-5.8 62-16l35.7 0-57 180.4zM224 256c-34.7 0-64.2-22.1-75.3-53 5.7 3.2 12.3 5 19.3 5l12.4 0c16.5 0 31.1-10.6 36.3-26.2 2.3-7 12.2-7 14.5 0 5.2 15.6 19.9 26.2 36.3 26.2l12.4 0c7 0 13.6-1.8 19.3-5-11.1 30.9-40.6 53-75.3 53z",{"w":17,"h":389,"d":394},"M112 80l416 0 0 224 48 0 0-272-512 0 0 272 48 0 0-224zM48 404.1l0-4.1 544 0 0 4.1-27.9 27.9-488.2 0-27.9-27.9zM592 352l-592 0 0 72 56 56 528 0 56-56 0-72-48 0zM281 169l17-17-33.9-33.9c-6.1 6.1-27.8 27.8-65 65l-17 17c6.1 6.1 27.8 27.8 65 65l17 17 33.9-33.9c-9-9-25-25-48-48l31-31zM393 135l-17-17-33.9 33.9c9 9 25 25 48 48-23 23-39 39-48 48L376 281.9c6.1-6.1 27.8-27.8 65-65l17-17c-6.1-6.1-27.8-27.8-65-65z",{"w":388,"h":389,"d":396},"M0 64C0 28.7 28.7 0 64 0L384 0c35.3 0 64 28.7 64 64l0 384c0 35.3-28.7 64-64 64L64 512c-35.3 0-64-28.7-64-64L0 64zM256 432a32 32 0 1 0 -64 0 32 32 0 1 0 64 0zM384 64l-320 0 0 288 320 0 0-288z",{"w":389,"h":389,"d":398},"M80 160c17.7 0 32 14.3 32 32l0 256c0 17.7-14.3 32-32 32l-48 0c-17.7 0-32-14.3-32-32L0 192c0-17.7 14.3-32 32-32l48 0zM270.6 16C297.9 16 320 38.1 320 65.4l0 4.2c0 6.8-1.3 13.6-3.8 19.9L288 160 448 160c26.5 0 48 21.5 48 48 0 19.7-11.9 36.6-28.9 44 17 7.4 28.9 24.3 28.9 44 0 23.4-16.8 42.9-39 47.1 4.4 7.3 7 15.8 7 24.9 0 22.2-15 40.8-35.4 46.3 2.2 5.5 3.4 11.5 3.4 17.7 0 26.5-21.5 48-48 48l-87.9 0c-36.3 0-71.6-12.4-99.9-35.1L184 435.2c-15.2-12.1-24-30.5-24-50l0-186.6c0-14.9 3.5-29.6 10.1-42.9L226.3 43.3C234.7 26.6 251.8 16 270.6 16z",{"w":17,"h":389,"d":400},"M192-32c17.7 0 32 14.3 32 32l0 96 128 0 0-96c0-17.7 14.3-32 32-32s32 14.3 32 32l0 96 64 0c17.7 0 32 14.3 32 32s-14.3 32-32 32l0 48.7c-98.6 8.1-176 90.7-176 191.3 0 27.3 5.7 53.3 16 76.9l0 3.1c0 17.7-14.3 32-32 32s-32-14.3-32-32l0-66.7C165.2 398.1 96 319.1 96 224l0-64c-17.7 0-32-14.3-32-32S78.3 96 96 96l64 0 0-96c0-17.7 14.3-32 32-32zM496 256a144 144 0 1 1 0 288 144 144 0 1 1 0-288zm59.3 107.3c6.2-6.2 6.2-16.4 0-22.6s-16.4-6.2-22.6 0l-36.7 36.7-36.7-36.7c-6.2-6.2-16.4-6.2-22.6 0s-6.2 16.4 0 22.6l36.7 36.7-36.7 36.7c-6.2 6.2-6.2 16.4 0 22.6s16.4 6.2 22.6 0l36.7-36.7 36.7 36.7c6.2 6.2 16.4 6.2 22.6 0s6.2-16.4 0-22.6l-36.7-36.7 36.7-36.7z",{"w":389,"h":389,"d":402},"M201.1 57.3c-7 5.3-9.1 10.7-9.1 14.7 0 4.5 2.8 11.2 12.4 16.9l11.6 7 0 48.1-168 0 0 60.5c7.4-2.9 15.5-4.5 24-4.5 43.1 0 72 39.4 72 80s-28.9 80-72 80c-8.5 0-16.6-1.6-24-4.5l0 108.5 108.5 0c-2.9-7.4-4.5-15.5-4.5-24 0-43.1 39.4-72 80-72s80 28.9 80 72c0 8.5-1.6 16.6-4.5 24l60.5 0 0-168 48.1 0 7 11.6c5.8 9.6 12.4 12.4 16.9 12.4 4 0 9.5-2.1 14.7-9.1s9.3-17.9 9.3-30.9-4-23.8-9.3-30.9-10.7-9.1-14.7-9.1c-4.5 0-11.2 2.8-16.9 12.4l-7 11.6-48.1 0 0-120-120 0 0-48.1 11.6-7c9.6-5.8 12.4-12.4 12.4-16.9 0-4-2.1-9.5-9.1-14.7S245 48 232 48 208.2 52 201.1 57.3zM172.3 18.9C188.5 6.8 209.6 0 232 0S275.5 6.8 291.7 18.9 320 49.5 320 72c0 8.6-1.8 16.7-4.9 24l100.9 0 0 100.9c7.3-3.1 15.4-4.9 24-4.9 22.5 0 41 12.2 53.1 28.3s18.9 37.3 18.9 59.7-6.8 43.5-18.9 59.7-30.6 28.3-53.1 28.3c-8.6 0-16.7-1.8-24-4.9l0 148.9-168 0 0-49.3 8.2-7.2c5.4-4.7 7.8-10.3 7.8-15.5 0-9.9-10.7-24-32-24s-32 14.1-32 24c0 5.3 2.4 10.8 7.8 15.5l8.2 7.2 0 49.3-216 0 0-216 49.3 0 7.2 8.2c4.7 5.4 10.3 7.8 15.5 7.8 9.9 0 24-10.7 24-32s-14.1-32-24-32c-5.3 0-10.8 2.4-15.5 7.8L49.3 264 0 264 0 96 148.9 96c-3.1-7.3-4.9-15.4-4.9-24 0-22.5 12.2-41 28.3-53.1z",{"w":404,"h":389,"d":405},576,"M96 0C60.7 0 32 28.7 32 64l0 384c0 35.3 28.7 64 64 64l180 0c-22.7-31.5-36-70.2-36-112 0-100.6 77.4-183.2 176-191.3l0-38.1c0-17-6.7-33.3-18.7-45.3L290.7 18.7C278.7 6.7 262.5 0 245.5 0L96 0zM357.5 176L264 176c-13.3 0-24-10.7-24-24L240 58.5 357.5 176zM432 544a144 144 0 1 0 0-288 144 144 0 1 0 0 288zm59.3-180.7l-36.7 36.7 36.7 36.7c6.2 6.2 6.2 16.4 0 22.6s-16.4 6.2-22.6 0l-36.7-36.7-36.7 36.7c-6.2 6.2-16.4 6.2-22.6 0s-6.2-16.4 0-22.6l36.7-36.7-36.7-36.7c-6.2-6.2-6.2-16.4 0-22.6s16.4-6.2 22.6 0l36.7 36.7 36.7-36.7c6.2-6.2 16.4-6.2 22.6 0s6.2 16.4 0 22.6z",{"w":407,"h":389,"d":408},384,"M40.1 467.1l-11.2 9C25.7 478.6 21.8 480 17.8 480 8 480 0 472 0 462.2L0 192C0 86 86 0 192 0S384 86 384 192l0 270.2c0 9.8-8 17.8-17.8 17.8-4 0-7.9-1.4-11.1-3.9l-11.2-9c-13.4-10.7-32.8-9-44.1 3.9L269.3 506c-3.3 3.8-8.2 6-13.3 6s-9.9-2.2-13.3-6l-26.6-30.5c-12.7-14.6-35.4-14.6-48.2 0L141.3 506c-3.3 3.8-8.2 6-13.3 6s-9.9-2.2-13.3-6L84.2 471c-11.3-12.9-30.7-14.6-44.1-3.9zM160 192a32 32 0 1 0 -64 0 32 32 0 1 0 64 0zm96 32a32 32 0 1 0 0-64 32 32 0 1 0 0 64z",{"w":388,"h":389,"d":410},"M64 160l64 0 0-64-64 0 0 64zM0 80C0 53.5 21.5 32 48 32l96 0c26.5 0 48 21.5 48 48l0 96c0 26.5-21.5 48-48 48l-96 0c-26.5 0-48-21.5-48-48L0 80zM64 416l64 0 0-64-64 0 0 64zM0 336c0-26.5 21.5-48 48-48l96 0c26.5 0 48 21.5 48 48l0 96c0 26.5-21.5 48-48 48l-96 0c-26.5 0-48-21.5-48-48l0-96zM320 96l0 64 64 0 0-64-64 0zM304 32l96 0c26.5 0 48 21.5 48 48l0 96c0 26.5-21.5 48-48 48l-96 0c-26.5 0-48-21.5-48-48l0-96c0-26.5 21.5-48 48-48zM288 352a32 32 0 1 1 0-64 32 32 0 1 1 0 64zm0 64c17.7 0 32 14.3 32 32s-14.3 32-32 32-32-14.3-32-32 14.3-32 32-32zm96 32c0-17.7 14.3-32 32-32s32 14.3 32 32-14.3 32-32 32-32-14.3-32-32zm32-96a32 32 0 1 1 0-64 32 32 0 1 1 0 64zm-32 32a32 32 0 1 1 -64 0 32 32 0 1 1 64 0z",{"w":389,"h":389,"d":412},"M257.5 27.6c-.8-5.4-4.9-9.8-10.3-10.6-22.1-3.1-44.6 .9-64.4 11.4l-74 39.5C89.1 78.4 73.2 94.9 63.4 115L26.7 190.6c-9.8 20.1-13 42.9-9.1 64.9l14.5 82.8c3.9 22.1 14.6 42.3 30.7 57.9l60.3 58.4c16.1 15.6 36.6 25.6 58.7 28.7l83 11.7c22.1 3.1 44.6-.9 64.4-11.4l74-39.5c19.7-10.5 35.6-27 45.4-47.2l36.7-75.5c9.8-20.1 13-42.9 9.1-64.9-.9-5.3-5.3-9.3-10.6-10.1-51.5-8.2-92.8-47.1-104.5-97.4-1.8-7.6-8-13.4-15.7-14.6-54.6-8.7-97.7-52-106.2-106.8zM208 144a32 32 0 1 1 0 64 32 32 0 1 1 0-64zM144 336a32 32 0 1 1 64 0 32 32 0 1 1 -64 0zm224-64a32 32 0 1 1 0 64 32 32 0 1 1 0-64z",{"w":388,"h":389,"d":414},"M144-16l-48 112-48 0 0 48 48 0 0 32c0 17 3.3 33.2 9.3 48l-73.3 0 0 32 5.3 16 26.7 80-64 160 51.7 0 56.9-142.2 6.5-16.3c-1-3.1-10.1-30.3-27.2-81.5l51.4 0c22.6 19.9 52.2 32 84.7 32s62.1-12.1 84.7-32l51.4 0c-17.1 51.2-26.1 78.4-27.2 81.5l6.5 16.3 56.9 142.2 51.7 0-64-160 26.7-80 5.3-16 0-32-73.3 0c6-14.8 9.3-31 9.3-48l0-32 48 0 0-48-48 0-48-112-32 0-48 32-48-32-32 0zm80 272c-32.8 0-61-19.7-73.3-48l57.3 0 16-40 16 40 57.3 0c-12.3 28.3-40.5 48-73.3 48zm17.5 139.6l30.5-35.6 0-24-96 0 0 24 30.5 35.6-46.5 116.4 128 0-46.5-116.4z",{"w":389,"h":389,"d":416},"M497.4 49l17-17-33.9-33.9C473.6 4.9 453.3 25.2 419.7 58.8 375.4 22.1 318.5 0 256.4 0 115.1 0 .4 114.6 .4 256s114.6 256 256 256 256-114.6 256-256l-48 0c0 114.9-93.1 208-208 208s-208-93.1-208-208 93.1-208 208-208c48.8 0 93.7 16.8 129.1 44.9l-45.7 45.7c-23.5-16.8-52.3-26.6-83.4-26.6-79.5 0-144 64.5-144 144s64.5 144 144 144 144-64.5 144-144l-48 0c0 53-43 96-96 96s-96-43-96-96 43-96 96-96c17.8 0 34.5 4.8 48.8 13.3-52 52-79.5 79.5-82.7 82.7l33.9 33.9 17-17 224-224z",{"w":389,"h":389,"d":418},"M208 0l24 0C386.6 0 512 125.4 512 280l0 24-48 0 0-24C464 151.9 360.1 48 232 48l-24 0 0-48zm24 96c101.6 0 184 82.4 184 184l0 24-48 0 0-24c0-75.1-60.9-136-136-136l-24 0 0-48 24 0zM48 256c0 114.9 93.1 208 208 208 22.9 0 45-3.7 65.6-10.5l-263-263C51.7 211 48 233.1 48 256zM0 256c0-36.5 7.6-71.3 21.4-102.7 6.7-15.3 14.9-29.9 24.4-43.5 7.7 7.7 61.5 61.5 161.2 161.2 30.5-30.5 49.5-49.5 57-57L297.9 248c-7.5 7.5-26.5 26.5-57 57 99.7 99.7 153.5 153.5 161.2 161.2-13.6 9.5-28.2 17.7-43.5 24.4-31.4 13.8-66.2 21.4-102.7 21.4-141.4 0-256-114.6-256-256z",{"w":389,"h":389,"d":420},"M267.6 4.5l207.5 80.5 19.2 7.4 1.2 20.5c2.9 50-4.9 126.3-37.3 200.9-32.7 75.2-91.1 150-189.4 192.5l-12.7 5.5-12.7-5.5C144.9 463.9 86.6 389.2 53.9 313.9 21.5 239.3 13.7 162.9 16.6 113L17.8 92.5 37 85 244.5 4.5 256 0 267.6 4.5zM64.1 126C63.1 169.5 71 232.9 97.9 294.8 126.1 359.7 175 422.4 256 459.6 337.1 422.4 385.9 359.7 414.2 294.8 441 232.9 449 169.5 448 126L256 51.5 64.1 126zm302.3 44.7L352.3 190.1 249.8 330.9 233 354c-8.8-9.1-30.9-32-66.2-68.6l-16.7-17.3 34.5-33.3c9.5 9.8 23.9 24.7 43.2 44.7l85.6-117.7 14.1-19.4 38.8 28.2z",{"w":389,"h":389,"d":422},"M192 48l40 0 0 108-12.4 0c-7.6-16.5-24.3-28-43.6-28-26.5 0-48 21.5-48 48s21.5 48 48 48c19.4 0 36.1-11.5 43.6-28l12.4 0 0 56-92 0 0 56.4c-16.5 7.6-28 24.3-28 43.6 0 26.5 21.5 48 48 48s48-21.5 48-48c0-19.4-11.5-36.1-28-43.6l0-16.4 52 0 0 172-40 0c-16.8 0-31.2-10.3-37.1-25.1l-6.4-16-17.2 1c-1.1 .1-2.2 .1-3.2 .1-30.9 0-56-25.1-56-56 0-9.5 2.4-18.5 6.5-26.3l8.7-16.2-13.4-12.6c-11-10.2-17.8-24.8-17.8-40.9 0-21.6 12.2-40.4 30.3-49.8l22.6-11.7-13.1-21.9c-5-8.4-7.9-18.1-7.9-28.6 0-30.9 25.1-56 56-56l24 0 0-32c0-13.3 10.7-24 24-24zm88 148l12.4 0c7.6 16.5 24.3 28 43.6 28 26.5 0 48-21.5 48-48s-21.5-48-48-48c-19.4 0-36.1 11.5-43.6 28l-12.4 0 0-108 40 0c13.3 0 24 10.7 24 24l0 32 24 0c30.9 0 56 25.1 56 56 0 10.5-2.9 20.3-7.9 28.6l-13.1 21.9 22.6 11.7c18 9.3 30.3 28.1 30.3 49.8 0 16.1-6.8 30.7-17.8 40.9l-13.4 12.6 8.7 16.2c4.2 7.8 6.5 16.7 6.5 26.3 0 30.9-25.1 56-56 56-1.1 0-2.2 0-3.2-.1l-17.2-1-6.4 16C351.2 453.7 336.8 464 320 464l-40 0 0-76 92 0 0-56.4c16.5-7.6 28-24.3 28-43.6 0-26.5-21.5-48-48-48s-48 21.5-48 48c0 19.4 11.5 36.1 28 43.6l0 16.4-52 0 0-152zM192 512l128 0c31.1 0 58.4-16.2 74.1-40.5 52.7-5.1 93.9-49.5 93.9-103.5 0-11.5-1.9-22.5-5.3-32.9 13.4-17.5 21.3-39.4 21.3-63.1 0-32-14.5-60.6-37.1-79.7 3.3-10.2 5.1-21.1 5.1-32.3 0-49.6-34.8-91.1-81.3-101.5-6.3-33.3-35.6-58.5-70.7-58.5L192 0c-35.1 0-64.4 25.2-70.7 58.5-46.5 10.4-81.3 51.9-81.3 101.5 0 11.3 1.8 22.2 5.1 32.3-22.7 19.1-37.1 47.7-37.1 79.7 0 23.7 8 45.6 21.3 63.1-3.5 10.4-5.3 21.4-5.3 32.9 0 54 41.2 98.5 93.9 103.5 15.6 24.3 42.9 40.5 74.1 40.5zM336 192a16 16 0 1 1 0-32 16 16 0 1 1 0 32zm32 96a16 16 0 1 1 -32 0 16 16 0 1 1 32 0zM176 352a16 16 0 1 1 -32 0 16 16 0 1 1 32 0zm16-176a16 16 0 1 1 -32 0 16 16 0 1 1 32 0z",{"w":407,"h":389,"d":424},"M16 64C16 28.7 44.7 0 80 0L304 0c35.3 0 64 28.7 64 64l0 384c0 35.3-28.7 64-64 64L80 512c-35.3 0-64-28.7-64-64L16 64zm64 0l0 304 224 0 0-304-224 0zM192 472c17.7 0 32-14.3 32-32s-14.3-32-32-32-32 14.3-32 32 14.3 32 32 32z",{"w":389,"h":389,"d":426},"M0 256c0-46.6 12.5-90.4 34.3-128.9L144.1 318.3c21.9 39.2 63.8 65.7 111.9 65.7 14.3 0 27.1-2.3 40.8-6.6L220.5 509.6C95.9 492.3 0 385.3 0 256zm365.1 65.6c12.3-19.2 18.9-42.5 18.9-65.6 0-38.2-16.8-72.5-43.3-96l152.7 0c12 29.6 18.6 62.1 18.6 96 0 141.4-114.6 255.1-256 256L365.1 321.6zM477.8 128L256 128c-62.9 0-113.7 44.1-125.5 102.7L54.2 98.5C101 38.5 174 0 256 0 350.8 0 433.5 51.5 477.8 128zM344 256a88 88 0 1 1 -176 0 88 88 0 1 1 176 0z",{"w":389,"h":389,"d":428},"M448 96l0 256-384 0 0-256 384 0zM64 32C28.7 32 0 60.7 0 96L0 352c0 35.3 28.7 64 64 64l144 0-16 48-72 0c-13.3 0-24 10.7-24 24s10.7 24 24 24l272 0c13.3 0 24-10.7 24-24s-10.7-24-24-24l-72 0-16-48 144 0c35.3 0 64-28.7 64-64l0-256c0-35.3-28.7-64-64-64L64 32z",{"w":389,"h":389,"d":430},"M32 64C19.1 64 7.4 71.8 2.4 83.8S.2 109.5 9.4 118.6L192 301.3 192 416c0 8.5 3.4 16.6 9.4 22.6l64 64c9.2 9.2 22.9 11.9 34.9 6.9S320 492.9 320 480l0-178.7 182.6-182.6c9.2-9.2 11.9-22.9 6.9-34.9S492.9 64 480 64L32 64z",{"w":404,"h":389,"d":432},"M144 480c-79.5 0-144-64.5-144-144 0-63.4 41-117.2 97.9-136.5-1.3-7.7-1.9-15.5-1.9-23.5 0-79.5 64.5-144 144-144 55.4 0 103.5 31.3 127.6 77.1 14.2-8.3 30.8-13.1 48.4-13.1 53 0 96 43 96 96 0 15.7-3.8 30.6-10.5 43.7 44 20.3 74.5 64.7 74.5 116.3 0 70.7-57.3 128-128 128l-304 0zM305 191c-9.4-9.4-24.6-9.4-33.9 0l-72 72c-9.4 9.4-9.4 24.6 0 33.9s24.6 9.4 33.9 0l31-31 0 102.1c0 13.3 10.7 24 24 24s24-10.7 24-24l0-102.1 31 31c9.4 9.4 24.6 9.4 33.9 0s9.4-24.6 0-33.9l-72-72z",{"id":434,"title":435,"authorsCollection":436,"content":444,"extension":1493,"faqItemsCollection":1494,"faqTitle":59,"featured":6,"hashTags":59,"meta":1496,"metaTitle":1497,"ogImage":59,"postType":1498,"publishedDate":1499,"relatedBlogPostsCollection":1500,"slug":4070,"stem":4071,"subtitle":59,"summary":4072,"synopsis":4083,"sys":4084,"tagsCollection":4087,"topicsCollection":4093,"__hash__":4119},"blog\u002Fblog\u002Fagentic-threat-hunting-benefits-for-customers.json","How Push’s agentic threat hunting in the browser benefits every customer",{"items":437},[438],{"fullName":439,"firstName":440,"jobTitle":441,"socialLinks":59,"profilePicture":442},"Kelly Davenport","Kelly","Product Team",{"url":443},"https:\u002F\u002Fimages.ctfassets.net\u002Fy1cdw1ablpvd\u002F1hi8bEuVfn5sF57LivAq6d\u002F9a3b82426c697d765e2e450e33a18424\u002Fkelly_profile_pic.jpeg",{"json":445,"links":1387},{"data":446,"content":447,"nodeType":1386},{},[448,465,481,535,542,555,577,584,593,597,605,612,641,648,655,723,730,736,743,750,753,760,767,800,820,832,838,845,851,863,870,890,896,908,920,927,933,945,961,973,985,991,998,1001,1008,1015,1031,1039,1046,1054,1061,1107,1110,1117,1124,1130,1138,1145,1161,1176,1183,1199,1206,1254,1261,1277,1284,1334,1341,1349,1352,1359,1366],{"data":449,"content":450,"nodeType":464},{},[451,456],{"data":452,"marks":453,"value":454,"nodeType":455},{},[],"Hey all you security engineers, let’s play ","text",{"data":457,"marks":458,"value":463,"nodeType":455},{},[459,461],{"type":460},"italic",{"type":462},"bold","Would You Rather … ?","paragraph",{"data":466,"content":467,"nodeType":464},{},[468,472,477],{"data":469,"marks":470,"value":471,"nodeType":455},{},[],"Would you rather spend time trying to write detections for ",{"data":473,"marks":474,"value":476,"nodeType":455},{},[475],{"type":462},"modern browser-based attacks",{"data":478,"marks":479,"value":480,"nodeType":455},{},[]," by …",{"data":482,"content":483,"nodeType":534},{},[484,500,519],{"data":485,"content":486,"nodeType":499},{},[487],{"data":488,"content":489,"nodeType":464},{},[490,494],{"data":491,"marks":492,"value":493,"nodeType":455},{},[],"Combing through MITRE looking for techniques that you can write detections on, only to find you have",{"data":495,"marks":496,"value":498,"nodeType":455},{},[497],{"type":462}," little useful telemetry from your typical sources.","list-item",{"data":501,"content":502,"nodeType":499},{},[503],{"data":504,"content":505,"nodeType":464},{},[506,510,515],{"data":507,"marks":508,"value":509,"nodeType":455},{},[],"Curating a list of malicious domain IOCs extracted from endless TI pieces, only to ",{"data":511,"marks":512,"value":514,"nodeType":455},{},[513],{"type":462},"never see a single one of them match",{"data":516,"marks":517,"value":518,"nodeType":455},{},[],".",{"data":520,"content":521,"nodeType":499},{},[522],{"data":523,"content":524,"nodeType":464},{},[525,530],{"data":526,"marks":527,"value":529,"nodeType":455},{},[528],{"type":462},"Just giving up and blocking a bunch of domains or IPs",{"data":531,"marks":532,"value":533,"nodeType":455},{},[]," from every TI feed you come across, while quietly weeping.","unordered-list",{"data":536,"content":537,"nodeType":464},{},[538],{"data":539,"marks":540,"value":541,"nodeType":455},{},[],"Or … ",{"data":543,"content":544,"nodeType":534},{},[545],{"data":546,"content":547,"nodeType":499},{},[548],{"data":549,"content":550,"nodeType":464},{},[551],{"data":552,"marks":553,"value":554,"nodeType":455},{},[],"Inherit constantly evolving detections validated across 3 million-plus browsers, tuned to remove false positives, informed by human threat researchers, and tailored to the known and not-yet-known threats that target account compromise and malware delivery via the browser.",{"data":556,"content":557,"nodeType":464},{},[558,562,573],{"data":559,"marks":560,"value":561,"nodeType":455},{},[],"At Push, we’ve built an ",{"data":563,"content":565,"nodeType":572},{"uri":564},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fcan-ai-replace-a-threat-researcher-what-we-learned-building-an-agentic-threat-hunting-pipeline",[566],{"data":567,"marks":568,"value":571,"nodeType":455},{},[569],{"type":570},"underline","agentic threat hunting and detection engineering pipeline","hyperlink",{"data":574,"marks":575,"value":576,"nodeType":455},{},[]," to take that first set of onerous tasks off your plate. The result is a process that looks a lot like the ideal described in detection engineering maturity models, achieved without any extra headcount or subject matter expertise on your team, and scaled to meet the speed and complexity of our current era of AI-enabled adversaries.",{"data":578,"content":579,"nodeType":464},{},[580],{"data":581,"marks":582,"value":583,"nodeType":455},{},[],"Let’s take a look at how the pipeline delivers a collective good by identifying emerging threats or new technique variants in a single customer environment and then delivering detections to everyone.",{"data":585,"content":591,"nodeType":592},{"target":586},{"sys":587},{"id":588,"type":589,"linkType":590},"sN6q7oEwYyJTkXxyLb81m","Link","Entry",[],"embedded-entry-block",{"data":594,"content":595,"nodeType":596},{},[],"hr",{"data":598,"content":599,"nodeType":604},{},[600],{"data":601,"marks":602,"value":603,"nodeType":455},{},[],"Why detection engineering from TI is hard — and why AI-enabled attacks are making it even harder","heading-1",{"data":606,"content":607,"nodeType":464},{},[608],{"data":609,"marks":610,"value":611,"nodeType":455},{},[],"Detection engineers feel the pain that Beethoven must have felt when he got the critique: “There are just too many notes!”",{"data":613,"content":614,"nodeType":464},{},[615,619,624,628,637],{"data":616,"marks":617,"value":618,"nodeType":455},{},[],"Except where notes = threat intelligence, light on the ",{"data":620,"marks":621,"value":623,"nodeType":455},{},[622],{"type":460},"intelligence",{"data":625,"marks":626,"value":627,"nodeType":455},{},[],". (For a great unpacking of what’s hard about transforming TI into detections, check out this ",{"data":629,"content":631,"nodeType":572},{"uri":630},"https:\u002F\u002Fmedium.com\u002Fanton-on-security\u002Fdetection-engineering-is-painful-and-it-shouldnt-be-part-1-3641d8740458",[632],{"data":633,"marks":634,"value":636,"nodeType":455},{},[635],{"type":570},"blog series",{"data":638,"marks":639,"value":640,"nodeType":455},{},[]," from Anton Chuvakin and his Google security colleagues from 2023. The challenge has only gotten harder since then!)",{"data":642,"content":643,"nodeType":464},{},[644],{"data":645,"marks":646,"value":647,"nodeType":455},{},[],"In short, there is too much potential TI, too little actionable detail, and a dearth of useful business-relevant context.",{"data":649,"content":650,"nodeType":464},{},[651],{"data":652,"marks":653,"value":654,"nodeType":455},{},[],"This often manifests as:",{"data":656,"content":657,"nodeType":534},{},[658,686,705],{"data":659,"content":660,"nodeType":499},{},[661],{"data":662,"content":663,"nodeType":464},{},[664,669,673,682],{"data":665,"marks":666,"value":668,"nodeType":455},{},[667],{"type":462},"Feeling constantly behind the threat landscape. ",{"data":670,"marks":671,"value":672,"nodeType":455},{},[],"SANS Institute’s ",{"data":674,"content":676,"nodeType":572},{"uri":675},"https:\u002F\u002Fwww.sans.org\u002Fwhite-papers\u002Fstate-detection-engineering-2026",[677],{"data":678,"marks":679,"value":681,"nodeType":455},{},[680],{"type":570},"State of Detection Engineering 2026",{"data":683,"marks":684,"value":685,"nodeType":455},{},[]," report found that only 18% of practitioners feel like they’re staying ahead; 56% report barely keeping pace.",{"data":687,"content":688,"nodeType":499},{},[689],{"data":690,"content":691,"nodeType":464},{},[692,696,701],{"data":693,"marks":694,"value":695,"nodeType":455},{},[],"Access to a huge amount of potential TI, but ",{"data":697,"marks":698,"value":700,"nodeType":455},{},[699],{"type":462},"lacking the time, context, and tools needed to parse the data",{"data":702,"marks":703,"value":704,"nodeType":455},{},[]," for threats that matter to the business.",{"data":706,"content":707,"nodeType":499},{},[708],{"data":709,"content":710,"nodeType":464},{},[711,715,720],{"data":712,"marks":713,"value":714,"nodeType":455},{},[],"More information on IOCs than TTPs, leading to ",{"data":716,"marks":717,"value":719,"nodeType":455},{},[718],{"type":462},"ever-growing blocklists and attacks that still slip through",{"data":721,"marks":722,"value":518,"nodeType":455},{},[],{"data":724,"content":725,"nodeType":464},{},[726],{"data":727,"marks":728,"value":729,"nodeType":455},{},[],"As AI-enabled adversaries continue to make it increasingly trivial to rotate infrastructure or abuse trusted services and workflows to deliver modern attacks, the hill gets steeper. ",{"data":731,"content":735,"nodeType":592},{"target":732},{"sys":733},{"id":734,"type":589,"linkType":590},"4xlCsISP3OT9MAj3wxw67D",[],{"data":737,"content":738,"nodeType":464},{},[739],{"data":740,"marks":741,"value":742,"nodeType":455},{},[],"In the case of attacks that target employees via the browser — using advanced phishing methods, commercial toolkits, abuse of OAuth, abuse of trusted services to deliver phishing lures, etc. — most security teams are also working without the right foundational visibility to even begin to mature their detection process against these TTPs.",{"data":744,"content":745,"nodeType":464},{},[746],{"data":747,"marks":748,"value":749,"nodeType":455},{},[],"The missing input is visibility at the layer where these attacks actually execute — the browser session. Without it, detection engineering for browser-based threats is painful guesswork.",{"data":751,"content":752,"nodeType":596},{},[],{"data":754,"content":755,"nodeType":604},{},[756],{"data":757,"marks":758,"value":759,"nodeType":455},{},[],"How Push operationalized best practices for hunting from TI using agents",{"data":761,"content":762,"nodeType":464},{},[763],{"data":764,"marks":765,"value":766,"nodeType":455},{},[],"In building our agentic threat hunting and detection engineering pipeline at Push, we set out to solve many of the same problems that any security team faces when maturing its processes:",{"data":768,"content":769,"nodeType":534},{},[770,780,790],{"data":771,"content":772,"nodeType":499},{},[773],{"data":774,"content":775,"nodeType":464},{},[776],{"data":777,"marks":778,"value":779,"nodeType":455},{},[],"How to transform TI into technique-level intel we could write durable detections for across a wide customer base at scale?",{"data":781,"content":782,"nodeType":499},{},[783],{"data":784,"content":785,"nodeType":464},{},[786],{"data":787,"marks":788,"value":789,"nodeType":455},{},[],"How to create structured internal knowledge to add context to our detection engineering process that validates the relevance of what we find?",{"data":791,"content":792,"nodeType":499},{},[793],{"data":794,"content":795,"nodeType":464},{},[796],{"data":797,"marks":798,"value":799,"nodeType":455},{},[],"How to verify what’s worthwhile to hunt for, remove false positives, and understand the value of a detection for a specific TTP across an install base of more than 3 million browsers?",{"data":801,"content":802,"nodeType":464},{},[803,807,816],{"data":804,"marks":805,"value":806,"nodeType":455},{},[],"The process we created looks a lot like the ",{"data":808,"content":810,"nodeType":572},{"uri":809},"https:\u002F\u002Fmedium.com\u002Fanton-on-security\u002Fblueprint-for-threat-intel-to-detection-flow-part-7-088024be08dd",[811],{"data":812,"marks":813,"value":815,"nodeType":455},{},[814],{"type":570},"best practices",{"data":817,"marks":818,"value":819,"nodeType":455},{},[]," on how to turn intelligence into meaningful detections. The difference is that agents let us run this process continuously and at a scale that would be impossible to achieve with human analysts alone.",{"data":821,"content":822,"nodeType":464},{},[823,828],{"data":824,"marks":825,"value":827,"nodeType":455},{},[826],{"type":462},"It starts with ingestion. ",{"data":829,"marks":830,"value":831,"nodeType":455},{},[],"An agent tasked with TI aggregation monitors multiple industry sources — vendor reports, researcher disclosures, campaign teardowns — and filters for intelligence relevant to browser-based attack techniques. ",{"data":833,"content":837,"nodeType":592},{"target":834},{"sys":835},{"id":836,"type":589,"linkType":590},"7fsLEGUbOINll70ViNVVkI",[],{"data":839,"content":840,"nodeType":464},{},[841],{"data":842,"marks":843,"value":844,"nodeType":455},{},[],"Because this agent already understands the types of attacks and scenarios that matter to Push’s detection surface, it can distinguish signal from noise at the intake stage, flagging useful intel and proposing initial lightweight hunts based on the browser metadata Push can observe. When a potential hunt looks promising, the aggregation agent hands off to a deeper analysis agent to extract what’s actually huntable.",{"data":846,"content":850,"nodeType":592},{"target":847},{"sys":848},{"id":849,"type":589,"linkType":590},"5vyeALIziHamJ0cLiGMdGk",[],{"data":852,"content":853,"nodeType":464},{},[854,859],{"data":855,"marks":856,"value":858,"nodeType":455},{},[857],{"type":462},"That extraction step is where a general TI feed becomes something you can build detections from. ",{"data":860,"marks":861,"value":862,"nodeType":455},{},[],"Agents built on frontier models have a deep understanding of web programming languages and browser workflows can decompose the intelligence into its meaningful atomic units — the specific behavioral patterns that distinguish a malicious technique from normal browser activity. ",{"data":864,"content":865,"nodeType":464},{},[866],{"data":867,"marks":868,"value":869,"nodeType":455},{},[],"They compare those patterns against everything the Push browser agent can observe: tabs, windows, navigation events, downloads, network requests, DOM content, script execution. Then they discard anything too broad — observable events that are commonplace, even when connected to a malicious TTP — to avoid false positives. ",{"data":871,"content":872,"nodeType":464},{},[873,877,886],{"data":874,"marks":875,"value":876,"nodeType":455},{},[],"What survives is one or more huntable technique signatures that can be identified with a high true positive rate. This is the ",{"data":878,"content":880,"nodeType":572},{"uri":879},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fthe-pyramid-of-pain-in-the-ai-era",[881],{"data":882,"marks":883,"value":885,"nodeType":455},{},[884],{"type":570},"Pyramid of Pain principle",{"data":887,"marks":888,"value":889,"nodeType":455},{},[]," operationalized at machine speed: Target the technique, not the indicator, because techniques are genuinely hard for attackers to change.",{"data":891,"content":895,"nodeType":592},{"target":892},{"sys":893},{"id":894,"type":589,"linkType":590},"5j0mvdIMkaUwDgCu0nOqSm",[],{"data":897,"content":898,"nodeType":464},{},[899,904],{"data":900,"marks":901,"value":903,"nodeType":455},{},[902],{"type":462},"In parallel, the pipeline validates whether the identified technique is genuinely novel or a variant of something Push already detects. ",{"data":905,"marks":906,"value":907,"nodeType":455},{},[],"This is where our internal knowledge base comes into play. Built over three years by Push’s in-house research team and augmented continuously by the pipeline itself, it represents what Push knows about browser-based attack behaviors — a structured corpus of TTPs that lets agents classify incoming intelligence as new territory, a known variant that needs a refined detection, or something already covered. That classification determines what happens next: A net-new technique triggers a full hunt; a known variant triggers a refinement cycle; and a duplicate gets deprioritized.",{"data":909,"content":910,"nodeType":464},{},[911,916],{"data":912,"marks":913,"value":915,"nodeType":455},{},[914],{"type":462},"The hunt itself is where hypothesis meets evidence.",{"data":917,"marks":918,"value":919,"nodeType":455},{},[]," Agents develop a specific, testable prediction about what the technique looks like in browser telemetry, then validate that prediction across Push’s install base. The aim of the initial hunt is to identify any potential false positives — legitimate browser behavior that matches the pattern. Then the agents refine: adjusting the query, narrowing the behavioral fingerprints, testing again. Each iteration sharpens the detection until the false positive rate drops to a negligible, tolerable level. ",{"data":921,"content":922,"nodeType":464},{},[923],{"data":924,"marks":925,"value":926,"nodeType":455},{},[],"The hunts that produce relevant, high-confidence results become continuous queries — a kind of early warning system for emerging threats we’re actively watching for and learning about. The most useful and reliable of those queries become production detections that protect every Push customer in real time. ",{"data":928,"content":932,"nodeType":592},{"target":929},{"sys":930},{"id":931,"type":589,"linkType":590},"h3MN5kaaGGuL4uvNsP9JZ",[],{"data":934,"content":935,"nodeType":464},{},[936,941],{"data":937,"marks":938,"value":940,"nodeType":455},{},[939],{"type":462},"This is what “detect what matters” looks like as an engineering discipline. ",{"data":942,"marks":943,"value":944,"nodeType":455},{},[],"By the time the agents have whittled down millions or trillions of browser events into a good hunt query — where good means broad enough to cast a usefully wide net for variations — and then tuned that further into a high-fidelity detection, the result is fewer, sharper detections by design. And because Push detects at the browser session layer before a user can interact with a malicious page, almost all of those detections fire pre-compromise. ",{"data":946,"content":947,"nodeType":464},{},[948,952,957],{"data":949,"marks":950,"value":951,"nodeType":455},{},[],"The same 2026 SANS survey mentioned earlier found that ",{"data":953,"marks":954,"value":956,"nodeType":455},{},[955],{"type":462},"66% of SOC practitioners cite vendor-provided rules as their primary source of false positives",{"data":958,"marks":959,"value":960,"nodeType":455},{},[]," — a structural problem that persists at every organization size. Push’s pipeline produces the opposite outcome: better detections, less noise.",{"data":962,"content":963,"nodeType":464},{},[964,969],{"data":965,"marks":966,"value":968,"nodeType":455},{},[967],{"type":462},"The result is a system with two learning loops.",{"data":970,"marks":971,"value":972,"nodeType":455},{},[]," An inner loop handles real-time detection and response for known attacker techniques — the production detections already deployed across the customer base. An outer loop handles continuous discovery — agents hunting for new techniques, refining existing detections, and ingesting external intelligence. ",{"data":974,"content":975,"nodeType":464},{},[976,981],{"data":977,"marks":978,"value":980,"nodeType":455},{},[979],{"type":462},"Each loop feeds the other:",{"data":982,"marks":983,"value":984,"nodeType":455},{},[]," The outer loop’s discoveries become the inner loop’s new production detections, and the inner loop’s blocked attacks become raw material for the outer loop to analyze for novel variants. The knowledge base that both loops draw on grows with every cycle, which means the pipeline's detection coverage compounds at roughly the rate the threat landscape grows more complex.",{"data":986,"content":990,"nodeType":592},{"target":987},{"sys":988},{"id":989,"type":589,"linkType":590},"3xVLn9Ldk4cOP4uFYIYyM",[],{"data":992,"content":993,"nodeType":464},{},[994],{"data":995,"marks":996,"value":997,"nodeType":455},{},[],"And every validated detection produced by this process, whether it originated from a blocked attack in one customer’s environment, a proactive hunt across the telemetry corpus, or a vendor report about a campaign Push has never observed on customer estates, deploys to the entire customer base.",{"data":999,"content":1000,"nodeType":596},{},[],{"data":1002,"content":1003,"nodeType":604},{},[1004],{"data":1005,"marks":1006,"value":1007,"nodeType":455},{},[],"Herd immunity, without all the breaches to get there",{"data":1009,"content":1010,"nodeType":464},{},[1011],{"data":1012,"marks":1013,"value":1014,"nodeType":455},{},[],"That last point is where Push’s idea of herd immunity diverges from the traditional definition.",{"data":1016,"content":1017,"nodeType":464},{},[1018,1022,1027],{"data":1019,"marks":1020,"value":1021,"nodeType":455},{},[],"Detection and response platforms and MDR services commonly describe a ",{"data":1023,"marks":1024,"value":1026,"nodeType":455},{},[1025],{"type":462},"herd immunity benefit",{"data":1028,"marks":1029,"value":1030,"nodeType":455},{},[],": What one customer encounters, every customer gets protection against. The mechanism is real, but the learning input is typically a breach or a compromise. Someone has to be the first victim.",{"data":1032,"content":1033,"nodeType":464},{},[1034],{"data":1035,"marks":1036,"value":1038,"nodeType":455},{},[1037],{"type":462},"Push’s approach is different. ",{"data":1040,"content":1041,"nodeType":464},{},[1042],{"data":1043,"marks":1044,"value":1045,"nodeType":455},{},[],"Modern browser-based attacks frequently rely on a series of techniques strung together to achieve a compromise. From its vantage point in the browser, Push catches many novel techniques with existing detections pre-compromise because it recognizes a portion of the attack techniques in the chain. The detection process then identifies what’s new about a previously unseen variation of a known TTP — perhaps an evasion technique the kit hadn’t used before, an unusual lure or infrastructure pattern, etc. ",{"data":1047,"content":1048,"nodeType":464},{},[1049],{"data":1050,"marks":1051,"value":1053,"nodeType":455},{},[1052],{"type":462},"The detection gets better for customers and no one was compromised to get there.",{"data":1055,"content":1056,"nodeType":464},{},[1057],{"data":1058,"marks":1059,"value":1060,"nodeType":455},{},[],"On the external intelligence side, the pipeline ingests published research about a campaign Push has never observed, extracts the durable behavioral characteristics, validates them against browser telemetry, refines the query to tune out false positives, and ships detections before the technique is ever used against a Push customer. The protection arrives ahead of the attack.",{"data":1062,"content":1063,"nodeType":464},{},[1064,1068,1077,1081,1090,1094,1103],{"data":1065,"marks":1066,"value":1067,"nodeType":455},{},[],"These are the processes behind Push’s identification of ",{"data":1069,"content":1071,"nodeType":572},{"uri":1070},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fconsentfix",[1072],{"data":1073,"marks":1074,"value":1076,"nodeType":455},{},[1075],{"type":570},"ConsentFix",{"data":1078,"marks":1079,"value":1080,"nodeType":455},{},[],", ",{"data":1082,"content":1084,"nodeType":572},{"uri":1083},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Finstallfix",[1085],{"data":1086,"marks":1087,"value":1089,"nodeType":455},{},[1088],{"type":570},"InstallFix",{"data":1091,"marks":1092,"value":1093,"nodeType":455},{},[],", and ",{"data":1095,"content":1097,"nodeType":572},{"uri":1096},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fllmshare-malvertising-campaign",[1098],{"data":1099,"marks":1100,"value":1102,"nodeType":455},{},[1101],{"type":570},"LLMShare",{"data":1104,"marks":1105,"value":1106,"nodeType":455},{},[]," — three browser-based attack techniques Push's team discovered or documented for the first time. In several cases, detections were blocking active campaigns against Push customers before the technique had been publicly documented. Those detections rolled out to every customer within hours or days of first observation.",{"data":1108,"content":1109,"nodeType":596},{},[],{"data":1111,"content":1112,"nodeType":604},{},[1113],{"data":1114,"marks":1115,"value":1116,"nodeType":455},{},[],"Outcomes: By the numbers",{"data":1118,"content":1119,"nodeType":464},{},[1120],{"data":1121,"marks":1122,"value":1123,"nodeType":455},{},[],"Looking at the quantifiable outcomes of this agentic threat hunting capability over the last few months, the benefits for customers become clear.",{"data":1125,"content":1129,"nodeType":592},{"target":1126},{"sys":1127},{"id":1128,"type":589,"linkType":590},"7uNrNGUjjBiG9qEsfen7Xi",[],{"data":1131,"content":1132,"nodeType":1137},{},[1133],{"data":1134,"marks":1135,"value":1136,"nodeType":455},{},[],"Velocity","heading-2",{"data":1139,"content":1140,"nodeType":464},{},[1141],{"data":1142,"marks":1143,"value":1144,"nodeType":455},{},[],"Agents allow us to massively scale our research expertise, delivering detections for emerging threats or new variants much faster than humans alone can.",{"data":1146,"content":1147,"nodeType":464},{},[1148,1152,1157],{"data":1149,"marks":1150,"value":1151,"nodeType":455},{},[],"This year already, we’ve ",{"data":1153,"marks":1154,"value":1156,"nodeType":455},{},[1155],{"type":462},"tripled",{"data":1158,"marks":1159,"value":1160,"nodeType":455},{},[]," the number of new detections shipped to customers.",{"data":1162,"content":1163,"nodeType":464},{},[1164,1168,1173],{"data":1165,"marks":1166,"value":1167,"nodeType":455},{},[],"We’ve also reduced the time it takes to ship production-ready detections for new threats from weeks to ",{"data":1169,"marks":1170,"value":1172,"nodeType":455},{},[1171],{"type":462},"minutes",{"data":1174,"marks":1175,"value":518,"nodeType":455},{},[],{"data":1177,"content":1178,"nodeType":1137},{},[1179],{"data":1180,"marks":1181,"value":1182,"nodeType":455},{},[],"Detection coverage",{"data":1184,"content":1185,"nodeType":464},{},[1186,1190,1195],{"data":1187,"marks":1188,"value":1189,"nodeType":455},{},[],"With that scaled expertise comes broad coverage. We perform an average of ",{"data":1191,"marks":1192,"value":1194,"nodeType":455},{},[1193],{"type":462},"300+ hunts",{"data":1196,"marks":1197,"value":1198,"nodeType":455},{},[]," a month (a mix of live queries for identified TTPs we’re looking for, plus net-new hunts for emerging threats we identify in any given month).",{"data":1200,"content":1201,"nodeType":464},{},[1202],{"data":1203,"marks":1204,"value":1205,"nodeType":455},{},[],"A few other metrics that demonstrate the scale of our detection coverage:",{"data":1207,"content":1208,"nodeType":534},{},[1209,1224,1239],{"data":1210,"content":1211,"nodeType":499},{},[1212],{"data":1213,"content":1214,"nodeType":464},{},[1215,1220],{"data":1216,"marks":1217,"value":1219,"nodeType":455},{},[1218],{"type":462},"75+",{"data":1221,"marks":1222,"value":1223,"nodeType":455},{},[]," attacker tools documented in our KB so far",{"data":1225,"content":1226,"nodeType":499},{},[1227],{"data":1228,"content":1229,"nodeType":464},{},[1230,1235],{"data":1231,"marks":1232,"value":1234,"nodeType":455},{},[1233],{"type":462},"25+",{"data":1236,"marks":1237,"value":1238,"nodeType":455},{},[]," variants of existing attacks we’ve identified and shipped detections for",{"data":1240,"content":1241,"nodeType":499},{},[1242],{"data":1243,"content":1244,"nodeType":464},{},[1245,1250],{"data":1246,"marks":1247,"value":1249,"nodeType":455},{},[1248],{"type":462},"10,000+",{"data":1251,"marks":1252,"value":1253,"nodeType":455},{},[]," monthly sessions analyzed",{"data":1255,"content":1256,"nodeType":1137},{},[1257],{"data":1258,"marks":1259,"value":1260,"nodeType":455},{},[],"Protection from emerging threats",{"data":1262,"content":1263,"nodeType":464},{},[1264,1268,1273],{"data":1265,"marks":1266,"value":1267,"nodeType":455},{},[],"On the emerging threat side, our team was the first to identify or document ",{"data":1269,"marks":1270,"value":1272,"nodeType":455},{},[1271],{"type":462},"three new browser-based attack techniques",{"data":1274,"marks":1275,"value":1276,"nodeType":455},{},[]," — ConsentFix, InstallFix, and LLMShare — shipping detections to all customers quickly after identification.",{"data":1278,"content":1279,"nodeType":464},{},[1280],{"data":1281,"marks":1282,"value":1283,"nodeType":455},{},[],"In that same time frame, we’ve also:",{"data":1285,"content":1286,"nodeType":534},{},[1287,1315],{"data":1288,"content":1289,"nodeType":499},{},[1290],{"data":1291,"content":1292,"nodeType":464},{},[1293,1297,1302,1306,1311],{"data":1294,"marks":1295,"value":1296,"nodeType":455},{},[],"Protected ",{"data":1298,"marks":1299,"value":1301,"nodeType":455},{},[1300],{"type":462},"60+",{"data":1303,"marks":1304,"value":1305,"nodeType":455},{},[]," ",{"data":1307,"marks":1308,"value":1310,"nodeType":455},{},[1309],{"type":462},"customers in the last 3 months",{"data":1312,"marks":1313,"value":1314,"nodeType":455},{},[]," who’ve been targeted with novel phishing techniques — identifying never-before-seen techniques, lures, delivery mechanisms, interactions, tools, or attack chains",{"data":1316,"content":1317,"nodeType":499},{},[1318],{"data":1319,"content":1320,"nodeType":464},{},[1321,1325,1330],{"data":1322,"marks":1323,"value":1324,"nodeType":455},{},[],"Prevented ",{"data":1326,"marks":1327,"value":1329,"nodeType":455},{},[1328],{"type":462},"225+",{"data":1331,"marks":1332,"value":1333,"nodeType":455},{},[]," instances of threats pre-compromise for novel techniques",{"data":1335,"content":1336,"nodeType":464},{},[1337],{"data":1338,"marks":1339,"value":1340,"nodeType":455},{},[],"In all of the above situations, Push customers didn’t have to do anything — no combing through TI to find relevant details, no writing their own detections and tuning out false positives, or spending cycles to unpack a particularly knotty attack chain that used techniques they had never seen before. ",{"data":1342,"content":1343,"nodeType":464},{},[1344],{"data":1345,"marks":1346,"value":1348,"nodeType":455},{},[1347],{"type":462},"That’s what operationalized intelligence looks like at scale, delivered as a product, not a project.",{"data":1350,"content":1351,"nodeType":596},{},[],{"data":1353,"content":1354,"nodeType":604},{},[1355],{"data":1356,"marks":1357,"value":1358,"nodeType":455},{},[],"Learn more about Push",{"data":1360,"content":1361,"nodeType":464},{},[1362],{"data":1363,"marks":1364,"value":1365,"nodeType":455},{},[],"The same foundational capabilities that enable this agentic threat hunting pipeline also deliver other security outcomes for Push customers: gaining visibility and control over AI tool usage; hardening identities by surfacing credential reuse, SSO gaps, and shadow IT; and supporting data loss and insider investigations with browser-layer telemetry that other tools can’t see.",{"data":1367,"content":1368,"nodeType":464},{},[1369,1373,1382],{"data":1370,"marks":1371,"value":1372,"nodeType":455},{},[],"If you’d like to learn more, ",{"data":1374,"content":1376,"nodeType":572},{"uri":1375},"https:\u002F\u002Fpushsecurity.com\u002Fdemo",[1377],{"data":1378,"marks":1379,"value":1381,"nodeType":455},{},[1380],{"type":570},"book a demo",{"data":1383,"marks":1384,"value":1385,"nodeType":455},{},[]," with our team.","document",{"entries":1388},{"hyperlink":1389,"inline":1390,"block":1391},[],[],[1392,1407,1430,1438,1465,1472,1479,1486],{"sys":1393,"__typename":1394,"content":1395,"name":1406,"title":59},{"id":588},"InsightTextBlockComponent",{"json":1396},{"nodeType":1386,"data":1397,"content":1398},{},[1399],{"nodeType":464,"data":1400,"content":1401},{},[1402],{"nodeType":455,"value":1403,"marks":1404,"data":1405},"This is Part 1 of a two-part series. In Part 2, we’ll cover a case study of an agentic threat hunt in detail.",[],{},"Herd Immunity IB3",{"sys":1408,"__typename":1394,"content":1409,"name":1429,"title":59},{"id":734},{"json":1410},{"nodeType":1386,"data":1411,"content":1412},{},[1413],{"nodeType":464,"data":1414,"content":1415},{},[1416,1420,1425],{"nodeType":455,"value":1417,"marks":1418,"data":1419},"Spamhaus has found that ",[],{},{"nodeType":455,"value":1421,"marks":1422,"data":1424},"89% of phishing domains are active for less than 2 days",[1423],{"type":462},{},{"nodeType":455,"value":1426,"marks":1427,"data":1428},", with just 6.5% surviving for more than 15 days, making it increasingly difficult to rely on blocking known-bad URLs when most phishing attacks are essentially now a zero-day. (And in our experience, any phishing domains still up past a couple of days are just the remnants of a dead campaign that you’ll never see again.)",[],{},"Herd Immunity IB1",{"sys":1431,"__typename":1432,"title":1433,"caption":1433,"layoutMode":59,"file":1434},{"id":836},"Image","Initial analysis of a TI post by Push agents that triggers intel ingestion, checking for potentially huntable elements relevant to Push’s detection capabilities",{"url":1435,"width":1436,"height":1437},"https:\u002F\u002Fimages.ctfassets.net\u002Fy1cdw1ablpvd\u002F77Bkzr6PPJSB90xp4sEp5o\u002Fd3a8a4ce568fd39a6f54d6c031c4affd\u002Fimage4.png",614,375,{"sys":1439,"__typename":1394,"content":1440,"name":1464,"title":59},{"id":849},{"json":1441},{"nodeType":1386,"data":1442,"content":1443},{},[1444],{"nodeType":464,"data":1445,"content":1446},{},[1447,1451,1460],{"nodeType":455,"value":1448,"marks":1449,"data":1450},"While Push uses commercial AI models, that’s not actually where the value is derived for our agentic threat hunting process — rather, it’s all about our browser telemetry. We wrote more about this in ",[],{},{"nodeType":572,"data":1452,"content":1454},{"uri":1453},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fwhy-you-cant-vibecode-an-ai-driven-threat-hunting-pipeline",[1455],{"nodeType":455,"value":1456,"marks":1457,"data":1459},"why you can’t vibecode your own AI-driven threat hunting pipeline",[1458],{"type":570},{},{"nodeType":455,"value":1461,"marks":1462,"data":1463},". ",[],{},"Herd Immunity IB2",{"sys":1466,"__typename":1432,"title":1467,"caption":1467,"layoutMode":59,"file":1468},{"id":894},"After reviewing intel, Push agents extract the most likely high-fidelity behavioral indicators of an attack technique and propose some hunt queries",{"url":1469,"width":1470,"height":1471},"https:\u002F\u002Fimages.ctfassets.net\u002Fy1cdw1ablpvd\u002F3d4gGhPPDix4iiqSuIgXFV\u002F6549a9e414b38a89a5724930339c3c2e\u002Fimage2.png",1842,804,{"sys":1473,"__typename":1432,"title":1474,"caption":1474,"layoutMode":59,"file":1475},{"id":931},"A glimpse into the reasoning process of the hunt agents, clustering results for efficient analysis before suggesting query refinements",{"url":1476,"width":1477,"height":1478},"https:\u002F\u002Fimages.ctfassets.net\u002Fy1cdw1ablpvd\u002F4C3ZgBknBiidR5Di147Z5x\u002Febe51fe33e62f575e8e0870cf86024ab\u002Fimage5.png",1999,918,{"sys":1480,"__typename":1432,"title":1481,"caption":1481,"layoutMode":59,"file":1482},{"id":989},"Two learning loops for known and unknown threats create a compounding effect for Push’s ability to defend against browser-based attacks",{"url":1483,"width":1484,"height":1485},"https:\u002F\u002Fimages.ctfassets.net\u002Fy1cdw1ablpvd\u002F3sF0vK2krcVFYwod8Mii44\u002Fdb0067eb55c2c948e0230452d299ae76\u002Fimage1.png",1200,900,{"sys":1487,"__typename":1432,"title":1488,"caption":59,"layoutMode":59,"file":1489},{"id":1128},"Agentic Detection Infographic ",{"url":1490,"width":1491,"height":1492},"https:\u002F\u002Fimages.ctfassets.net\u002Fy1cdw1ablpvd\u002F2JYaJir7p8L13Tl6jSqBk6\u002F0db8b9b445c179bc54fe8209435cbd34\u002FAgentic_Detection_Infographic_1__8_.png",3840,2160,"json",{"items":1495},[],{},"Building herd immunity through agentic detections with Push","thought-leadership","2026-07-23T00:00:00.000Z",{"items":1501},[1502,2470,3258],{"__typename":1503,"sys":1504,"content":1506,"title":2452,"synopsis":2453,"hashTags":59,"publishedDate":2454,"slug":2455,"tagsCollection":2456,"authorsCollection":2466},"BlogPosts",{"id":1505},"1jfqiWQlL6qkn3i9yjNbFB",{"json":1507},{"data":1508,"content":1509,"nodeType":1386},{},[1510,1517,1539,1551,1558,1566,1573,1596,1603,1610,1617,1629,1635,1638,1646,1661,1682,1794,1800,1807,1813,1821,1828,1840,1847,1853,1860,1884,1891,1898,1904,1907,1915,1922,1930,1937,1953,1960,1967,1975,1982,1989,1997,2004,2011,2014,2022,2029,2037,2044,2051,2058,2065,2073,2080,2112,2119,2126,2132,2139,2147,2154,2232,2238,2246,2262,2269,2275,2282,2298,2301,2309,2316,2323,2329,2336,2381,2388,2395,2402,2408,2411,2419,2426,2433],{"data":1511,"content":1512,"nodeType":464},{},[1513],{"data":1514,"marks":1515,"value":1516,"nodeType":455},{},[],"In March, our threat hunting engine flagged something it hadn’t seen before.",{"data":1518,"content":1519,"nodeType":464},{},[1520,1524,1535],{"data":1521,"marks":1522,"value":1523,"nodeType":455},{},[],"Our research team had already been tracking the growing use of ",{"data":1525,"content":1529,"nodeType":1534},{"target":1526},{"sys":1527},{"id":1528,"type":589,"linkType":590},"2U6QpQ9rkY8x5ES48okHZB",[1530],{"data":1531,"marks":1532,"value":1533,"nodeType":455},{},[],"malvertising","entry-hyperlink",{"data":1536,"marks":1537,"value":1538,"nodeType":455},{},[]," tied to phishing campaigns. Malvertising frequently targets users via Google Search results, inserting malicious ads or redirects in place of legitimate ads, and using the familiar context of the search results page to trick users into clicking.",{"data":1540,"content":1541,"nodeType":464},{},[1542,1546],{"data":1543,"marks":1544,"value":1545,"nodeType":455},{},[],"To defend Push customers against this threat, we needed a way to spot malicious activity arising from clicking on Google ads. ",{"data":1547,"marks":1548,"value":1550,"nodeType":455},{},[1549],{"type":460},"But how to separate signal from noise?",{"data":1552,"content":1553,"nodeType":464},{},[1554],{"data":1555,"marks":1556,"value":1557,"nodeType":455},{},[],"Our hunt combined the skills of human researchers and AI agents to find 12 meaningful results from trillions of browser events visible to the Push extension across our install base.",{"data":1559,"content":1560,"nodeType":464},{},[1561],{"data":1562,"marks":1563,"value":1565,"nodeType":455},{},[1564],{"type":462},"Of those, one was novel. ",{"data":1567,"content":1568,"nodeType":464},{},[1569],{"data":1570,"marks":1571,"value":1572,"nodeType":455},{},[],"A user had searched for NotebookLM, clicked a paid Google ad, and gotten redirected to a page impersonating NotebookLM. The page itself was just a facade fronting a Cloudflare Pages-hosted phishing kit with a WebAssembly C2 connector. To the user, it looked like a completely on-brand NotebookLM page, and if they had run the fake install prompt, they would have installed malware. (Note: NotebookLM doesn’t even require a local install, but the page was convincing enough — and AI platforms are changing so quickly — that the lure was extremely believable.)",{"data":1574,"content":1575,"nodeType":464},{},[1576,1581,1592],{"data":1577,"marks":1578,"value":1580,"nodeType":455},{},[1579],{"type":462},"We had found our first in-the-wild ",{"data":1582,"content":1586,"nodeType":1534},{"target":1583},{"sys":1584},{"id":1585,"type":589,"linkType":590},"7bG71Eo43crbIHKzczooVS",[1587],{"data":1588,"marks":1589,"value":1591,"nodeType":455},{},[1590],{"type":462},"InstallFix attack",{"data":1593,"marks":1594,"value":518,"nodeType":455},{},[1595],{"type":462},{"data":1597,"content":1598,"nodeType":464},{},[1599],{"data":1600,"marks":1601,"value":1602,"nodeType":455},{},[],"Within minutes, our analysis agents created detections, and researchers shipped a new detection to every Push customer. ",{"data":1604,"content":1605,"nodeType":464},{},[1606],{"data":1607,"marks":1608,"value":1609,"nodeType":455},{},[],"Eighteen months ago, it would have taken a human analyst days or even weeks to unpack the attack, comb through web requests, de-obfuscate web code, trace JavaScript execution, and extract signals of tactics, techniques, and procedures (TTPs) beyond short-lived single-use IOCs like domain name, then get their work coded up as a detection and deployed to customers. ",{"data":1611,"content":1612,"nodeType":464},{},[1613],{"data":1614,"marks":1615,"value":1616,"nodeType":455},{},[],"That was viable when new tools or techniques showed up once or twice a quarter. It doesn’t stand a chance when attack evolutions occur weekly or even daily. That’s the reality now with AI-generated adversary tools.",{"data":1618,"content":1619,"nodeType":464},{},[1620,1625],{"data":1621,"marks":1622,"value":1624,"nodeType":455},{},[1623],{"type":462},"So, can AI agents replace human threat researchers?",{"data":1626,"marks":1627,"value":1628,"nodeType":455},{},[]," That’s the wrong question. Can AI agents massively scale the expertise of a seasoned human threat hunter without getting bored of repetitive tasks, missing pertinent but easily overlooked details, or creating operational siloes dependent on one person’s knowledge — and do its work continuously across trillions of data points? Yes, absolutely.",{"data":1630,"content":1634,"nodeType":592},{"target":1631},{"sys":1632},{"id":1633,"type":589,"linkType":590},"3OiZ7BrViCTTMmHUAbloEt",[],{"data":1636,"content":1637,"nodeType":596},{},[],{"data":1639,"content":1640,"nodeType":604},{},[1641],{"data":1642,"marks":1643,"value":1645,"nodeType":455},{},[1644],{"type":462},"Why scaling browser threat detection requires more than more analysts",{"data":1647,"content":1648,"nodeType":464},{},[1649,1653,1657],{"data":1650,"marks":1651,"value":1652,"nodeType":455},{},[],"Already this year, we’ve ",{"data":1654,"marks":1655,"value":1156,"nodeType":455},{},[1656],{"type":462},{"data":1658,"marks":1659,"value":1660,"nodeType":455},{},[]," the cumulative number of detections shipped to Push customers using this pipeline. That output points to the first problem we set out to solve by employing AI agents: Scaling our research team’s considerable expertise.",{"data":1662,"content":1663,"nodeType":464},{},[1664,1668,1678],{"data":1665,"marks":1666,"value":1667,"nodeType":455},{},[],"Push’s R&D team are experts at understanding and unpacking modern browser-based attacks. This is essential when you consider how quickly attacks themselves are evolving. When we created the ",{"data":1669,"content":1673,"nodeType":1534},{"target":1670},{"sys":1671},{"id":1672,"type":589,"linkType":590},"211Dd0EIrXPOFpvRgs0fEE",[1674],{"data":1675,"marks":1676,"value":1677,"nodeType":455},{},[],"Browser & Identity Attacks Matrix",{"data":1679,"marks":1680,"value":1681,"nodeType":455},{},[]," in 2023 (then called the SaaS Attacks Matrix), many of the ideas in it were theoretical. Not anymore. ",{"data":1683,"content":1684,"nodeType":534},{},[1685,1695,1719],{"data":1686,"content":1687,"nodeType":499},{},[1688],{"data":1689,"content":1690,"nodeType":464},{},[1691],{"data":1692,"marks":1693,"value":1694,"nodeType":455},{},[],"We’ve tracked the rise of AiTM phish kits from their status as MFA-bypassing novelties to the emergence of an entire criminal ecosystem built around increasingly sophisticated Phishing-as-a-Service tools. ",{"data":1696,"content":1697,"nodeType":499},{},[1698],{"data":1699,"content":1700,"nodeType":464},{},[1701,1705,1715],{"data":1702,"marks":1703,"value":1704,"nodeType":455},{},[],"We imagined the simple but effective power of using device code authorization for phishing three years ago; in the last few months, we’ve detected a 37x increase in ",{"data":1706,"content":1710,"nodeType":1534},{"target":1707},{"sys":1708},{"id":1709,"type":589,"linkType":590},"5DmCqTU2Tg4adYScA5vT2x",[1711],{"data":1712,"marks":1713,"value":1714,"nodeType":455},{},[],"device code phishing attacks",{"data":1716,"marks":1717,"value":1718,"nodeType":455},{},[]," across our install base. ",{"data":1720,"content":1721,"nodeType":499},{},[1722],{"data":1723,"content":1724,"nodeType":464},{},[1725,1729,1738,1742,1751,1755,1765,1768,1777,1780,1790],{"data":1726,"marks":1727,"value":1728,"nodeType":455},{},[],"We were also the first to detect a novel post-authorization attack we dubbed ",{"data":1730,"content":1734,"nodeType":1534},{"target":1731},{"sys":1732},{"id":1733,"type":589,"linkType":590},"71EaaK7lfl6bQBbkAU0qjv",[1735],{"data":1736,"marks":1737,"value":1076,"nodeType":455},{},[],{"data":1739,"marks":1740,"value":1741,"nodeType":455},{},[]," that combines OAuth consent phishing and ClickFix-style user prompts; reported on the rise of the ridiculously simple yet effective ",{"data":1743,"content":1746,"nodeType":1534},{"target":1744},{"sys":1745},{"id":1585,"type":589,"linkType":590},[1747],{"data":1748,"marks":1749,"value":1750,"nodeType":455},{},[],"InstallFix technique",{"data":1752,"marks":1753,"value":1754,"nodeType":455},{},[]," described earlier; and detected an array of other ",{"data":1756,"content":1760,"nodeType":1534},{"target":1757},{"sys":1758},{"id":1759,"type":589,"linkType":590},"2YmiesBvJHGw4wiKEKzLUq",[1761],{"data":1762,"marks":1763,"value":1764,"nodeType":455},{},[],"creative",{"data":1766,"marks":1767,"value":1305,"nodeType":455},{},[],{"data":1769,"content":1772,"nodeType":1534},{"target":1770},{"sys":1771},{"id":1528,"type":589,"linkType":590},[1773],{"data":1774,"marks":1775,"value":1776,"nodeType":455},{},[],"phishing",{"data":1778,"marks":1779,"value":1305,"nodeType":455},{},[],{"data":1781,"content":1785,"nodeType":1534},{"target":1782},{"sys":1783},{"id":1784,"type":589,"linkType":590},"6Zosy4SU0LpjlaSWX75peb",[1786],{"data":1787,"marks":1788,"value":1789,"nodeType":455},{},[],"campaigns",{"data":1791,"marks":1792,"value":1793,"nodeType":455},{},[]," tied to malvertising scams.",{"data":1795,"content":1799,"nodeType":592},{"target":1796},{"sys":1797},{"id":1798,"type":589,"linkType":590},"53U3LHhhHFYnEpShdLmDqs",[],{"data":1801,"content":1802,"nodeType":464},{},[1803],{"data":1804,"marks":1805,"value":1806,"nodeType":455},{},[],"With an agentic approach, we could scale this expertise and reduce the time it takes to go from technique discovery to production-ready detection. This speed is critical now because adversaries are also using AI tools to do their work, exploding the number of trivial-to-rotate indicators of compromise and overwhelming existing detection workflows that lack an equivalent machine speed.",{"data":1808,"content":1812,"nodeType":592},{"target":1809},{"sys":1810},{"id":1811,"type":589,"linkType":590},"1u00uFbC4xsvP9lqahXbgD",[],{"data":1814,"content":1815,"nodeType":1137},{},[1816],{"data":1817,"marks":1818,"value":1820,"nodeType":455},{},[1819],{"type":462},"Scaling behavioral detections, not just making bigger blocklists",{"data":1822,"content":1823,"nodeType":464},{},[1824],{"data":1825,"marks":1826,"value":1827,"nodeType":455},{},[],"But output numbers alone don’t tell the story of successful detections. That’s the other problem we set out to solve at scale: Most secure browser solutions rely on detection logic based on blocking known-bad indicators like domains, IPs, and URLs.",{"data":1829,"content":1830,"nodeType":464},{},[1831,1836],{"data":1832,"marks":1833,"value":1835,"nodeType":455},{},[1834],{"type":462},"If your solution offers 1,000 detections, and they’re all based on known-bad indicators that are easily rotated, then you’ve got 1,000 detections that worked once and will likely never fire again. ",{"data":1837,"marks":1838,"value":1839,"nodeType":455},{},[],"They certainly won’t catch subtle adaptations in adversary techniques that don’t rely on infrastructure changes, which are easy for attackers to swap anyway. ",{"data":1841,"content":1842,"nodeType":464},{},[1843],{"data":1844,"marks":1845,"value":1846,"nodeType":455},{},[],"Push does it differently. Our detection engine is focused on hunting for tactics, techniques, and procedures: the behavioral fingerprints of an attack, not just the infrastructure it runs on. ",{"data":1848,"content":1852,"nodeType":592},{"target":1849},{"sys":1850},{"id":1851,"type":589,"linkType":590},"5jR3YVUiusHGnXDOyrgYpr",[],{"data":1854,"content":1855,"nodeType":464},{},[1856],{"data":1857,"marks":1858,"value":1859,"nodeType":455},{},[],"Instead of blocking based on known-bad domains, URLs, and IPs, our detections are built around user-level and page-level behaviors like what scripts load, how redirects behave, what events fire, what actions a user takes and what happens next, etc. (In fact, Push detections don’t even use any infrastructure-based IOCs, though customers can write their own custom detections if they have a specific IOC they’re keeping an eye on.)",{"data":1861,"content":1862,"nodeType":464},{},[1863,1868,1879],{"data":1864,"marks":1865,"value":1867,"nodeType":455},{},[1866],{"type":462},"All the detections we write would survive infrastructure rotation by adversaries, and many of our existing detections have caught never-before-seen evolutions in TTPs. That’s because we focus on the top of the ",{"data":1869,"content":1873,"nodeType":1534},{"target":1870},{"sys":1871},{"id":1872,"type":589,"linkType":590},"1qegIy4rMdm5XZXnIEoKpE",[1874],{"data":1875,"marks":1876,"value":1878,"nodeType":455},{},[1877],{"type":462},"Pyramid of Pain",{"data":1880,"marks":1881,"value":1883,"nodeType":455},{},[1882],{"type":462},", the indicators that are hardest for attackers to change.",{"data":1885,"content":1886,"nodeType":464},{},[1887],{"data":1888,"marks":1889,"value":1890,"nodeType":455},{},[],"This focus on detecting TTPs has always been our approach. But with the acceleration in both attack types and the ease with which adversaries rotate infrastructure, we needed to build capabilities that scaled our knowledge. ",{"data":1892,"content":1893,"nodeType":464},{},[1894],{"data":1895,"marks":1896,"value":1897,"nodeType":455},{},[],"We did this not by replacing researchers, but by continuously activating their expertise. You can hear what our CEO and Co-founder Adam had to say about this below. ",{"data":1899,"content":1903,"nodeType":592},{"target":1900},{"sys":1901},{"id":1902,"type":589,"linkType":590},"C9gr4nF3f6CW45Aol9xij",[],{"data":1905,"content":1906,"nodeType":596},{},[],{"data":1908,"content":1909,"nodeType":604},{},[1910],{"data":1911,"marks":1912,"value":1914,"nodeType":455},{},[1913],{"type":462},"Core principles for agentic threat hunting",{"data":1916,"content":1917,"nodeType":464},{},[1918],{"data":1919,"marks":1920,"value":1921,"nodeType":455},{},[],"Three principles make Push's agentic threat hunting and detection engineering pipeline work:",{"data":1923,"content":1924,"nodeType":1137},{},[1925],{"data":1926,"marks":1927,"value":1929,"nodeType":455},{},[1928],{"type":462},"Context matters more than custom models",{"data":1931,"content":1932,"nodeType":464},{},[1933],{"data":1934,"marks":1935,"value":1936,"nodeType":455},{},[],"We’re not AI researchers; we’re security researchers — we aren't trying to compete in building the most intelligent models. And in our view, AI models are quickly becoming commoditized like cloud infrastructure, anyway. Luckily, the commercial models today already excel at understanding web code. We just need to harness their power with our expertise.",{"data":1938,"content":1939,"nodeType":464},{},[1940,1944,1949],{"data":1941,"marks":1942,"value":1943,"nodeType":455},{},[],"So at Push, we use a variety of commercial AI models and tools in complementary ways. What matters most is the telemetry they analyze, and that’s where Push’s existing product infrastructure shines: We’re already deployed into over ",{"data":1945,"marks":1946,"value":1948,"nodeType":455},{},[1947],{"type":462},"3 million browsers worldwide",{"data":1950,"marks":1951,"value":1952,"nodeType":455},{},[],", and the Push browser extension includes a component that operates as a flight recorder to locally record everything that matters inside a browser session.",{"data":1954,"content":1955,"nodeType":464},{},[1956],{"data":1957,"marks":1958,"value":1959,"nodeType":455},{},[],"This universe of metadata — DOM elements, tab context, script execution, network traffic, user actions, credential entry, etc. — becomes the searchable corpus for hunts. Metadata is stored locally in users’ browsers and only queried during targeted threat hunts. ",{"data":1961,"content":1962,"nodeType":464},{},[1963],{"data":1964,"marks":1965,"value":1966,"nodeType":455},{},[],"This approach avoids dragnet collection of sensitive data. Instead, we focus on collecting metadata and distilling that into patterns and insights that provide context for agents to perform their analysis. This means that Push also does not train or fine-tune models on customer data.",{"data":1968,"content":1969,"nodeType":1137},{},[1970],{"data":1971,"marks":1972,"value":1974,"nodeType":455},{},[1973],{"type":462},"Agents are only as good as the context you give them. Good context is researcher-led",{"data":1976,"content":1977,"nodeType":464},{},[1978],{"data":1979,"marks":1980,"value":1981,"nodeType":455},{},[],"AI agents don’t know how to identify the TTPs of browser-based attacks until you give them the right context, and Push researchers have spent years unpacking these techniques and tools. Agents at Push consume our internal knowledge base of identified TTPs, and both humans and agents perform meta-analyses to check their work. The agents have access to large libraries of traces of human interactions with real phishing kits. This is a powerful dataset to build on.",{"data":1983,"content":1984,"nodeType":464},{},[1985],{"data":1986,"marks":1987,"value":1988,"nodeType":455},{},[],"When we don’t get the results we want from AI models, the question is “What context is it missing? What does our human team know that the agents don’t, and how can we give them that context — do they need data, tools, better workflows?” That closes the gap in performance and keeps quality high.",{"data":1990,"content":1991,"nodeType":1137},{},[1992],{"data":1993,"marks":1994,"value":1996,"nodeType":455},{},[1995],{"type":462},"Integrated architecture that makes agentic AI the throughput layer, not a bolt-on",{"data":1998,"content":1999,"nodeType":464},{},[2000],{"data":2001,"marks":2002,"value":2003,"nodeType":455},{},[],"The constraint we’re trying to break by using AI isn’t knowledge, it’s throughput. Our researchers deeply understand the techniques and tools. An agentic pipeline can apply that understanding continuously across millions of browsers and trillions of events, ingest new external signals, generate hunt hypotheses, triage results, and return only the findings that warrant escalation.",{"data":2005,"content":2006,"nodeType":464},{},[2007],{"data":2008,"marks":2009,"value":2010,"nodeType":455},{},[],"This approach relies on tight integration of our product and our agentic workflows. We’ll take a closer look at that in the next section.",{"data":2012,"content":2013,"nodeType":596},{},[],{"data":2015,"content":2016,"nodeType":604},{},[2017],{"data":2018,"marks":2019,"value":2021,"nodeType":455},{},[2020],{"type":462},"How the agentic detection pipeline runs",{"data":2023,"content":2024,"nodeType":464},{},[2025],{"data":2026,"marks":2027,"value":2028,"nodeType":455},{},[],"Now let’s look at how agentic threat detection actually works, and some of the emerging best practices we’ve identified. We'll cover two example hunts, one initiated autonomously by the agents themselves, and one by our research team. ",{"data":2030,"content":2031,"nodeType":1137},{},[2032],{"data":2033,"marks":2034,"value":2036,"nodeType":455},{},[2035],{"type":462},"Example 1: Autonomous threat hunt",{"data":2038,"content":2039,"nodeType":464},{},[2040],{"data":2041,"marks":2042,"value":2043,"nodeType":455},{},[],"Push’s threat hunting pipeline ingested context from research articles describing a new attack technique, and an agent developed hypotheses on what to hunt for across Push’s install base to identify instances of this attack. ",{"data":2045,"content":2046,"nodeType":464},{},[2047],{"data":2048,"marks":2049,"value":2050,"nodeType":455},{},[],"The agent crafted detection queries and then refined them to reduce false positives. The successful query ran across stored metadata and returned results, validating that there were zero false positives. ",{"data":2052,"content":2053,"nodeType":464},{},[2054],{"data":2055,"marks":2056,"value":2057,"nodeType":455},{},[],"The validated query became a scheduled job that runs on a regular cadence to monitor for potentially malicious signals. A triage agent then received any matches, did an initial analysis, and passed anything that looked suspicious to another agent to perform deeper analysis. This deep analysis agent wields the full investigative toolkit that a human researcher would — using Push’s internal knowledge base, domain age and registration analysis, URLScan and whois lookups, DOM image analysis, and contextual analysis of page-level and user-level behaviors, etc.",{"data":2059,"content":2060,"nodeType":464},{},[2061],{"data":2062,"marks":2063,"value":2064,"nodeType":455},{},[],"Within a few minutes, it can filter a thousand or more signals in a hunt trace down to a handful with meaning and provide an actionable assessment. Then, once the TTP was well-understood, other agents wrote and refined detections that can raise alerts for customers when an event of this type is seen. The Push platform immediately applies the customer’s configured security controls, such as blocking users from interacting with malicious pages.",{"data":2066,"content":2067,"nodeType":1137},{},[2068],{"data":2069,"marks":2070,"value":2072,"nodeType":455},{},[2071],{"type":462},"Example 2: Human-initiated threat hunt",{"data":2074,"content":2075,"nodeType":464},{},[2076],{"data":2077,"marks":2078,"value":2079,"nodeType":455},{},[],"Now, going back to the example from the beginning of the article: InstallFix. This hunt started with a thorny problem our research team needed to solve: How to detect bad things downstream of a user interacting with a Google ad? We needed a way to pinpoint the bad links from the good ones.",{"data":2081,"content":2082,"nodeType":464},{},[2083,2087,2092,2095,2100,2103,2108],{"data":2084,"marks":2085,"value":2086,"nodeType":455},{},[],"Our researchers collaborated with agents to formulate the right parameters for hunt queries, taking into account that good ads are normally bought by companies with marketing budgets, so therefore ads will be expected to redirect to pages hosted on custom domains, not shared domains like ",{"data":2088,"marks":2089,"value":2091,"nodeType":455},{},[2090],{"type":462},"*pages.dev",{"data":2093,"marks":2094,"value":1080,"nodeType":455},{},[],{"data":2096,"marks":2097,"value":2099,"nodeType":455},{},[2098],{"type":462},"*workers.dev",{"data":2101,"marks":2102,"value":1080,"nodeType":455},{},[],{"data":2104,"marks":2105,"value":2107,"nodeType":455},{},[2106],{"type":462},"*squarespace.com",{"data":2109,"marks":2110,"value":2111,"nodeType":455},{},[],", etc.",{"data":2113,"content":2114,"nodeType":464},{},[2115],{"data":2116,"marks":2117,"value":2118,"nodeType":455},{},[],"Our AI agents already understood key TTPs that indicated potential maliciousness on a page: password prompts, file downloads, OAuth integrations, clipboard copies, and similar user prompts that are frequently abused.",{"data":2120,"content":2121,"nodeType":464},{},[2122],{"data":2123,"marks":2124,"value":2125,"nodeType":455},{},[],"The agent ran several queries that returned matching browsing traces — the term we use for sequences of events in a session or tab context — where the user clicked a Google ad, was redirected to a page on a shared hosting domain, and then clicked a button to copy content to their clipboard.",{"data":2127,"content":2131,"nodeType":592},{"target":2128},{"sys":2129},{"id":2130,"type":589,"linkType":590},"4IWOrWuvbwzWRJUkINiwKH",[],{"data":2133,"content":2134,"nodeType":464},{},[2135],{"data":2136,"marks":2137,"value":2138,"nodeType":455},{},[],"We got back high-fidelity findings and then tuned the query into a continuous detection that leveraged existing detection logic around related techniques. This process also effectively back-tests new detections, so we know we’re not going to generate a lot of false positives. Result: A new detection against a new technique, plus several improvements to existing detections.",{"data":2140,"content":2141,"nodeType":1137},{},[2142],{"data":2143,"marks":2144,"value":2146,"nodeType":455},{},[2145],{"type":462},"What infrastructure is needed for agentic threat hunting?",{"data":2148,"content":2149,"nodeType":464},{},[2150],{"data":2151,"marks":2152,"value":2153,"nodeType":455},{},[],"Both of these examples illustrate the end-to-end workflows supported by this pipeline. From an infrastructure perspective, you can think about the pipeline as composed of:",{"data":2155,"content":2156,"nodeType":534},{},[2157,2172,2187,2202,2217],{"data":2158,"content":2159,"nodeType":499},{},[2160],{"data":2161,"content":2162,"nodeType":464},{},[2163,2168],{"data":2164,"marks":2165,"value":2167,"nodeType":455},{},[2166],{"type":462},"A flight recorder: ",{"data":2169,"marks":2170,"value":2171,"nodeType":455},{},[],"The Push extension-powered capability that collects and locally stores browser event metadata from users’ browsers.",{"data":2173,"content":2174,"nodeType":499},{},[2175],{"data":2176,"content":2177,"nodeType":464},{},[2178,2183],{"data":2179,"marks":2180,"value":2182,"nodeType":455},{},[2181],{"type":462},"A knowledge base:",{"data":2184,"marks":2185,"value":2186,"nodeType":455},{},[]," Structured knowledge about what Push knows about TTPs and its existing body of detection logic, as well as externally sourced signals of new attack trends.",{"data":2188,"content":2189,"nodeType":499},{},[2190],{"data":2191,"content":2192,"nodeType":464},{},[2193,2198],{"data":2194,"marks":2195,"value":2197,"nodeType":455},{},[2196],{"type":462},"Agents as tools: ",{"data":2199,"marks":2200,"value":2201,"nodeType":455},{},[],"Role-segmented agents that work as a team to triage, investigate, develop hunt queries, return analyses, write detections, and review each others’ work for completeness and accuracy.",{"data":2203,"content":2204,"nodeType":499},{},[2205],{"data":2206,"content":2207,"nodeType":464},{},[2208,2213],{"data":2209,"marks":2210,"value":2212,"nodeType":455},{},[2211],{"type":462},"Humans in the loop: ",{"data":2214,"marks":2215,"value":2216,"nodeType":455},{},[],"Human researchers who collaborate with agents to initiate hunts and tune detections.",{"data":2218,"content":2219,"nodeType":499},{},[2220],{"data":2221,"content":2222,"nodeType":464},{},[2223,2228],{"data":2224,"marks":2225,"value":2227,"nodeType":455},{},[2226],{"type":462},"Platform controls: ",{"data":2229,"marks":2230,"value":2231,"nodeType":455},{},[],"The Push administrator-configured controls that specify how to respond to detected events like AiTM phishing, tuneable by scope, user groups, browser profiles, apps, etc.",{"data":2233,"content":2237,"nodeType":592},{"target":2234},{"sys":2235},{"id":2236,"type":589,"linkType":590},"7FY0vCBUXOt4vnudFuKALC",[],{"data":2239,"content":2240,"nodeType":1137},{},[2241],{"data":2242,"marks":2243,"value":2245,"nodeType":455},{},[2244],{"type":462},"What are the best practices for agentic threat detection?",{"data":2247,"content":2248,"nodeType":464},{},[2249,2253,2258],{"data":2250,"marks":2251,"value":2252,"nodeType":455},{},[],"To be effective, agents must specialize and focus. This is the ",{"data":2254,"marks":2255,"value":2257,"nodeType":455},{},[2256],{"type":462},"agents as tools",{"data":2259,"marks":2260,"value":2261,"nodeType":455},{},[]," concept. When we’re asking AI agents to take massive amounts of data and make a high-level decision about a signal in observed browser events, they must work as a team, finding intelligent ways to condense information without losing important context or hallucinating.",{"data":2263,"content":2264,"nodeType":464},{},[2265],{"data":2266,"marks":2267,"value":2268,"nodeType":455},{},[],"Creating a hierarchy of agent jobs — including agents to perform meta-analyses to catch mistakes and verify conclusions — makes the agents effective by giving them a manageable focus that controls the size of context windows.",{"data":2270,"content":2274,"nodeType":592},{"target":2271},{"sys":2272},{"id":2273,"type":589,"linkType":590},"3fzJCknMUmh4Z7YnhBSbsT",[],{"data":2276,"content":2277,"nodeType":464},{},[2278],{"data":2279,"marks":2280,"value":2281,"nodeType":455},{},[],"Creating an agentic workflow requires operationalizing your internal knowledge in a repeatable and trustworthy way. Sharing rich context from human discoveries is the key to getting the best results out of agents. ",{"data":2283,"content":2284,"nodeType":464},{},[2285,2289,2294],{"data":2286,"marks":2287,"value":2288,"nodeType":455},{},[],"It's vital too that the agent uses ",{"data":2290,"marks":2291,"value":2293,"nodeType":455},{},[2292],{"type":462},"privacy-preserving methods and infrastructure.",{"data":2295,"marks":2296,"value":2297,"nodeType":455},{},[]," The Push agent is designed to respect customer and user privacy while enabling high-fidelity detections. We do this by collecting broad browser metadata but storing it locally in users’ browsers and only querying that metadata during active threat hunting investigations.",{"data":2299,"content":2300,"nodeType":596},{},[],{"data":2302,"content":2303,"nodeType":604},{},[2304],{"data":2305,"marks":2306,"value":2308,"nodeType":455},{},[2307],{"type":462},"The compounding effect and how it benefits Push customers",{"data":2310,"content":2311,"nodeType":464},{},[2312],{"data":2313,"marks":2314,"value":2315,"nodeType":455},{},[],"At Push, we think about our detection capability as two learning loops with a compounding effect: An inner loop that serves as our real-time detection and response engine for known attacker techniques, and an outer loop that is the continuous learning our agents do as they hunt for new threats, analyze emerging behaviors, and create new detections. ",{"data":2317,"content":2318,"nodeType":464},{},[2319],{"data":2320,"marks":2321,"value":2322,"nodeType":455},{},[],"The outer loop feeds the inner loop, and vice versa.",{"data":2324,"content":2328,"nodeType":592},{"target":2325},{"sys":2326},{"id":2327,"type":589,"linkType":590},"1Jjqll7IIX2QRxN37gjFMH",[],{"data":2330,"content":2331,"nodeType":464},{},[2332],{"data":2333,"marks":2334,"value":2335,"nodeType":455},{},[],"Customers benefit from this approach because it means they:",{"data":2337,"content":2338,"nodeType":534},{},[2339,2361,2371],{"data":2340,"content":2341,"nodeType":499},{},[2342],{"data":2343,"content":2344,"nodeType":464},{},[2345,2349,2357],{"data":2346,"marks":2347,"value":2348,"nodeType":455},{},[],"Regularly receive ready-made detections against both known and emerging browser-based threats, without having to write their own detections. (Push also provides the ability to write your own ",{"data":2350,"content":2352,"nodeType":572},{"uri":2351},"\u002Fhelp\u002Faudience\u002Fengineering\u002Fresources\u002Fcustom-detections",[2353],{"data":2354,"marks":2355,"value":2356,"nodeType":455},{},[],"custom detections",{"data":2358,"marks":2359,"value":2360,"nodeType":455},{},[],", too, for environment-specific use cases.)",{"data":2362,"content":2363,"nodeType":499},{},[2364],{"data":2365,"content":2366,"nodeType":464},{},[2367],{"data":2368,"marks":2369,"value":2370,"nodeType":455},{},[],"Can configure Push’s response actions based on their security goals and environment. Agents act as the threat-hunting and detection engineering team; Push customers set the thresholds for how they want to respond. For example, customers can use Push controls to block all AiTM phishing attacks (or even carve out exceptions for their own incident responders to be able to visit malicious pages with just a warning), and agents continually feed new indicators into detection logic for that class of attack.",{"data":2372,"content":2373,"nodeType":499},{},[2374],{"data":2375,"content":2376,"nodeType":464},{},[2377],{"data":2378,"marks":2379,"value":2380,"nodeType":455},{},[],"Get pre-digested and actionable intelligence from every detection, with extremely high fidelity.",{"data":2382,"content":2383,"nodeType":464},{},[2384],{"data":2385,"marks":2386,"value":2387,"nodeType":455},{},[],"This all equates to your own advanced browser threat protection, without requiring the specialized in-house expertise we’ve spent years building.",{"data":2389,"content":2390,"nodeType":464},{},[2391],{"data":2392,"marks":2393,"value":2394,"nodeType":455},{},[],"If you’re a Push customer, you already know that we regularly collaborate with security teams to identify and refine detection use cases, and assist with investigations. In the past few months alone, we’ve worked closely with teams targeted by device code phishing, and InstallFix and ClickFix campaigns, among others. ",{"data":2396,"content":2397,"nodeType":464},{},[2398],{"data":2399,"marks":2400,"value":2401,"nodeType":455},{},[],"If you’re not a customer and are curious about how Push’s agentic threat hunting and detection engineering capabilities can address your use cases, please get in touch.",{"data":2403,"content":2407,"nodeType":592},{"target":2404},{"sys":2405},{"id":2406,"type":589,"linkType":590},"607jrBjlD1vtcbkDfD04DE",[],{"data":2409,"content":2410,"nodeType":596},{},[],{"data":2412,"content":2413,"nodeType":604},{},[2414],{"data":2415,"marks":2416,"value":2418,"nodeType":455},{},[2417],{"type":462},"Learn more",{"data":2420,"content":2421,"nodeType":464},{},[2422],{"data":2423,"marks":2424,"value":2425,"nodeType":455},{},[],"Push Security is the most powerful AI-native security tool in the browser. Think EDR, but for the browser — high-fidelity telemetry and real-time control across every session, on every device, with no browser migration required.",{"data":2427,"content":2428,"nodeType":464},{},[2429],{"data":2430,"marks":2431,"value":2432,"nodeType":455},{},[],"Security teams use Push to detect and stop advanced browser-based attacks like AiTM phishing, ClickFix, and session hijacking; gain visibility and control over AI tool usage across their workforce; harden identities by surfacing credential reuse, SSO gaps, and shadow IT; and support data loss and insider investigations with browser-layer telemetry that other tools can't see.",{"data":2434,"content":2435,"nodeType":464},{},[2436,2440,2448],{"data":2437,"marks":2438,"value":2439,"nodeType":455},{},[],"Book a ",{"data":2441,"content":2443,"nodeType":572},{"uri":2442},"\u002Fdemo",[2444],{"data":2445,"marks":2446,"value":2447,"nodeType":455},{},[],"live demo",{"data":2449,"marks":2450,"value":2451,"nodeType":455},{},[]," to learn more.","Can AI replace a threat researcher? What we learned building an agentic threat hunting pipeline","How we built an end-to-end threat hunting and detection engineering capability at Push that uses AI agents as a force multiplier.","2026-05-12T00:00:00.000Z","can-ai-replace-a-threat-researcher-what-we-learned-building-an-agentic-threat-hunting-pipeline",{"items":2457},[2458,2462],{"sys":2459,"name":2461},{"id":2460},"6A5RXS31ZQx3PwryGb1IMy","Browser-based attacks",{"sys":2463,"name":2465},{"id":2464},"4ksQNCFeBf8H4QIORqpRLw","Detection & response",{"items":2467},[2468],{"fullName":439,"firstName":440,"jobTitle":441,"profilePicture":2469},{"url":443},{"__typename":1503,"sys":2471,"content":2473,"title":3240,"synopsis":3241,"hashTags":59,"publishedDate":3242,"slug":3243,"tagsCollection":3244,"authorsCollection":3250},{"id":2472},"5RDOpmzJolwT1hk0fNIxzf",{"json":2474},{"data":2475,"content":2476,"nodeType":1386},{},[2477,2496,2502,2509,2516,2519,2527,2546,2565,2572,2578,2585,2591,2598,2606,2613,2632,2664,2670,2676,2684,2691,2710,2741,2773,2780,2786,2794,2801,2812,2819,2860,2866,2908,2947,2953,2956,2964,2971,2977,2984,2991,2997,3004,3011,3039,3042,3050,3057,3065,3072,3079,3098,3105,3111,3118,3126,3133,3151,3158,3176,3179,3187,3194,3201,3208,3211,3217,3223],{"data":2478,"content":2479,"nodeType":464},{},[2480,2484,2492],{"data":2481,"marks":2482,"value":2483,"nodeType":455},{},[],"Back in 2024, we wrote about ",{"data":2485,"content":2487,"nodeType":572},{"uri":2486},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Four-design-philosophy-detecting-what-matters\u002F",[2488],{"data":2489,"marks":2490,"value":2491,"nodeType":455},{},[],"how the Pyramid of Pain shapes Push's detection philosophy",{"data":2493,"marks":2494,"value":2495,"nodeType":455},{},[]," — detections targeting indicators that are easy for attackers to change deliver diminishing returns, while detections targeting attacker techniques impose a cost that's hard to absorb. Two years on, every force that made IoC-based detection fragile has intensified.",{"data":2497,"content":2501,"nodeType":592},{"target":2498},{"sys":2499},{"id":2500,"type":589,"linkType":590},"1iuLYxwI8T1wDUIFSom0G0",[],{"data":2503,"content":2504,"nodeType":464},{},[2505],{"data":2506,"marks":2507,"value":2508,"nodeType":455},{},[],"AI hasn't introduced a new problem so much as it's compressed the timelines on an existing one — attackers can generate infrastructure, iterate on tooling, and industrialize newly discovered techniques faster than before. The bottom layers of the Pyramid are collapsing under the weight of machine-speed operations, and the middle layers are starting to buckle too.",{"data":2510,"content":2511,"nodeType":464},{},[2512],{"data":2513,"marks":2514,"value":2515,"nodeType":455},{},[],"These changes mean that technique-level detection is more important than ever. In this article, we’ll dig into how the Pyramid is changing, and what this means for our detection philosophy at Push (TL;DR — it reinforces the path we’re already on: building detections at the top of the Pyramid by harnessing browser visibility). ",{"data":2517,"content":2518,"nodeType":596},{},[],{"data":2520,"content":2521,"nodeType":604},{},[2522],{"data":2523,"marks":2524,"value":2526,"nodeType":455},{},[2525],{"type":462},"The bottom of the Pyramid was already crumbling",{"data":2528,"content":2529,"nodeType":464},{},[2530,2534,2542],{"data":2531,"marks":2532,"value":2533,"nodeType":455},{},[],"The case against indicator-based detection didn't need AI to be compelling. ",{"data":2535,"content":2537,"nodeType":572},{"uri":2536},"https:\u002F\u002Fwww.spamhaus.org\u002F",[2538],{"data":2539,"marks":2540,"value":2541,"nodeType":455},{},[],"89% of phishing domains are active for fewer than two days",{"data":2543,"marks":2544,"value":2545,"nodeType":455},{},[],", with just 6.5% surviving past 15 days — by the time a domain makes it onto a blocklist, the campaign has moved on.",{"data":2547,"content":2548,"nodeType":464},{},[2549,2553,2561],{"data":2550,"marks":2551,"value":2552,"nodeType":455},{},[],"We've ",{"data":2554,"content":2556,"nodeType":572},{"uri":2555},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fwhy-most-phishing-attacks-feel-like-a-zero-day\u002F",[2557],{"data":2558,"marks":2559,"value":2560,"nodeType":455},{},[],"written before",{"data":2562,"marks":2563,"value":2564,"nodeType":455},{},[]," about how this makes every phishing attack effectively a zero-day for organizations relying on known-bad detection. The phishing kit's behavior — its page structure, script signatures, malicious payload mechanics — is the only detection target that outlasts a single campaign.",{"data":2566,"content":2567,"nodeType":464},{},[2568],{"data":2569,"marks":2570,"value":2571,"nodeType":455},{},[],"When we blogged about the Pyramid of Pain for modern attacks that happen predominantly over the internet, with minimal (or zero) endpoint contact, it first looked like this: ",{"data":2573,"content":2577,"nodeType":592},{"target":2574},{"sys":2575},{"id":2576,"type":589,"linkType":590},"2N04ycJ6RKGfHdX5X1TwU3",[],{"data":2579,"content":2580,"nodeType":464},{},[2581],{"data":2582,"marks":2583,"value":2584,"nodeType":455},{},[],"Now, it looks more like this:",{"data":2586,"content":2590,"nodeType":592},{"target":2587},{"sys":2588},{"id":2589,"type":589,"linkType":590},"mfhP4WToOQkrHnVkXU0tX",[],{"data":2592,"content":2593,"nodeType":464},{},[2594],{"data":2595,"marks":2596,"value":2597,"nodeType":455},{},[],"Let’s explore why. ",{"data":2599,"content":2600,"nodeType":1137},{},[2601],{"data":2602,"marks":2603,"value":2605,"nodeType":455},{},[2604],{"type":462},"AI is accelerating phishing rotation and delivery",{"data":2607,"content":2608,"nodeType":464},{},[2609],{"data":2610,"marks":2611,"value":2612,"nodeType":455},{},[],"Attackers are harnessing AI at every stage, speeding up the process of creating, rotating, and replacing phishing infrastructure at every level, as well as capitalizing on AI adoption itself to enhance their lures. The operational signature is more domains, shorter lifespans, more variation, and fewer of the reuse patterns that blocklists depend on.",{"data":2614,"content":2615,"nodeType":464},{},[2616,2620,2628],{"data":2617,"marks":2618,"value":2619,"nodeType":455},{},[],"Attackers can ",{"data":2621,"content":2623,"nodeType":572},{"uri":2622},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fcan-ai-replace-a-threat-researcher-what-we-learned-building-an-agentic-threat-hunting-pipeline\u002F",[2624],{"data":2625,"marks":2626,"value":2627,"nodeType":455},{},[],"vibe-code entire phishing pages in minutes",{"data":2629,"marks":2630,"value":2631,"nodeType":455},{},[]," — not just cloning legitimate login pages but vibe-cloning them, feeding an AI a screenshot and having it rebuild a convincing frontend with a completely unique backend. ",{"data":2633,"content":2634,"nodeType":464},{},[2635,2639,2648,2652,2660],{"data":2636,"marks":2637,"value":2638,"nodeType":455},{},[],"We've seen attackers clone free SaaS tools like background removers and PDF converters, then inject phishing components or ClickFix payloads into what looks like a functional utility. We’ve even seen attackers distributing malware using AI-generated pages shared using ",{"data":2640,"content":2642,"nodeType":572},{"uri":2641},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fllmshare-malvertising-campaign\u002F",[2643],{"data":2644,"marks":2645,"value":2647,"nodeType":455},{},[2646],{"type":570},"LLM tool sharing functionality",{"data":2649,"marks":2650,"value":2651,"nodeType":455},{},[],", resulting in phishing delivery pages hosted on real claude.ai and chatgpt.com. And legitimate cloud platforms like ",{"data":2653,"content":2655,"nodeType":572},{"uri":2654},"https:\u002F\u002Fwww.huntress.com\u002Fblog\u002Frailway-paas-m365-token-replay-campaign",[2656],{"data":2657,"marks":2658,"value":2659,"nodeType":455},{},[],"Railway",{"data":2661,"marks":2662,"value":2663,"nodeType":455},{},[],", Cloudflare Workers, and Vercel host and dynamically rotate attack infrastructure, so the domains feeding into blocklists often belong to reputable services that can't simply be blocked. ",{"data":2665,"content":2669,"nodeType":592},{"target":2666},{"sys":2667},{"id":2668,"type":589,"linkType":590},"5yoLmqysyQazfzLITCUTfc",[],{"data":2671,"content":2675,"nodeType":592},{"target":2672},{"sys":2673},{"id":2674,"type":589,"linkType":590},"5XK5qZMQU19xlA8L2T5y0Z",[],{"data":2677,"content":2678,"nodeType":1137},{},[2679],{"data":2680,"marks":2681,"value":2683,"nodeType":455},{},[2682],{"type":462},"The kit ecosystem is fragmenting faster than anyone can track",{"data":2685,"content":2686,"nodeType":464},{},[2687],{"data":2688,"marks":2689,"value":2690,"nodeType":455},{},[],"What we see across our install base is a huge and growing variation in phishing kits — new kits, derivative kits of known platforms, derivatives of those derivatives — appearing on a weekly basis.",{"data":2692,"content":2693,"nodeType":464},{},[2694,2698,2706],{"data":2695,"marks":2696,"value":2697,"nodeType":455},{},[],"As we reported in our ",{"data":2699,"content":2701,"nodeType":572},{"uri":2700},"https:\u002F\u002Fpushsecurity.com\u002Fthank-you\u002Fbrowser-attacks-report",[2702],{"data":2703,"marks":2704,"value":2705,"nodeType":455},{},[],"Browser Attacks Report",{"data":2707,"marks":2708,"value":2709,"nodeType":455},{},[],", the most common AiTM kits we detected over the last year were Tycoon 2FA (59% of detections), followed by Sneaky 2FA, FlowerStorm, Evilginx (nominally a red team tool, but widely abused by attackers), NakedPages, Gabagool, and dozens more — but those established names are just the visible layer.",{"data":2711,"content":2712,"nodeType":464},{},[2713,2717,2725,2729,2737],{"data":2714,"marks":2715,"value":2716,"nodeType":455},{},[],"Code is forked, modified, and redeployed across kits in a pattern that ",{"data":2718,"content":2720,"nodeType":572},{"uri":2719},"https:\u002F\u002Fblog.barracuda.com\u002F2026\u002F04\u002F16\u002Fthreat-spotlight-tycoon-2fa-scattered-everywhere",[2721],{"data":2722,"marks":2723,"value":2724,"nodeType":455},{},[],"resembles open-source development",{"data":2726,"marks":2727,"value":2728,"nodeType":455},{},[]," more than traditional criminal enterprise, and the rate at which new variants appear is accelerating. The ",{"data":2730,"content":2732,"nodeType":572},{"uri":2731},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fdevice-code-phishing\u002F",[2733],{"data":2734,"marks":2735,"value":2736,"nodeType":455},{},[],"Venom kit",{"data":2738,"marks":2739,"value":2740,"nodeType":455},{},[]," reuses Sneaky 2FA's AiTM infrastructure but carries different branding and adds device code phishing — whether it's the same developers, stolen code, or a deliberate fork is unclear.",{"data":2742,"content":2743,"nodeType":464},{},[2744,2748,2756,2760,2769],{"data":2745,"marks":2746,"value":2747,"nodeType":455},{},[],"Tycoon 2FA illustrates the scale of the evolution. The kit evolves continuously, addingnew capabilities, new evasion techniques, and hybridizing with other platforms. Even when Sekoia and Microsoft seized 330+ Tycoon domains in March 2026, the techniques it popularized were already embedded across competitors, and the slack was taken up by rival platforms within days. And in any case, Tycoon was back to ",{"data":2749,"content":2751,"nodeType":572},{"uri":2750},"https:\u002F\u002Fwww.crowdstrike.com\u002Fen-us\u002Fblog\u002Ftycoon2fa-phishing-as-a-service-platform-persists-following-takedown\u002F",[2752],{"data":2753,"marks":2754,"value":2755,"nodeType":455},{},[],"normal levels of operation",{"data":2757,"marks":2758,"value":2759,"nodeType":455},{},[]," shortly after. It has also been observed ",{"data":2761,"content":2763,"nodeType":572},{"uri":2762},"https:\u002F\u002Fwww.okta.com\u002Fen-nl\u002Fblog\u002Fthreat-intelligence\u002Ftycoon_2fa_phishing_actors_scatter\u002F",[2764],{"data":2765,"marks":2766,"value":2768,"nodeType":455},{},[2767],{"type":570},"pivoting to add new device code phishing capabilities",{"data":2770,"marks":2771,"value":2772,"nodeType":455},{},[]," (more on that below). ",{"data":2774,"content":2775,"nodeType":464},{},[2776],{"data":2777,"marks":2778,"value":2779,"nodeType":455},{},[],"Tear one down and there are many more to take its place — and meanwhile the original is already evolving into something new.",{"data":2781,"content":2785,"nodeType":592},{"target":2782},{"sys":2783},{"id":2784,"type":589,"linkType":590},"3UDzUCCizPJhXp3SsoZuSK",[],{"data":2787,"content":2788,"nodeType":1137},{},[2789],{"data":2790,"marks":2791,"value":2793,"nodeType":455},{},[2792],{"type":462},"New techniques are being industrialized faster than ever",{"data":2795,"content":2796,"nodeType":464},{},[2797],{"data":2798,"marks":2799,"value":2800,"nodeType":455},{},[],"As well as the fragmentation of existing kits, we’re seeing new techniques added at an accelerating rate. ",{"data":2802,"content":2803,"nodeType":464},{},[2804,2808],{"data":2805,"marks":2806,"value":269,"nodeType":455},{},[2807],{"type":462},{"data":2809,"marks":2810,"value":2811,"nodeType":455},{},[]," is the clearest case study. From early nation state adoption in 2024, it took until 2026 for criminal adoption to really take off, but the take-up this year is unprecedented. The EvilTokens kit packaged device code phishing into a PhaaS offering with GPT-powered spear-phishing and adaptive landing pages, hitting 340+ organizations across five countries in March 2026. ",{"data":2813,"content":2814,"nodeType":464},{},[2815],{"data":2816,"marks":2817,"value":2818,"nodeType":455},{},[],"Now, device code functionality is now a core phish kit component. We’re tracking 18+ kits with device code phishing capabilities and a 37.5x increase in device code phishing detections this year alone, with the technique moving from state-sponsored exclusivity to something any PhaaS customer can rent.",{"data":2820,"content":2821,"nodeType":464},{},[2822,2826,2834,2838,2843,2847,2856],{"data":2823,"marks":2824,"value":2825,"nodeType":455},{},[],"Similarly, when we ",{"data":2827,"content":2829,"nodeType":572},{"uri":2828},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Finside-criminal-phishing-panel",[2830],{"data":2831,"marks":2832,"value":2833,"nodeType":455},{},[],"infiltrated Doko's Panel",{"data":2835,"marks":2836,"value":2837,"nodeType":455},{},[]," — a ",{"data":2839,"marks":2840,"value":2842,"nodeType":455},{},[2841],{"type":462},"real-time vishing and AiTM platform",{"data":2844,"marks":2845,"value":2846,"nodeType":455},{},[]," used by ShinyHunters and affiliated groups — the codebase was full of LLM-generated artifacts. Multiple groups were using the templated vishing panel and spinning up their own variants, but the AI-generated indicators persisted throughout. This approach to real-time vishing + browser payload has been a ",{"data":2848,"content":2850,"nodeType":572},{"uri":2849},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fanalyzing-the-instructure-breach\u002F",[2851],{"data":2852,"marks":2853,"value":2855,"nodeType":455},{},[2854],{"type":570},"mainstay of the Com affiliates like ShinyHunters this year",{"data":2857,"marks":2858,"value":2859,"nodeType":455},{},[],". ",{"data":2861,"content":2865,"nodeType":592},{"target":2862},{"sys":2863},{"id":2864,"type":589,"linkType":590},"01mOiserRBXraawXwQyJNm",[],{"data":2867,"content":2868,"nodeType":464},{},[2869,2873,2878,2882,2891,2895,2904],{"data":2870,"marks":2871,"value":2872,"nodeType":455},{},[],"The broader ",{"data":2874,"marks":2875,"value":2877,"nodeType":455},{},[2876],{"type":462},"ClickFix",{"data":2879,"marks":2880,"value":2881,"nodeType":455},{},[]," family shows the same acceleration: First reported in early 2024 and adopted by four nation-state groups within a single quarter. Fast forward and ",{"data":2883,"content":2885,"nodeType":572},{"uri":2884},"https:\u002F\u002Fwww.crowdstrike.com\u002Fen-us\u002Fglobal-threat-report\u002F",[2886],{"data":2887,"marks":2888,"value":2890,"nodeType":455},{},[2889],{"type":570},"CrowdStrike's data",{"data":2892,"marks":2893,"value":2894,"nodeType":455},{},[]," shows a 563% increase in fake CAPTCHA incidents (one of the more common ClickFix lure types), while ",{"data":2896,"content":2898,"nodeType":572},{"uri":2897},"https:\u002F\u002Fcdn-dynmedia-1.microsoft.com\u002Fis\u002Fcontent\u002Fmicrosoftcorp\u002Fmicrosoft\u002Fmsc\u002Fdocuments\u002Fpresentations\u002FCSR\u002FMicrosoft-Digital-Defense-Report-2025.pdf",[2899],{"data":2900,"marks":2901,"value":2903,"nodeType":455},{},[2902],{"type":570},"Microsoft reported",{"data":2905,"marks":2906,"value":2907,"nodeType":455},{},[]," it as making up 47% of observed attacks according to their Digital Defense Report.",{"data":2909,"content":2910,"nodeType":464},{},[2911,2915,2919,2923,2931,2935,2943],{"data":2912,"marks":2913,"value":2914,"nodeType":455},{},[],"And ",{"data":2916,"marks":2917,"value":1076,"nodeType":455},{},[2918],{"type":462},{"data":2920,"marks":2921,"value":2922,"nodeType":455},{},[]," — a combination of ClickFix and OAuth consent phishing techniques — suggests the next compression is already underway. Push researchers ",{"data":2924,"content":2926,"nodeType":572},{"uri":2925},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fconsentfix\u002F",[2927],{"data":2928,"marks":2929,"value":2930,"nodeType":455},{},[],"discovered the technique",{"data":2932,"marks":2933,"value":2934,"nodeType":455},{},[]," in December 2025 — a browser-native ClickFix variant hijacking OAuth consent grants via Azure CLI's localhost redirect. It was later confirmed to be tied to APT29. By January 2026, a ",{"data":2936,"content":2938,"nodeType":572},{"uri":2937},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fconsentfix-v3-analyzing-a-new-toolkit\u002F",[2939],{"data":2940,"marks":2941,"value":2942,"nodeType":455},{},[],"criminal ConsentFix v3 toolkit",{"data":2944,"marks":2945,"value":2946,"nodeType":455},{},[]," had appeared on the XSS forum with Cloudflare Workers, ZoomInfo targeting, and automated exfiltration via Pipedream.",{"data":2948,"content":2952,"nodeType":592},{"target":2949},{"sys":2950},{"id":2951,"type":589,"linkType":590},"41FMif4T0y1maflzonWgL8",[],{"data":2954,"content":2955,"nodeType":596},{},[],{"data":2957,"content":2958,"nodeType":604},{},[2959],{"data":2960,"marks":2961,"value":2963,"nodeType":455},{},[2962],{"type":462},"Why technique-level detection is the only layer that holds",{"data":2965,"content":2966,"nodeType":464},{},[2967],{"data":2968,"marks":2969,"value":2970,"nodeType":455},{},[],"The middle of the Pyramid — tool signatures and artifacts — used to offer much more durable detection than infrastructure indicators. Fingerprinting a specific phishing kit by its JavaScript structure or HTML patterns provided a detection target that survived across dozens or hundreds of campaigns, even as the underlying domains rotated. Tool level detections are still better, but not by quite the same margin.",{"data":2972,"content":2976,"nodeType":592},{"target":2973},{"sys":2974},{"id":2975,"type":589,"linkType":590},"5pxaYdCIFiFKLPhRaPoldX",[],{"data":2978,"content":2979,"nodeType":464},{},[2980],{"data":2981,"marks":2982,"value":2983,"nodeType":455},{},[],"When the kit landscape was dominated by a handful of platforms, you could write signatures for Tycoon, Sneaky2FA, EvilProxy, and so on, and cover the lion's share of attacks. With the ecosystem now producing new variants and entirely new kits on a weekly basis, detecting by kit fingerprint starts to look uncomfortably similar to detecting by domain.",{"data":2985,"content":2986,"nodeType":464},{},[2987],{"data":2988,"marks":2989,"value":2990,"nodeType":455},{},[],"But many of these proliferating kits do share behavioral patterns at a deeper level than their code signatures. For example, every device code phishing kit implements fundamentally the same flow: present a lure, generate a device code via the OAuth Device Authorization endpoint, get the user to enter it on the legitimate authorization page, and poll for the resulting tokens. The frontends vary, the infrastructure varies, but the behavioral pattern doesn't.",{"data":2992,"content":2996,"nodeType":592},{"target":2993},{"sys":2994},{"id":2995,"type":589,"linkType":590},"FyyHayQtsJTwoB1kluMOl",[],{"data":2998,"content":2999,"nodeType":464},{},[3000],{"data":3001,"marks":3002,"value":3003,"nodeType":455},{},[],"Genuinely new attack techniques still require human creativity — an attacker has to identify a gap in how a legitimate protocol or feature can be subverted. That kind of innovation hasn't been automated. But the window to discover a technique, build a detection, and then deploy it before it is adopted by criminals at scale is compressing with each generation.",{"data":3005,"content":3006,"nodeType":464},{},[3007],{"data":3008,"marks":3009,"value":3010,"nodeType":455},{},[],"Organizations that detect at the technique level and deploy before commoditization have a structural advantage that increases over time. Waiting for indicators — even tool-level indicators — means chasing a curve that's accelerating away from you. This is the challenge we grapple with every day as we strive for the most resilient detections possible. ",{"data":3012,"content":3013,"nodeType":3038},{},[3014],{"data":3015,"content":3016,"nodeType":464},{},[3017,3021,3029,3033],{"data":3018,"marks":3019,"value":3020,"nodeType":455},{},[],"As our CPO Jacques Louw put it on ",{"data":3022,"content":3024,"nodeType":572},{"uri":3023},"https:\u002F\u002Frisky.biz\u002FRBNEWSSI128\u002F",[3025],{"data":3026,"marks":3027,"value":3028,"nodeType":455},{},[],"Risky Business",{"data":3030,"marks":3031,"value":3032,"nodeType":455},{},[],": ",{"data":3034,"marks":3035,"value":3037,"nodeType":455},{},[3036],{"type":460},"\"There's no list of bad domains anywhere in the product. It's a crutch — a false cheat code that stops you from doing the detection in the way that actually is resilient, because the next time you see it, it will be on a different domain.\"","blockquote",{"data":3040,"content":3041,"nodeType":596},{},[],{"data":3043,"content":3044,"nodeType":604},{},[3045],{"data":3046,"marks":3047,"value":3049,"nodeType":455},{},[3048],{"type":462},"What it takes to detect at the top of the Pyramid",{"data":3051,"content":3052,"nodeType":464},{},[3053],{"data":3054,"marks":3055,"value":3056,"nodeType":455},{},[],"If technique-level detection is the only layer that holds, two things have to be true about your detection capability: You need the right vantage point, and you need the research velocity to stay ahead.",{"data":3058,"content":3059,"nodeType":1137},{},[3060],{"data":3061,"marks":3062,"value":3064,"nodeType":455},{},[3063],{"type":462},"You need the right vantage point",{"data":3066,"content":3067,"nodeType":464},{},[3068],{"data":3069,"marks":3070,"value":3071,"nodeType":455},{},[],"Technique-level behaviors in browser-based identity attacks — how a phishing page orchestrates credential entry, how a device code flow presents its authorization prompt, how a ClickFix variant manipulates the clipboard — are visible in the browser session and nowhere else.",{"data":3073,"content":3074,"nodeType":464},{},[3075],{"data":3076,"marks":3077,"value":3078,"nodeType":455},{},[],"Network proxies see encrypted traffic and can attempt to reconstruct page behavior from metadata, but DOM manipulation, user interaction sequences, and script execution aren't visible from that vantage point. Email gateways see the delivery mechanism (or nothing at all in the increasing number of social media and search engine based attacks) but not the payload.",{"data":3080,"content":3081,"nodeType":464},{},[3082,3086,3094],{"data":3083,"marks":3084,"value":3085,"nodeType":455},{},[],"As we disclosed in our ",{"data":3087,"content":3088,"nodeType":572},{"uri":2700},[3089],{"data":3090,"marks":3091,"value":3093,"nodeType":455},{},[3092],{"type":570},"browser attacks report",{"data":3095,"marks":3096,"value":3097,"nodeType":455},{},[],", 95% of in-browser attacks we detect use some form of bot protection, often combined with conditional loading techniques like referrer and browser checks, reliably defeating automated analysis techniques. ",{"data":3099,"content":3100,"nodeType":464},{},[3101],{"data":3102,"marks":3103,"value":3104,"nodeType":455},{},[],"Behavioral detection at the technique level requires observing what happens on the page at the moment the user interacts with it — analyzing pages, not links. When you see the entire browsing flow — ad click, redirect chain, page render, credential prompt — an attack stands out immediately. Without that context, any detection system is forced to fill in gaps, and the gaps are where attacks hide.",{"data":3106,"content":3110,"nodeType":592},{"target":3107},{"sys":3108},{"id":3109,"type":589,"linkType":590},"4804g6u4POUDpL42bzP0EY",[],{"data":3112,"content":3113,"nodeType":464},{},[3114],{"data":3115,"marks":3116,"value":3117,"nodeType":455},{},[],"Push sits inside the browser session, observing this in real time. Its detections target the behavioral mechanics of techniques rather than the surface characteristics of individual kits or infrastructure.",{"data":3119,"content":3120,"nodeType":1137},{},[3121],{"data":3122,"marks":3123,"value":3125,"nodeType":455},{},[3124],{"type":462},"You need the research expertise",{"data":3127,"content":3128,"nodeType":464},{},[3129],{"data":3130,"marks":3131,"value":3132,"nodeType":455},{},[],"When the window between technique discovery and industrialized exploitation is measured in weeks rather than years, the detection pipeline needs to operate on that same compressed timescale.",{"data":3134,"content":3135,"nodeType":464},{},[3136,3140,3147],{"data":3137,"marks":3138,"value":3139,"nodeType":455},{},[],"This is where our ",{"data":3141,"content":3142,"nodeType":572},{"uri":2622},[3143],{"data":3144,"marks":3145,"value":3146,"nodeType":455},{},[],"agentic threat hunting pipeline",{"data":3148,"marks":3149,"value":3150,"nodeType":455},{},[]," fits. It's tripled our monthly detection output — not by generating bigger blocklists, but by scaling the process of discovering behavioral patterns across the telemetry generated by 3+ million browser deployments.",{"data":3152,"content":3153,"nodeType":464},{},[3154],{"data":3155,"marks":3156,"value":3157,"nodeType":455},{},[],"The detections it produces are technique-class by design, targeting how attacks work rather than the infrastructure or specific tool that implements them. The goal is curation, not accumulation — hundreds of high-fidelity behavioral detections rather than the billions of signatures and domain entries that traditional approaches require.",{"data":3159,"content":3160,"nodeType":464},{},[3161,3165,3172],{"data":3162,"marks":3163,"value":3164,"nodeType":455},{},[],"When we detected the first in-the-wild ",{"data":3166,"content":3168,"nodeType":572},{"uri":3167},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Finstallfix\u002F",[3169],{"data":3170,"marks":3171,"value":1591,"nodeType":455},{},[],{"data":3173,"marks":3174,"value":3175,"nodeType":455},{},[]," through the pipeline — a user had searched for NotebookLM, clicked a paid Google ad, and was redirected to a fake page with a WebAssembly C2 connector — the detection shipped to all customers within minutes. It didn't depend on knowing the domain, the ad creative, or the specific kit. It depended on recognizing the technique itself.",{"data":3177,"content":3178,"nodeType":596},{},[],{"data":3180,"content":3181,"nodeType":604},{},[3182],{"data":3183,"marks":3184,"value":3186,"nodeType":455},{},[3185],{"type":462},"Technique-level detection is now the only option",{"data":3188,"content":3189,"nodeType":464},{},[3190],{"data":3191,"marks":3192,"value":3193,"nodeType":455},{},[],"As a framework for detection durability, the Pyramid of Pain is more relevant than ever. ",{"data":3195,"content":3196,"nodeType":464},{},[3197],{"data":3198,"marks":3199,"value":3200,"nodeType":455},{},[],"AI has made infrastructure indicators essentially disposable. The tools tier is compressing as criminal vendors vibe-code, fork, and clone tooling at machine speed. Technique-level detection is the layer that holds long-term to be able to proactively detect and block net-new attacks and the kits that power them. ",{"data":3202,"content":3203,"nodeType":464},{},[3204],{"data":3205,"marks":3206,"value":3207,"nodeType":455},{},[],"Novel attack techniques still require human creativity to discover, and detections built around how those techniques work can survive infrastructure rotation, tool proliferation, and kit fragmentation. Defending that layer requires a vantage point inside the browser session and a research pipeline fast enough to stay ahead of the accelerating path from discovery to industrialization.",{"data":3209,"content":3210,"nodeType":596},{},[],{"data":3212,"content":3213,"nodeType":464},{},[3214],{"data":3215,"marks":3216,"value":2425,"nodeType":455},{},[],{"data":3218,"content":3219,"nodeType":464},{},[3220],{"data":3221,"marks":3222,"value":2432,"nodeType":455},{},[],{"data":3224,"content":3225,"nodeType":464},{},[3226,3229,3237],{"data":3227,"marks":3228,"value":21,"nodeType":455},{},[],{"data":3230,"content":3231,"nodeType":572},{"uri":1375},[3232],{"data":3233,"marks":3234,"value":3236,"nodeType":455},{},[3235],{"type":570},"Book a live demo",{"data":3238,"marks":3239,"value":2451,"nodeType":455},{},[],"The Pyramid of Pain in the AI era: Why technique-level detection matters more than ever","AI is accelerating the collapse of indicator-based threat detection. Here's why you need technique-level detection to stay ahead.","2026-06-01T00:00:00.000Z","the-pyramid-of-pain-in-the-ai-era",{"items":3245},[3246,3248],{"sys":3247,"name":2465},{"id":2464},{"sys":3249,"name":2461},{"id":2460},{"items":3251},[3252],{"fullName":3253,"firstName":3254,"jobTitle":3255,"profilePicture":3256},"Dan Green","Dan","Threat Research",{"url":3257},"https:\u002F\u002Fimages.ctfassets.net\u002Fy1cdw1ablpvd\u002F7jik1VhFgA3kgzXBXTm2Vw\u002Ffcd8c171da644903d0827eafcfbcaad0\u002FDan_Headshot_2025.png",{"__typename":1503,"sys":3259,"content":3261,"title":4052,"synopsis":4053,"hashTags":59,"publishedDate":4054,"slug":4055,"tagsCollection":4056,"authorsCollection":4062},{"id":3260},"Gcg7PGuICrlRcqq1QFXxH",{"json":3262},{"data":3263,"content":3264,"nodeType":1386},{},[3265,3272,3279,3310,3317,3323,3329,3341,3344,3352,3368,3375,3381,3388,3395,3401,3404,3412,3419,3425,3431,3438,3445,3463,3469,3472,3480,3498,3504,3511,3514,3522,3529,3536,3542,3548,3592,3599,3602,3610,3617,3624,3667,3674,3705,3712,3755,3762,3765,3773,3792,3799,3807,3822,3829,3846,3853,3856,3862,3868,3886,3889,3897,3916,3923,4046],{"data":3266,"content":3267,"nodeType":464},{},[3268],{"data":3269,"marks":3270,"value":3271,"nodeType":455},{},[],"Shared conversations on AI chatbot platforms have become the latest delivery mechanism for malware campaigns targeting macOS and Windows users. Attackers create content on platforms like ChatGPT and Claude that appears to offer installation guidance or service updates, then drive traffic to it via search engine results in the form of malvertising and SEO poisoning.  ",{"data":3273,"content":3274,"nodeType":464},{},[3275],{"data":3276,"marks":3277,"value":3278,"nodeType":455},{},[],"The content lives on chatgpt.com or claude.ai — domains that users and security tools trust implicitly — so the attack bypasses URL reputation checks before the victim even reaches the malicious payload.",{"data":3280,"content":3281,"nodeType":464},{},[3282,3286,3294,3298,3306],{"data":3283,"marks":3284,"value":3285,"nodeType":455},{},[],"Several variants of this technique have been ",{"data":3287,"content":3289,"nodeType":572},{"uri":3288},"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Fhackers-abuse-google-ads-claudeai-chats-to-push-mac-malware\u002F",[3290],{"data":3291,"marks":3292,"value":3293,"nodeType":455},{},[],"reported over the past few months",{"data":3295,"marks":3296,"value":3297,"nodeType":455},{},[],". The earliest examples used shared Claude.ai conversations disguised as installation guides — complete with fake \"Apple Support\" attribution — that walked users through opening a terminal and pasting a curl command that downloaded and executed an infostealer. ",{"data":3299,"content":3301,"nodeType":572},{"uri":3300},"https:\u002F\u002Fwww.kaspersky.com\u002Fblog\u002Fshare-chatgpt-chat-clickfix-macos-amos-infostealer\u002F54928\u002F",[3302],{"data":3303,"marks":3304,"value":3305,"nodeType":455},{},[],"Kaspersky documented a parallel campaign",{"data":3307,"marks":3308,"value":3309,"nodeType":455},{},[]," using shared ChatGPT conversations to deliver the AMOS (Atomic macOS Stealer) via the same paste-this-command social engineering pattern. ",{"data":3311,"content":3312,"nodeType":464},{},[3313],{"data":3314,"marks":3315,"value":3316,"nodeType":455},{},[],"Push has detected a new variant that goes beyond the previously reported technique of embedding terminal commands in shared conversations: the attacker has used ChatGPT's code rendering feature to build a fully designed fake page that mimics a ChatGPT service disruption, redirecting victims to a convincing clone of ChatGPT's download page that delivers a malicious executable. ",{"data":3318,"content":3322,"nodeType":592},{"target":3319},{"sys":3320},{"id":3321,"type":589,"linkType":590},"5lz9zt223pecGvdaqdvSTQ",[],{"data":3324,"content":3328,"nodeType":592},{"target":3325},{"sys":3326},{"id":3327,"type":589,"linkType":590},"51GomAj3VOjnbmgd1DWYu0",[],{"data":3330,"content":3331,"nodeType":464},{},[3332,3337],{"data":3333,"marks":3334,"value":3336,"nodeType":455},{},[3335],{"type":462},"This is a live campaign which is still generating detections across our customer base at the time of writing. ",{"data":3338,"marks":3339,"value":3340,"nodeType":455},{},[],"Push customers are already protected and do not need to take further action. The malicious page URLs can be found at the end of this report but are not exhaustive and are liable to change. ",{"data":3342,"content":3343,"nodeType":596},{},[],{"data":3345,"content":3346,"nodeType":604},{},[3347],{"data":3348,"marks":3349,"value":3351,"nodeType":455},{},[3350],{"type":462},"A fake page, not a fake conversation",{"data":3353,"content":3354,"nodeType":464},{},[3355,3359,3364],{"data":3356,"marks":3357,"value":3358,"nodeType":455},{},[],"Previously reported variants relied on shared ",{"data":3360,"marks":3361,"value":3363,"nodeType":455},{},[3362],{"type":460},"conversations",{"data":3365,"marks":3366,"value":3367,"nodeType":455},{},[]," — the attacker created a chat that contained step-by-step instructions for the victim to follow, typically involving pasting a command into their terminal. The social engineering was conversational: the \"AI assistant\" appeared to be helpfully guiding the user through an installation process.",{"data":3369,"content":3370,"nodeType":464},{},[3371],{"data":3372,"marks":3373,"value":3374,"nodeType":455},{},[],"But now, rather than a shared conversation, the attacker has used ChatGPT's code rendering feature to create a fully designed, self-contained web page hosted at a chatgpt.com\u002Fs\u002F URL. It renders as what appears to be a ChatGPT service disruption notice:",{"data":3376,"content":3380,"nodeType":592},{"target":3377},{"sys":3378},{"id":3379,"type":589,"linkType":590},"1O9gyQab81SnbxhQp2aa5Z",[],{"data":3382,"content":3383,"nodeType":464},{},[3384],{"data":3385,"marks":3386,"value":3387,"nodeType":455},{},[],"A professional-looking error message reads: \"We're experiencing high traffic right now. Our website is temporarily unavailable due to a large number of users. Download our desktop app to continue.\" A prominent download button sits below.",{"data":3389,"content":3390,"nodeType":464},{},[3391],{"data":3392,"marks":3393,"value":3394,"nodeType":455},{},[],"The \"Show code\" toggle at the top of the page reveals what's actually happening — the entire thing is custom HTML and CSS, authored to mimic a ChatGPT system notice, rendered using ChatGPT's code output feature. A web page inside a web page, hosted on a domain that every URL reputation system in the world considers safe.",{"data":3396,"content":3400,"nodeType":592},{"target":3397},{"sys":3398},{"id":3399,"type":589,"linkType":590},"4kQTfxB3aVH9W9BeYOuljP",[],{"data":3402,"content":3403,"nodeType":596},{},[],{"data":3405,"content":3406,"nodeType":604},{},[3407],{"data":3408,"marks":3409,"value":3411,"nodeType":455},{},[3410],{"type":462},"The download page",{"data":3413,"content":3414,"nodeType":464},{},[3415],{"data":3416,"marks":3417,"value":3418,"nodeType":455},{},[],"Clicking the download button redirects the user to openew[.]app, which presents a convincing clone of ChatGPT's official desktop application download page — complete with OpenAI branding, macOS and Windows download buttons, a Chrome extension link, and a mobile download section.",{"data":3420,"content":3424,"nodeType":592},{"target":3421},{"sys":3422},{"id":3423,"type":589,"linkType":590},"4MdFc4OB37ZihTGx506QJ6",[],{"data":3426,"content":3430,"nodeType":592},{"target":3427},{"sys":3428},{"id":3429,"type":589,"linkType":590},"LaPUy0zpIeY8s4PF2wkat",[],{"data":3432,"content":3433,"nodeType":464},{},[3434],{"data":3435,"marks":3436,"value":3437,"nodeType":455},{},[],"The site also displays differently depending on who visits it. When Push researchers examined the URL via URLScan, the scanner was redirected to a different page entirely — a generic AR\u002FVR company website with no obvious connection to ChatGPT. ",{"data":3439,"content":3440,"nodeType":464},{},[3441],{"data":3442,"marks":3443,"value":3444,"nodeType":455},{},[],"Real users in a browser see the fake download page; automated scanners and bots see something benign. This kind of conditional rendering is a well-established evasion technique in the malvertising ecosystem, and it makes the malicious infrastructure harder for security teams and threat intelligence services to identify and analyze.",{"data":3446,"content":3447,"nodeType":464},{},[3448,3452,3460],{"data":3449,"marks":3450,"value":3451,"nodeType":455},{},[],"The downloaded executable poses as \"ChatGPT for Desktop\" and is ",{"data":3453,"content":3455,"nodeType":572},{"uri":3454},"https:\u002F\u002Fwww.virustotal.com\u002Fgui\u002Ffile\u002Fde8c50e8ccd240ef9d10ec26c26eeb37a4d1cad7c1e0edf3bb6e5689ec2dde78",[3456],{"data":3457,"marks":3458,"value":3459,"nodeType":455},{},[],"flagged on VirusTotal",{"data":3461,"marks":3462,"value":518,"nodeType":455},{},[],{"data":3464,"content":3468,"nodeType":592},{"target":3465},{"sys":3466},{"id":3467,"type":589,"linkType":590},"3FSbwoFJYQrcyo9uMsQIWI",[],{"data":3470,"content":3471,"nodeType":596},{},[],{"data":3473,"content":3474,"nodeType":604},{},[3475],{"data":3476,"marks":3477,"value":3479,"nodeType":455},{},[3478],{"type":462},"The Claude variant: same campaign, different platform",{"data":3481,"content":3482,"nodeType":464},{},[3483,3487,3494],{"data":3484,"marks":3485,"value":3486,"nodeType":455},{},[],"Alongside the ChatGPT rendered-page variant, Push has also detected the previously reported style of attack using shared Claude.ai conversations. These follow the pattern documented by ",{"data":3488,"content":3489,"nodeType":572},{"uri":3288},[3490],{"data":3491,"marks":3492,"value":3493,"nodeType":455},{},[],"BleepingComputer",{"data":3495,"marks":3496,"value":3497,"nodeType":455},{},[],": a shared chat disguised as a \"Claude Code on Mac\" installation guide, attributed to \"Apple Support,\" containing a curl command that downloads and executes malware.",{"data":3499,"content":3503,"nodeType":592},{"target":3500},{"sys":3501},{"id":3502,"type":589,"linkType":590},"5sWayuTsVdiLSLoS4sv2Vc",[],{"data":3505,"content":3506,"nodeType":464},{},[3507],{"data":3508,"marks":3509,"value":3510,"nodeType":455},{},[],"The fact that both the ChatGPT and Claude variants are appearing in Push customer environments suggests a campaign — or at least a shared playbook — that is actively experimenting with different platforms and different social engineering approaches to find what converts best.",{"data":3512,"content":3513,"nodeType":596},{},[],{"data":3515,"content":3516,"nodeType":604},{},[3517],{"data":3518,"marks":3519,"value":3521,"nodeType":455},{},[3520],{"type":462},"Malvertising remains one of the top phishing delivery channels",{"data":3523,"content":3524,"nodeType":464},{},[3525],{"data":3526,"marks":3527,"value":3528,"nodeType":455},{},[],"Push has detected this variant across multiple customer environments, with users arriving at these shared chat URLs after searching for terms including \"chatgpt,\" \"chatgpt free,\" \"chat gpt,\" and common typos like \"chatgo,\" \"chatgot,\" and \"cvhatgpt.\" ",{"data":3530,"content":3531,"nodeType":464},{},[3532],{"data":3533,"marks":3534,"value":3535,"nodeType":455},{},[],"You can see an example of this below: it's incredibly convincing, and uses the real ChatGPT domain — so even users that are paying attention are liable to fall for it. ",{"data":3537,"content":3541,"nodeType":592},{"target":3538},{"sys":3539},{"id":3540,"type":589,"linkType":590},"1GYWOyHpZT1rdTm6IGOKu8",[],{"data":3543,"content":3547,"nodeType":592},{"target":3544},{"sys":3545},{"id":3546,"type":589,"linkType":590},"4HpFJRAZH2lbygaEk2xOnN",[],{"data":3549,"content":3550,"nodeType":464},{},[3551,3555,3563,3567,3575,3579,3588],{"data":3552,"marks":3553,"value":3554,"nodeType":455},{},[],"This fits a pattern Push has tracked extensively. ",{"data":3556,"content":3558,"nodeType":572},{"uri":3557},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fverizon-dbir-2026-review\u002F",[3559],{"data":3560,"marks":3561,"value":3562,"nodeType":455},{},[],"Search-based delivery is now the dominant channel for malware distribution",{"data":3564,"marks":3565,"value":3566,"nodeType":455},{},[]," — our own data shows that ClickFix attacks are reached via search results rather than email in 4 of 5 cases, and Push's own research into ",{"data":3568,"content":3570,"nodeType":572},{"uri":3569},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fanalysing-a-sophisticated-google-malvertising-attack\u002F",[3571],{"data":3572,"marks":3573,"value":3574,"nodeType":455},{},[],"malvertising campaigns impersonating brands like TradingView",{"data":3576,"marks":3577,"value":3578,"nodeType":455},{},[]," and ",{"data":3580,"content":3582,"nodeType":572},{"uri":3581},"https:\u002F\u002Fpushsecurity.com\u002Fblog\u002Fgoogle-search-malvertising-campaign-continues-now-impersonating-ahrefs\u002F",[3583],{"data":3584,"marks":3585,"value":3587,"nodeType":455},{},[3586],{"type":570},"Ahrefs",{"data":3589,"marks":3590,"value":3591,"nodeType":455},{},[]," has demonstrated how effectively search ads can funnel victims to malicious pages. ",{"data":3593,"content":3594,"nodeType":464},{},[3595],{"data":3596,"marks":3597,"value":3598,"nodeType":455},{},[],"The shared-chat technique adds a new dimension: the destination URL itself is genuine (chatgpt.com, claude.ai), which means even a cautious user who checks the URL before clicking will see nothing suspicious.",{"data":3600,"content":3601,"nodeType":596},{},[],{"data":3603,"content":3604,"nodeType":604},{},[3605],{"data":3606,"marks":3607,"value":3609,"nodeType":455},{},[3608],{"type":462},"Legitimate platform abuse is everywhere",{"data":3611,"content":3612,"nodeType":464},{},[3613],{"data":3614,"marks":3615,"value":3616,"nodeType":455},{},[],"This is one example of a much broader pattern that has become one of the defining characteristics of the 2026 threat landscape: attackers systematically abusing legitimate platforms as attack infrastructure. The scale and variety of this abuse in recent months alone is striking, and it spans every stage of the phishing chain.",{"data":3618,"content":3619,"nodeType":1137},{},[3620],{"data":3621,"marks":3622,"value":3623,"nodeType":455},{},[],"Legit platform abuse for delivery",{"data":3625,"content":3626,"nodeType":464},{},[3627,3631,3639,3643,3651,3655,3663],{"data":3628,"marks":3629,"value":3630,"nodeType":455},{},[],"On the delivery side, attackers have been ",{"data":3632,"content":3634,"nodeType":572},{"uri":3633},"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Famazon-ses-increasingly-abused-in-phishing-to-evade-detection\u002F",[3635],{"data":3636,"marks":3637,"value":3638,"nodeType":455},{},[],"weaponizing stolen AWS credentials to send phishing through Amazon SES",{"data":3640,"marks":3641,"value":3642,"nodeType":455},{},[]," that passes SPF, DKIM, and DMARC validation because SES is a legitimate Amazon service. A Vietnamese operation dubbed ",{"data":3644,"content":3646,"nodeType":572},{"uri":3645},"https:\u002F\u002Fthehackernews.com\u002F2026\u002F05\u002F30000-facebook-accounts-hacked-via.html",[3647],{"data":3648,"marks":3649,"value":3650,"nodeType":455},{},[],"AccountDumpling used Google AppSheet's built-in email capability",{"data":3652,"marks":3653,"value":3654,"nodeType":455},{},[]," as a phishing relay to harvest 30,000 Facebook credentials. ",{"data":3656,"content":3658,"nodeType":572},{"uri":3657},"https:\u002F\u002Ftechcrunch.com\u002F2026\u002F05\u002F21\u002Fscammers-are-abusing-an-internal-microsoft-account-to-send-spam\u002F",[3659],{"data":3660,"marks":3661,"value":3662,"nodeType":455},{},[],"Scammers exploited Microsoft's own internal notification pipeline",{"data":3664,"marks":3665,"value":3666,"nodeType":455},{},[]," — sending phishing from the same msonlineservicesteam@microsoftonline.com address that delivers legitimate 2FA codes — with Spamhaus confirming months of ongoing abuse.",{"data":3668,"content":3669,"nodeType":1137},{},[3670],{"data":3671,"marks":3672,"value":3673,"nodeType":455},{},[],"Legit platform abuse for hosting",{"data":3675,"content":3676,"nodeType":464},{},[3677,3681,3689,3693,3701],{"data":3678,"marks":3679,"value":3680,"nodeType":455},{},[],"For hosting, the platforms being abused read like a who's who of modern web infrastructure. ",{"data":3682,"content":3684,"nodeType":572},{"uri":3683},"https:\u002F\u002Fwww.securityweek.com\u002Fover-500-organizations-hit-in-years-long-phishing-campaign\u002F",[3685],{"data":3686,"marks":3687,"value":3688,"nodeType":455},{},[],"Operation HookedWing ran for four years",{"data":3690,"marks":3691,"value":3692,"nodeType":455},{},[]," on GitHub Pages and Vercel, compromising 500+ organizations across more than 100 GitHub Pages domains before anyone documented it publicly. Cofense has separately ",{"data":3694,"content":3696,"nodeType":572},{"uri":3695},"https:\u002F\u002Fcofense.com\u002Fblog\u002Fsteal-smarter-not-harder-malicious-use-of-vercel-for-credential-phishing\u002F",[3697],{"data":3698,"marks":3699,"value":3700,"nodeType":455},{},[],"documented the growing abuse of Vercel",{"data":3702,"marks":3703,"value":3704,"nodeType":455},{},[]," for credential phishing hosting. Pixm's Q1 2026 phishing report tracked over 100 unique Azure Blob Storage subdomain variants hosting phishing content that carried Microsoft's own domain reputation, alongside abuse of Cloudflare CDN, Cloudflare Workers, Cloudflare R2, Backblaze B2, and Supabase. ",{"data":3706,"content":3707,"nodeType":1137},{},[3708],{"data":3709,"marks":3710,"value":3711,"nodeType":455},{},[],"Abuse of compromised websites that are otherwise legit",{"data":3713,"content":3714,"nodeType":464},{},[3715,3719,3727,3731,3739,3743,3751],{"data":3716,"marks":3717,"value":3718,"nodeType":455},{},[],"Compromised legitimate sites are also being repurposed at scale. A mass exploitation of a ",{"data":3720,"content":3722,"nodeType":572},{"uri":3721},"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fsecurity\u002Fghost-cms-sql-injection-flaw-exploited-in-large-scale-clickfix-campaign\u002F",[3723],{"data":3724,"marks":3725,"value":3726,"nodeType":455},{},[],"Ghost CMS vulnerability planted ClickFix pages across 700+ websites",{"data":3728,"marks":3729,"value":3730,"nodeType":455},{},[]," including Harvard, Oxford, and DuckDuckGo subdomains. Microsoft recently documented a campaign where ",{"data":3732,"content":3734,"nodeType":572},{"uri":3733},"https:\u002F\u002Fwww.microsoft.com\u002Fen-us\u002Fsecurity\u002Fblog\u002F2026\u002F05\u002F26\u002Fpoisoned-search-results-gpu-mining-cryptojacking-campaign-abusing-screenconnect-microsoft-net-utilities\u002F",[3735],{"data":3736,"marks":3737,"value":3738,"nodeType":455},{},[],"SEO poisoning was combined with AI chatbot recommendation manipulation",{"data":3740,"marks":3741,"value":3742,"nodeType":455},{},[]," to deliver GPU mining malware — extending the poisoning from traditional search results into AI-generated software recommendations. And ",{"data":3744,"content":3746,"nodeType":572},{"uri":3745},"https:\u002F\u002Fwww.helpnetsecurity.com\u002F2026\u002F05\u002F27\u002Fdeno-rat-malware-fake-chatgpt-claude-installers\u002F",[3747],{"data":3748,"marks":3749,"value":3750,"nodeType":455},{},[],"fake ChatGPT and Claude installers on GitHub and SourceForge",{"data":3752,"marks":3753,"value":3754,"nodeType":455},{},[]," have been delivering the DinDoor backdoor and a Deno-based RAT via repositories that mimic legitimate developer tool distributions.",{"data":3756,"content":3757,"nodeType":464},{},[3758],{"data":3759,"marks":3760,"value":3761,"nodeType":455},{},[],"The structural problem is that every one of these platforms is genuinely legitimate, and the security controls that evaluate them — domain reputation, email authentication, URL categorization — confirm them as trusted because they are trusted. This attack extends this pattern into new territory by weaponizing the content-sharing features of AI chatbot platforms specifically, but the underlying principles are the same. ",{"data":3763,"content":3764,"nodeType":596},{},[],{"data":3766,"content":3767,"nodeType":604},{},[3768],{"data":3769,"marks":3770,"value":3772,"nodeType":455},{},[3771],{"type":462},"Impact analysis",{"data":3774,"content":3775,"nodeType":464},{},[3776,3780,3788],{"data":3777,"marks":3778,"value":3779,"nodeType":455},{},[],"Shared-chat malware delivery exploits a structural property of AI platforms that traditional security controls aren't designed to handle. Domain reputation, URL categorization, and safe browsing databases all treat chatgpt.com and claude.ai as trusted — because they are. Using these trusted pages to link off to further convincing-looking pages hosting malware allows the attacker to run campaigns that blend in, as well as rotate the phishing delivery pages later in the chain should they ever be flagged, allowing the campaign to continue without interruption (a well known ",{"data":3781,"content":3783,"nodeType":572},{"uri":3782},"https:\u002F\u002Fphishing-techniques.pushsecurity.com\u002F",[3784],{"data":3785,"marks":3786,"value":3787,"nodeType":455},{},[],"detection evasion technique",{"data":3789,"marks":3790,"value":3791,"nodeType":455},{},[],"). ",{"data":3793,"content":3794,"nodeType":464},{},[3795],{"data":3796,"marks":3797,"value":3798,"nodeType":455},{},[],"What makes the rendered-page variant particularly concerning is that it eliminates the most obvious red flag in the earlier attacks. The Claude.ai conversation variants required the victim to recognize that a shared chat instructing them to paste terminal commands might be suspicious — a tall order for many users, but at least the attack surface was visible. The rendered-page variant shows nothing that looks like an attack. It presents what appears to be a routine service disruption with a reasonable call to action: download the desktop app to continue using ChatGPT. ",{"data":3800,"content":3801,"nodeType":1137},{},[3802],{"data":3803,"marks":3804,"value":3806,"nodeType":455},{},[3805],{"type":462},"How Push detected the attack",{"data":3808,"content":3809,"nodeType":464},{},[3810,3814,3818],{"data":3811,"marks":3812,"value":3813,"nodeType":455},{},[],"We've aligned our detection logic for this technique under the name ",{"data":3815,"marks":3816,"value":1102,"nodeType":455},{},[3817],{"type":462},{"data":3819,"marks":3820,"value":3821,"nodeType":455},{},[]," — a technique-level detection that covers shared content abuse across LLM platforms, not tied to any single campaign or set of IOCs. ",{"data":3823,"content":3824,"nodeType":464},{},[3825],{"data":3826,"marks":3827,"value":3828,"nodeType":455},{},[],"Because Push sees the full context of how a user arrived at a page and what that page does once it renders, we can identify LLMShare attacks regardless of which AI platform is being abused or what social engineering wrapper the attacker has chosen. ",{"data":3830,"content":3831,"nodeType":464},{},[3832,3836,3842],{"data":3833,"marks":3834,"value":3835,"nodeType":455},{},[],"When we identified the initial instances of this campaign, we used our ",{"data":3837,"content":3838,"nodeType":572},{"uri":2622},[3839],{"data":3840,"marks":3841,"value":3146,"nodeType":455},{},[],{"data":3843,"marks":3844,"value":3845,"nodeType":455},{},[]," to hunt for additional examples across our customer telemetry, develop the LLMShare detection, and rapidly deploy it to customers. Push blocks users from interacting with the page before any malicious activity can occur. ",{"data":3847,"content":3848,"nodeType":464},{},[3849],{"data":3850,"marks":3851,"value":3852,"nodeType":455},{},[],"Push customers do not need to take any further action.",{"data":3854,"content":3855,"nodeType":596},{},[],{"data":3857,"content":3858,"nodeType":464},{},[3859],{"data":3860,"marks":3861,"value":2425,"nodeType":455},{},[],{"data":3863,"content":3864,"nodeType":464},{},[3865],{"data":3866,"marks":3867,"value":2432,"nodeType":455},{},[],{"data":3869,"content":3870,"nodeType":464},{},[3871,3874,3883],{"data":3872,"marks":3873,"value":21,"nodeType":455},{},[],{"data":3875,"content":3877,"nodeType":572},{"uri":3876},"https:\u002F\u002Fpushsecurity.com\u002Fdemo\u002F",[3878],{"data":3879,"marks":3880,"value":3882,"nodeType":455},{},[3881],{"type":570},"Book a live demo to learn more.",{"data":3884,"marks":3885,"value":21,"nodeType":455},{},[],{"data":3887,"content":3888,"nodeType":596},{},[],{"data":3890,"content":3891,"nodeType":604},{},[3892],{"data":3893,"marks":3894,"value":3896,"nodeType":455},{},[3895],{"type":462},"Indicators of compromise",{"data":3898,"content":3899,"nodeType":464},{},[3900,3904,3912],{"data":3901,"marks":3902,"value":3903,"nodeType":455},{},[],"As we always say, short-lived IoCs are of limited value when tackling modern phishing attacks due to the rate at which attackers are able to ",{"data":3905,"content":3907,"nodeType":572},{"uri":3906},"https:\u002F\u002Fphishing-techniques.pushsecurity.com\u002Ftechniques\u002Fdomain-rotation-redirection\u002F",[3908],{"data":3909,"marks":3910,"value":3911,"nodeType":455},{},[],"quickly spin up and rotate the sites used",{"data":3913,"marks":3914,"value":3915,"nodeType":455},{},[]," in the attack chain. IoC-based detections for campaigns like this are of limited value.",{"data":3917,"content":3918,"nodeType":464},{},[3919],{"data":3920,"marks":3921,"value":3922,"nodeType":455},{},[],"At the time of writing, the indicators observed were:",{"data":3924,"content":3925,"nodeType":4045},{},[3926,3953,3977,3999,4022],{"data":3927,"content":3928,"nodeType":3952},{},[3929,3941],{"data":3930,"content":3931,"nodeType":3940},{},[3932],{"data":3933,"content":3934,"nodeType":464},{},[3935],{"data":3936,"marks":3937,"value":3939,"nodeType":455},{},[3938],{"type":462},"Indicator","table-header-cell",{"data":3942,"content":3943,"nodeType":3940},{},[3944],{"data":3945,"content":3946,"nodeType":464},{},[3947],{"data":3948,"marks":3949,"value":3951,"nodeType":455},{},[3950],{"type":462},"Type","table-row",{"data":3954,"content":3955,"nodeType":3952},{},[3956,3967],{"data":3957,"content":3958,"nodeType":3966},{},[3959],{"data":3960,"content":3961,"nodeType":464},{},[3962],{"data":3963,"marks":3964,"value":3965,"nodeType":455},{},[],"hxxps:\u002F\u002Fclaude[.]ai\u002Fshare\u002F8e6401b5-4849-46c4-a3cb-29e1c3c49131","table-cell",{"data":3968,"content":3969,"nodeType":3966},{},[3970],{"data":3971,"content":3972,"nodeType":464},{},[3973],{"data":3974,"marks":3975,"value":3976,"nodeType":455},{},[],"URL",{"data":3978,"content":3979,"nodeType":3952},{},[3980,3990],{"data":3981,"content":3982,"nodeType":3966},{},[3983],{"data":3984,"content":3985,"nodeType":464},{},[3986],{"data":3987,"marks":3988,"value":3989,"nodeType":455},{},[],"hxxps:\u002F\u002Fchatgpt[.]com\u002Fs\u002Fcb_6a0f1e6bbec88191aa7fede27163f08d",{"data":3991,"content":3992,"nodeType":3966},{},[3993],{"data":3994,"content":3995,"nodeType":464},{},[3996],{"data":3997,"marks":3998,"value":3976,"nodeType":455},{},[],{"data":4000,"content":4001,"nodeType":3952},{},[4002,4012],{"data":4003,"content":4004,"nodeType":3966},{},[4005],{"data":4006,"content":4007,"nodeType":464},{},[4008],{"data":4009,"marks":4010,"value":4011,"nodeType":455},{},[],"openew[.]app",{"data":4013,"content":4014,"nodeType":3966},{},[4015],{"data":4016,"content":4017,"nodeType":464},{},[4018],{"data":4019,"marks":4020,"value":4021,"nodeType":455},{},[],"Domain",{"data":4023,"content":4024,"nodeType":3952},{},[4025,4035],{"data":4026,"content":4027,"nodeType":3966},{},[4028],{"data":4029,"content":4030,"nodeType":464},{},[4031],{"data":4032,"marks":4033,"value":4034,"nodeType":455},{},[],"de8c50e8ccd240ef9d10ec26c26eeb37a4d1cad7c1e0edf3bb6e5689ec2dde78",{"data":4036,"content":4037,"nodeType":3966},{},[4038],{"data":4039,"content":4040,"nodeType":464},{},[4041],{"data":4042,"marks":4043,"value":4044,"nodeType":455},{},[],"SHA256","table",{"data":4047,"content":4048,"nodeType":464},{},[4049],{"data":4050,"marks":4051,"value":21,"nodeType":455},{},[],"LLMShare: how attackers are turning AI chatbot pages into malware delivery platforms","How attackers are using shared content features on AI chatbot platforms to deliver malware via pages hosted on legitimate domains, sent via malvertising.","2026-05-29T00:00:00.000Z","llmshare-malvertising-campaign",{"items":4057},[4058,4060],{"sys":4059,"name":2461},{"id":2460},{"sys":4061,"name":2465},{"id":2464},{"items":4063},[4064],{"fullName":4065,"firstName":4066,"jobTitle":4067,"profilePicture":4068},"Keanu Maharaj","Keanu","Senior Security Researcher",{"url":4069},"https:\u002F\u002Fimages.ctfassets.net\u002Fy1cdw1ablpvd\u002FVCGOm62jiocjwngWTh32U\u002Fe9a30637b1c76bf988d2fec90f5b6c36\u002F1689361049351_1.png","agentic-threat-hunting-benefits-for-customers","blog\u002Fagentic-threat-hunting-benefits-for-customers",{"json":4073},{"data":4074,"content":4075,"nodeType":1386},{},[4076],{"data":4077,"content":4078,"nodeType":464},{},[4079],{"data":4080,"marks":4081,"value":4082,"nodeType":455},{},[],"Most security tools learn from breaches. Push learns from many attacks that never become breaches. Here are the security outcomes you can achieve when AI agents hunt in the browser, identify new threats, and ship detections that benefit everyone — often stopping new attacks pre-compromise.","Security outcomes you can achieve when AI agents hunt in the browser, identify new threats, and ship detections that benefit everyone.",{"id":4085,"publishedAt":4086},"6dJUsirH3rrhy1Stnzkfqk","2026-08-12T12:00:40.615Z",{"items":4088},[4089,4091],{"sys":4090,"name":2465},{"id":2464},{"sys":4092,"name":2461},{"id":2460},{"items":4094},[4095,4100,4105,4109,4114],{"sys":4096,"name":4098,"slug":4099,"tier":31},{"id":4097},"topic-browser-security","Browser security","browser-security",{"sys":4101,"name":4103,"slug":4104,"tier":31},{"id":4102},"topic-browser-attacks","Browser attacks","browser-attacks",{"sys":4106,"name":2465,"slug":4108,"tier":31},{"id":4107},"topic-detection-and-response","detection-and-response",{"sys":4110,"name":4112,"slug":4113,"tier":31},{"id":4111},"topic-ai","AI","ai",{"sys":4115,"name":4117,"slug":4118,"tier":45},{"id":4116},"topic-detection-engineering","Detection engineering","detection-engineering","zLFjrLimjkRbIY5aSCjSGmrADKQ_p5RYacyhFYMIcgo",{"id":4121,"extension":1493,"items":4122,"meta":4524,"stem":4525,"__hash__":4526},"blogTopics\u002Fblogtopics.json",[4123,4129,4138,4147,4156,4165,4171,4180,4186,4195,4203,4212,4220,4226,4232,4240,4249,4258,4267,4275,4284,4293,4302,4311,4318,4327,4336,4345,4354,4363,4371,4380,4389,4396,4405,4413,4422,4430,4439,4447,4456,4464,4472,4480,4488,4497,4506,4515],{"sys":4124,"faqItemsCollection":4125,"name":4112,"slug":4113,"tier":31,"intro":4127,"faqTitle":59,"postCount":4128,"hasPage":19},{"id":4111},{"items":4126},[],"AI is reshaping both sides of the security equation: employees adopt AI tools faster than security teams can track them, while attackers use AI to scale and automate campaigns. Shadow AI adoption may now outpace wider shadow SaaS, and attackers are already turning AI chatbot platforms into malware delivery channels. Push has researched the offensive potential of computer-using agents and now applies AI agents to its own threat hunting. This hub covers AI as risk, target, and defensive tool.",22,{"sys":4130,"faqItemsCollection":4132,"name":4134,"slug":4135,"tier":45,"intro":4136,"faqTitle":59,"postCount":4137,"hasPage":19},{"id":4131},"topic-ai-attacks",{"items":4133},[],"AI attacks","ai-attacks","AI attacks run in both directions: attackers using AI to scale phishing, malware delivery, and identity attacks, and AI platforms themselves becoming the attack surface. Push has researched how computer-using agents can automate identity attacks, and has seen the poisoned tenant technique it coined used against its own employees in the wild.",23,{"sys":4139,"faqItemsCollection":4141,"name":4143,"slug":4144,"tier":45,"intro":4145,"faqTitle":59,"postCount":4146,"hasPage":19},{"id":4140},"topic-ai-governance",{"items":4142},[],"AI governance","ai-governance","AI governance is how organizations set and enforce rules for workplace AI use — which tools are allowed, what data can enter them, and how to evidence it to regulators. With US, EU, and UK AI regulations converging on obligations most organizations can’t yet meet, Push’s research makes the case that enforcement starts in the browser, where AI tools are actually used.",9,{"sys":4148,"faqItemsCollection":4150,"name":4152,"slug":4153,"tier":45,"intro":4154,"faqTitle":59,"postCount":4155,"hasPage":19},{"id":4149},"topic-aitm",{"items":4151},[],"AiTM phishing","aitm","Adversary-in-the-middle (AiTM) phishing proxies a real login page through an attacker-controlled site, capturing credentials, MFA codes, and session tokens in real time to bypass multi-factor authentication. Push’s research into kits like Evilginx and Sneaky2FA documents how they evade URL- and signature-based detection — and why analyzing toolkit behavior in the browser catches attacks that blocklists miss.",78,{"sys":4157,"faqItemsCollection":4159,"name":4161,"slug":4162,"tier":45,"intro":4163,"faqTitle":59,"postCount":4164,"hasPage":6},{"id":4158},"topic-bec",{"items":4160},[],"BEC","bec","Business email compromise (BEC) turns a hijacked mailbox into a fraud tool: attackers use mail rules, auto-forwarding, and payment redirection to steal money while staying invisible to the account owner. Alongside a first-hand case study of a BEC attack that nearly cost an engineering firm millions, Push breaks down these mailbox persistence tricks and how to detect them.",4,{"sys":4166,"faqItemsCollection":4167,"name":4103,"slug":4104,"tier":31,"intro":4169,"faqTitle":59,"postCount":4170,"hasPage":19},{"id":4102},{"items":4168},[],"Browser attacks target users through the web pages, sessions, and extensions they rely on every day — bypassing endpoint and network defenses that never see inside the browser. Techniques like AiTM phishing kits, ClickFix-style copy-paste attacks, OAuth consent abuse, malvertising, and browser sync abuse have become a leading path to account takeover. Push researchers analyze these attacks in the wild, from infiltrating criminal phishing panels to dissecting toolkits like ConsentFix and Sneaky2FA. Use this hub to track how the techniques evolve and how to defend against them.",122,{"sys":4172,"faqItemsCollection":4174,"name":4176,"slug":4177,"tier":45,"intro":4178,"faqTitle":59,"postCount":4179,"hasPage":19},{"id":4173},"topic-browser-extensions",{"items":4175},[],"Browser extensions","browser-extensions","Browser extensions cut both ways for security teams: malicious or compromised extensions are a growing attack vector, while an extension is also the lightest-weight way to deploy security controls into the browsers employees already use. These posts cover both sides — extension-borne risks like browser sync attacks and the limits of risk scoring, and how Push uses its extension to detect threats and block risky extensions.",31,{"sys":4181,"faqItemsCollection":4182,"name":4098,"slug":4099,"tier":31,"intro":4184,"faqTitle":59,"postCount":4185,"hasPage":19},{"id":4097},{"items":4183},[],"Work now happens in the browser, making browser security — visibility and control at the point where users meet the web — a core layer of enterprise defense. Endpoint, network, and email tools miss attacks that unfold inside the browser session, from AiTM phishing to risky extensions and shadow SaaS. Push has published extensively on choosing between enterprise browsers and browser extensions, using browser telemetry, and making the business case for browser security. Start here for both strategy and hands-on guidance.",129,{"sys":4187,"faqItemsCollection":4189,"name":4191,"slug":4192,"tier":45,"intro":4193,"faqTitle":59,"postCount":4194,"hasPage":19},{"id":4188},"topic-casb",{"items":4190},[],"CASB","casb","Cloud access security brokers (CASBs) govern cloud app usage through API integrations and network proxies — an approach that works for sanctioned apps but struggles with the long tail of shadow SaaS employees adopt on their own. Because every SaaS signup happens in a browser, Push captures that adoption in real time at the point of login, and these posts cover what proxy-based discovery misses.",12,{"sys":4196,"faqItemsCollection":4198,"name":2877,"slug":4200,"tier":45,"intro":4201,"faqTitle":59,"postCount":4202,"hasPage":19},{"id":4197},"topic-clickfix",{"items":4199},[],"clickfix","ClickFix attacks trick users into copying and running malicious commands themselves — typically through fake CAPTCHA, error, or fix-it prompts — so malware executes without a download for security tools to scan. Push researchers track the technique’s evolution in the wild and identified the ConsentFix and InstallFix variants, which extend it to OAuth consent grants and fake install guides.",40,{"sys":4204,"faqItemsCollection":4206,"name":4208,"slug":4209,"tier":45,"intro":4210,"faqTitle":59,"postCount":4211,"hasPage":19},{"id":4205},"topic-credential-phishing",{"items":4207},[],"Credential phishing","credential-phishing","Credential phishing steals usernames and passwords through fake login pages impersonating the services employees use, handing attackers direct access to corporate accounts. Attackers don’t hack in — they log in. Push’s browser extension analyzes login pages as users actually see them, blocking cloned pages and stopping employees from entering company passwords on lookalike sites.",90,{"sys":4213,"faqItemsCollection":4215,"name":308,"slug":4217,"tier":45,"intro":4218,"faqTitle":59,"postCount":4219,"hasPage":19},{"id":4214},"topic-credential-stuffing",{"items":4216},[],"credential-stuffing","Credential stuffing is an attack where criminals replay username-password pairs stolen from one breach against other services, exploiting password reuse to take over accounts. Major breaches have shown how far a single set of stolen credentials can travel. Push detects verified stolen credentials by comparing employee passwords against breach datasets and dark-web threat intelligence, eliminating false positives.",64,{"sys":4221,"faqItemsCollection":4222,"name":2465,"slug":4108,"tier":31,"intro":4224,"faqTitle":59,"postCount":4225,"hasPage":19},{"id":4107},{"items":4223},[],"Detection and response is being reshaped as attacks move into the browser, where EDR, SIEM, and network tools have limited visibility. Modern phishing kits evade signature-based detection, and most malicious pages have never been seen before — so technique-level, in-browser detection matters more than known-bad indicators. Push’s work here spans high-fidelity browser telemetry, session token theft detection, and agentic threat hunting, plus practical IR guidance for compromised SaaS accounts and malicious OAuth apps. These posts cover both the philosophy and the workflows.",102,{"sys":4227,"faqItemsCollection":4228,"name":4117,"slug":4118,"tier":45,"intro":4230,"faqTitle":59,"postCount":4231,"hasPage":19},{"id":4116},{"items":4229},[],"Detection engineering turns threat research into reliable, high-fidelity detections — and as AI accelerates the churn of attacker infrastructure, indicator-based detection is collapsing in favor of technique-level approaches. Here you’ll find teardowns of AiTM kits, ClickFix pages, and malvertising campaigns, alongside Push’s own account of building an agentic threat hunting pipeline that turns hunts into shipped detections.",43,{"sys":4233,"faqItemsCollection":4235,"name":269,"slug":4237,"tier":45,"intro":4238,"faqTitle":59,"postCount":4239,"hasPage":19},{"id":4234},"topic-device-code-phishing",{"items":4236},[],"device-code-phishing","Device code phishing abuses the OAuth device authorization flow: attackers generate a legitimate sign-in code, trick the victim into entering it on the vendor’s real login page, and walk away with access tokens — no fake site or password capture required. Push research tracked a sharp spike in adoption during 2026 as attackers use the technique to sidestep standard access controls.",24,{"sys":4241,"faqItemsCollection":4243,"name":4245,"slug":4246,"tier":45,"intro":4247,"faqTitle":59,"postCount":4248,"hasPage":19},{"id":4242},"topic-dlp",{"items":4244},[],"DLP","dlp","Data loss prevention (DLP) is the practice of stopping sensitive data from leaving your control — a problem that has shifted from email and endpoints to the browser, where employees move data into SaaS and AI tools. Push applies controls at that point of use, from keeping corporate credentials out of personal password managers to governing what flows into unsanctioned apps.",15,{"sys":4250,"faqItemsCollection":4252,"name":4254,"slug":4255,"tier":45,"intro":4256,"faqTitle":59,"postCount":4257,"hasPage":19},{"id":4251},"topic-edr",{"items":4253},[],"EDR","edr","Endpoint detection and response (EDR) watches processes, files, and memory on the device — a vantage point that never sees the phishing pages, stolen sessions, and identity attacks playing out inside the browser. That’s not an EDR failure; attackers have simply moved where it can’t follow. These posts map that gap and show how Push pairs browser-level detection and response with endpoint security to close it.",25,{"sys":4259,"faqItemsCollection":4261,"name":4263,"slug":4264,"tier":45,"intro":4265,"faqTitle":59,"postCount":4266,"hasPage":19},{"id":4260},"topic-enterprise-browser",{"items":4262},[],"Enterprise browser","enterprise-browser","An enterprise browser is a standalone, security-hardened browser that organizations deploy in place of Chrome, Edge, or other defaults. The real buying question is whether replacing the browser beats securing the browsers employees already use — a trade-off these posts examine directly, alongside analysis of Omdia’s secure enterprise browser market report and Push’s framework for weighing full browsers against extension-based deployment.",8,{"sys":4268,"faqItemsCollection":4270,"name":298,"slug":4272,"tier":45,"intro":4273,"faqTitle":59,"postCount":4274,"hasPage":19},{"id":4269},"topic-ghost-logins",{"items":4271},[],"ghost-logins","Ghost logins are overlooked authentication routes into an account — like a password login lingering behind SSO, or a forgotten secondary auth method — that attackers exploit for account takeover and persistence. Push coined the term after research showing how these forgotten login paths let attackers sidestep the MFA and SSO controls guarding an account’s primary sign-in method.",48,{"sys":4276,"faqItemsCollection":4278,"name":4280,"slug":4281,"tier":45,"intro":4282,"faqTitle":59,"postCount":4283,"hasPage":19},{"id":4277},"topic-identity-attacks",{"items":4279},[],"Identity attacks","identity-attacks","Identity attacks target user accounts rather than infrastructure — phishing credentials, stealing sessions, abusing OAuth grants — because logging in is easier than hacking in. Identity-based techniques are now the leading cause of breaches. Push’s offensive research maps these techniques continuously, coining attacks like SAMLjacking and the poisoned tenant before they appeared in the wild.",58,{"sys":4285,"faqItemsCollection":4287,"name":4289,"slug":4290,"tier":31,"intro":4291,"faqTitle":59,"postCount":4292,"hasPage":19},{"id":4286},"topic-identity-security",{"items":4288},[],"Identity security","identity-security","Identity security is the practice of protecting workforce accounts, credentials, and sessions — the primary route attackers now use to breach organizations. Instead of hacking in, attackers log in: through phished credentials, stolen session tokens, MFA bypass, and forgotten ghost logins. Push’s research team documents these techniques continuously, from cross-IdP impersonation and SAMLjacking to analyses of major identity-driven breaches. This hub collects that research alongside practical guidance on MFA, SSO, and stopping account takeover.",154,{"sys":4294,"faqItemsCollection":4296,"name":4298,"slug":4299,"tier":45,"intro":4300,"faqTitle":59,"postCount":4301,"hasPage":19},{"id":4295},"topic-infostealer",{"items":4297},[],"Infostealer","infostealer","Infostealers are malware built to harvest saved passwords, cookies, and session tokens from infected devices, supplying the stolen credentials behind some of the most consequential breaches of recent years. Push traces the ecosystem trading this data and checks employee passwords against threat intel feeds, flagging verified stolen credentials before attackers can log in with them.",53,{"sys":4303,"faqItemsCollection":4305,"name":4307,"slug":4308,"tier":45,"intro":4309,"faqTitle":59,"postCount":4310,"hasPage":19},{"id":4304},"topic-legitimate-service-abuse",{"items":4306},[],"Legitimate service abuse","legitimate-service-abuse","Legitimate service abuse means staging attacks on trusted platforms — Google Ads, AI chatbot share pages, office.com links, Slack, SaaS tenants — so malicious content inherits the reputation of the service hosting it. Push research has documented the pattern repeatedly, from malvertising run through hijacked Google Ad Manager accounts to phishing links generated by Active Directory Federation Services.",29,{"sys":4312,"faqItemsCollection":4314,"name":4316,"slug":1533,"tier":45,"intro":4317,"faqTitle":59,"postCount":4179,"hasPage":19},{"id":4313},"topic-malvertising",{"items":4315},[],"Malvertising","Malvertising uses paid search and display ads to put phishing pages and malware in front of users, often by impersonating trusted brands at the top of Google results. Push tracks these campaigns continuously — intercepting live attacks spoofing well-known brands — and has documented how criminals hijack Google Ads accounts to fund and run them.",{"sys":4319,"faqItemsCollection":4321,"name":4323,"slug":4324,"tier":45,"intro":4325,"faqTitle":59,"postCount":4326,"hasPage":19},{"id":4320},"topic-malware-delivery",{"items":4322},[],"Malware delivery","malware-delivery","Malware delivery has moved into the browser: rather than email attachments, attackers now rely on malvertising, fake install guides, and ClickFix-style copy-paste lures to get code running on endpoints. Push research on techniques like InstallFix maps the playbook, and in-browser detection of malicious copy and paste blocks these attacks before commands reach the endpoint.",14,{"sys":4328,"faqItemsCollection":4330,"name":4332,"slug":4333,"tier":45,"intro":4334,"faqTitle":59,"postCount":4335,"hasPage":19},{"id":4329},"topic-mfa",{"items":4331},[],"MFA","mfa","Multi-factor authentication (MFA) requires a second proof of identity beyond a password, and it remains one of the most effective controls against account takeover. Regulators from Cyber Essentials to NYDFS now mandate it across cloud services. Push enforces MFA in the browser on third-party apps — even those with no native enforcement option — and shows security teams where coverage gaps remain.",83,{"sys":4337,"faqItemsCollection":4339,"name":4341,"slug":4342,"tier":45,"intro":4343,"faqTitle":59,"postCount":4344,"hasPage":19},{"id":4338},"topic-mfa-bypass",{"items":4340},[],"MFA bypass","mfa-bypass","MFA bypass covers the techniques attackers use to defeat multi-factor authentication — AiTM phishing kits, consent phishing, device code phishing, and MFA downgrade attacks among them. None of these break the second factor; they route around it. Push researchers regularly get hands-on with phishing kits like Evilginx and Sneaky2FA, analyzing how these attacks work in the wild and how they evolve.",60,{"sys":4346,"faqItemsCollection":4348,"name":4350,"slug":4351,"tier":45,"intro":4352,"faqTitle":59,"postCount":4353,"hasPage":19},{"id":4347},"topic-non-email-phishing",{"items":4349},[],"Non-email phishing","non-email-phishing","Non-email phishing delivers malicious links through channels your secure email gateway never sees — social media messages, IM apps like Slack and Teams, search ads, and SMS. Push has intercepted live campaigns arriving via LinkedIn DMs, malvertising, and messaging platforms, which is why it detects phishing pages in the browser at the point of click, regardless of delivery channel.",52,{"sys":4355,"faqItemsCollection":4357,"name":4359,"slug":4360,"tier":45,"intro":4361,"faqTitle":59,"postCount":4362,"hasPage":19},{"id":4356},"topic-oauth-abuse",{"items":4358},[],"OAuth abuse","oauth-abuse","OAuth abuse is attackers exploiting app-to-app authorization — consent phishing, malicious OAuth apps, stolen tokens, and device code flows — to gain persistent access to cloud tenants without touching a password or MFA prompt. Push tracks these techniques continuously and discovered ConsentFix, a browser-native attack in the wild that pairs OAuth consent phishing with a ClickFix-style prompt.",70,{"sys":4364,"faqItemsCollection":4366,"name":4368,"slug":4369,"tier":45,"intro":4370,"faqTitle":59,"postCount":4137,"hasPage":19},{"id":4365},"topic-passkeys",{"items":4367},[],"Passkeys","passkeys","Passkeys are phishing-resistant credentials that replace passwords with cryptographic key pairs bound to a user’s device. They defeat conventional credential phishing, but attackers adapt: Push research has documented MFA downgrade, app-specific password phishing, and device code phishing being used in the wild to route around passkey-protected accounts. Deploying passkeys is step one; closing those fallback paths is step two.",{"sys":4372,"faqItemsCollection":4374,"name":4376,"slug":4377,"tier":45,"intro":4378,"faqTitle":59,"postCount":4379,"hasPage":19},{"id":4373},"topic-password-security",{"items":4375},[],"Password security","password-security","Password security is the practice of keeping workforce credentials strong, unique, and out of attackers’ hands — still a frontline defense while most SaaS logins depend on passwords. Expiration policies don’t fix weak or reused passwords; visibility does. Push observes real logins in the browser to flag weak, reused, and breached passwords and guide employees to reset them on any app.",80,{"sys":4381,"faqItemsCollection":4383,"name":4385,"slug":4386,"tier":45,"intro":4387,"faqTitle":59,"postCount":4388,"hasPage":19},{"id":4382},"topic-phaas",{"items":4384},[],"PhaaS","phaas","Phishing-as-a-service (PhaaS) platforms sell ready-made phishing kits, hosted infrastructure, and management panels on subscription, letting low-skill criminals run MFA-bypassing campaigns at scale. Kits like Evilginx, Tycoon2FA, Sneaky2FA, FlowerStorm, and EvilTokens each add their own evasion and session-theft capabilities, and new entrants appear regularly. Push researchers continuously get hands-on with these tools — investigating attacks in the wild, reverse-engineering kit behavior, and turning that research into detections.",41,{"sys":4390,"faqItemsCollection":4392,"name":254,"slug":1776,"tier":31,"intro":4394,"faqTitle":59,"postCount":4395,"hasPage":19},{"id":4391},"topic-phishing",{"items":4393},[],"Phishing remains the most common way attackers compromise business accounts — and it has moved far beyond suspicious emails. Modern campaigns use AiTM toolkits that bypass MFA, consent phishing against OAuth, device code phishing, and lures delivered through malvertising, LinkedIn, and Slack. Push detects and blocks these attacks in the browser, and its researchers publish teardowns of live campaigns and kits like Evilginx and Sneaky2FA. Read on for how phishing actually works today and what stops it.",93,{"sys":4397,"faqItemsCollection":4399,"name":4401,"slug":4402,"tier":45,"intro":4403,"faqTitle":59,"postCount":4404,"hasPage":19},{"id":4398},"topic-public-breach",{"items":4400},[],"Public breach","public-breach","Public breaches are the disclosed incidents that show how attacks actually unfold once the headlines fade. Push’s breach analyses keep finding identity at the entry point: stolen credentials, OAuth abuse, and missing MFA recur across the incidents analyzed here.",30,{"sys":4406,"faqItemsCollection":4408,"name":4410,"slug":4411,"tier":45,"intro":4412,"faqTitle":59,"postCount":4326,"hasPage":19},{"id":4407},"topic-ransomware",{"items":4409},[],"Ransomware","ransomware","Ransomware attacks increasingly begin with an identity, not an exploit: stolen credentials, MFA bypass, and help desk scams give operators their initial foothold. The analysis here follows that front end of the kill chain — how identity compromise leads to ransomware deployment, and the breaches driving regulators toward tighter MFA requirements.",{"sys":4414,"faqItemsCollection":4416,"name":4418,"slug":4419,"tier":31,"intro":4420,"faqTitle":59,"postCount":4421,"hasPage":19},{"id":4415},"topic-saas-security",{"items":4417},[],"SaaS security","saas-security","SaaS security means protecting the sprawl of cloud apps, accounts, and integrations your employees adopt — often without IT ever knowing. Shadow SaaS, risky OAuth grants, ghost logins, and unmanaged third-party access create attack paths traditional controls can’t see, as recent high-profile breaches have demonstrated. Building on the original SaaS attack matrix, Push continues to map SaaS-native attack techniques alongside practical guides for discovering and securing unsanctioned apps, and this hub gathers all of it.",97,{"sys":4423,"faqItemsCollection":4425,"name":4427,"slug":4428,"tier":45,"intro":4429,"faqTitle":59,"postCount":4164,"hasPage":6},{"id":4424},"topic-security-training",{"items":4426},[],"Security training","security-training","Security training aims to teach employees to recognize and avoid attacks — yet modern phishing routinely fools even seasoned security professionals. Push argues that training budgets work harder as real-time, in-browser intervention: guardrails and warnings at the moment of risk, rather than lessons employees must recall under pressure.",{"sys":4431,"faqItemsCollection":4433,"name":4435,"slug":4436,"tier":45,"intro":4437,"faqTitle":59,"postCount":4438,"hasPage":19},{"id":4432},"topic-seo-poisoning",{"items":4434},[],"SEO poisoning","seo-poisoning","SEO poisoning manipulates search engine results so malicious pages rank prominently for the software, tools, or services users are actively searching for, turning a routine search into an infection vector. It often pairs with malvertising and ClickFix-style payloads — Push has documented attackers abusing shared pages on legitimate AI chatbot domains to deliver malware from trusted infrastructure.",7,{"sys":4440,"faqItemsCollection":4442,"name":313,"slug":4444,"tier":45,"intro":4445,"faqTitle":59,"postCount":4446,"hasPage":19},{"id":4441},"topic-session-hijacking",{"items":4443},[],"session-hijacking","Session hijacking is the theft of an authenticated session — usually via stolen session cookies or tokens — letting attackers walk past passwords and MFA into a live account. AiTM phishing kits and infostealers have made it a mainstream attack technique across both criminal and targeted intrusions. Push’s browser agent detects session token theft by adding telemetry to the user agent string, creating a high-fidelity signal for security teams.",75,{"sys":4448,"faqItemsCollection":4450,"name":4452,"slug":4453,"tier":45,"intro":4454,"faqTitle":59,"postCount":4455,"hasPage":19},{"id":4449},"topic-shadow-ai",{"items":4451},[],"Shadow AI","shadow-ai","Shadow AI is employees’ unsanctioned use of AI tools at work, putting corporate data into chatbots and assistants that security teams never approved and can’t see. Push’s own browser telemetry shows AI adoption acting as a force multiplier for shadow IT — potentially now outscaling shadow SaaS — and this hub tracks that research, real-world breach examples, and practical controls.",20,{"sys":4457,"faqItemsCollection":4459,"name":4461,"slug":4462,"tier":45,"intro":4463,"faqTitle":59,"postCount":4446,"hasPage":19},{"id":4458},"topic-shadow-saas",{"items":4460},[],"Shadow SaaS","shadow-saas","Shadow SaaS is the cloud applications employees adopt for work without IT approval, each one creating unmanaged accounts, identities, and data outside your security controls. Push covers the problem end to end — from browser-based SaaS discovery to in-browser app banners and MFA enforcement — alongside breach analyses that show where unmanaged accounts lead.",{"sys":4465,"faqItemsCollection":4467,"name":4469,"slug":4470,"tier":45,"intro":4471,"faqTitle":59,"postCount":4455,"hasPage":19},{"id":4466},"topic-siem",{"items":4468},[],"SIEM","siem","A SIEM is only as good as the telemetry feeding it, and most log sources never see what happens inside the browser — where phishing, session token theft, and account takeover actually play out. Push streams browser-level detections and identity telemetry into SIEMs, and these posts show how that data improves detection fidelity and cuts alert fatigue.",{"sys":4473,"faqItemsCollection":4475,"name":4477,"slug":4478,"tier":45,"intro":4479,"faqTitle":59,"postCount":4344,"hasPage":19},{"id":4474},"topic-social-engineering",{"items":4476},[],"Social engineering","social-engineering","Social engineering is the manipulation of people — through phishing pages, help desk impersonation, vishing calls, and poisoned tenant invites — into handing over access that no exploit could take. Coverage here tracks how threat actors run these plays — drawing on Push’s ongoing investigation of live phishing infrastructure and criminal tooling.",{"sys":4481,"faqItemsCollection":4483,"name":4485,"slug":4486,"tier":31,"intro":4487,"faqTitle":59,"postCount":4164,"hasPage":6},{"id":4482},"topic-supply-chain-security",{"items":4484},[],"Supply chain security","supply-chain-security","Supply chain security extends beyond your own perimeter to the vendors, platforms, and browser extensions your organization depends on. A compromised third party can hand attackers legitimate access — as recent campaigns against SaaS providers have shown. Push’s research examines the browser-extension supply chain in particular: why extension risk scores fail to predict compromise, and how developers can harden extensions against takeover. These posts frame supply chain risk through a browser and identity lens.",{"sys":4489,"faqItemsCollection":4491,"name":4493,"slug":4494,"tier":45,"intro":4495,"faqTitle":59,"postCount":4496,"hasPage":19},{"id":4490},"topic-swg",{"items":4492},[],"SWG","swg","A secure web gateway (SWG) filters and inspects web traffic in transit, sitting in the network path between users and the internet. That position shows you the packet but not the session: Push’s research on AitM phishing kits documents how attackers break the signatures proxies rely on, and these posts explain why phishing detection is moving from the network path into the browser itself.",18,{"sys":4498,"faqItemsCollection":4500,"name":4502,"slug":4503,"tier":45,"intro":4504,"faqTitle":59,"postCount":4505,"hasPage":19},{"id":4499},"topic-third-party-risk",{"items":4501},[],"Third-party risk","third-party-risk","Third-party risk is the exposure your organization inherits from vendors, SaaS providers, and integrations that hold your data or access your tenants — a chain now extended one employee sign-up at a time. This hub collects Push’s breach analyses and guides for assessing OAuth integrations, managing browser extensions, and responding when a supplier is compromised.",44,{"sys":4507,"faqItemsCollection":4509,"name":4511,"slug":4512,"tier":31,"intro":4513,"faqTitle":59,"postCount":4514,"hasPage":19},{"id":4508},"topic-threat-landscape",{"items":4510},[],"Threat landscape","threat-landscape","The enterprise threat landscape is now defined by identity attacks: criminals log in with phished, stolen, or stuffed credentials rather than breaking infrastructure. Threat actors keep proving how effective help desk scams, MFA bypass, and session theft are against well-defended organizations. Drawing on breach analyses, annual phishing trend reviews, and in-the-wild campaign tracking, Push documents how attacker TTPs are shifting. This hub is where to follow those changes.",49,{"sys":4516,"faqItemsCollection":4518,"name":4520,"slug":4521,"tier":45,"intro":4522,"faqTitle":59,"postCount":4523,"hasPage":19},{"id":4517},"topic-vishing",{"items":4519},[],"Vishing","vishing","Vishing — voice phishing — uses phone calls to impersonate IT support, help desks, or employees, talking targets into password resets, MFA approvals, or opening attacker-controlled pages. Threat actors now routinely pair calls with AiTM phishing to hijack SSO accounts, a chain Push has analyzed across campaigns targeting hundreds of organizations.",16,{},"blogtopics","9aR-7_LhDkRRXRaED83WYgKvhxkN_ODLJNuDH339OG0",1789500295594]