This is a read-only demo. Deploy your own instance →
← Back
EXEC_ID: exec-d4e5f6

Analysis complete

Verdict ready.

▲ Threat Detected
phishing_email94% confidence
🔍 HUNTED — HITS FOUND👤 ANALYST APPROVED
1:08total
$$18.40est. cost(62.1K tokens)
AI Screenshot AnalysisClaude Opus 4.6
21,735 in9,315 out
$7.36
Enrichment SummaryClaude Opus 4.6
12,420 in6,210 out
$4.60
Hunt in EnvironmentClaude Opus 4.6
7,452 in4,968 out
$6.44
Total$18.40
SarahSubmitted by Sarah
@
Screenshot
Submitted Screenshot
Click to enlarge
Threat Detectedphishing_email

Phishing Analysis Report

Confidence94%

Spear-phishing email mimicking IT department password reset. Embedded link to fake SSO portal with session token exfil.

Red Flags
Urgent language pressuring immediate action
Suspicious URL with typosquatting or unusual TLD
Unverified sender identity
Generic greeting without personalization
Indicators of Compromise
Type
Value
domain
corporate-sso-reset.net
email
it-helpdesk@corp-update.biz
Enrichment Summary

IOC enrichment confirmed malicious activity. Primary indicators flagged by multiple reputation services.

Malicious Indicators
domainHIGH CONFIDENCE

corporate-sso-reset.net

Flagged by reputation services as associated with phishing_email campaigns.

domainHIGH CONFIDENCE

it-helpdesk@corp-update.biz

Flagged by reputation services as associated with phishing_email campaigns.

Environment Threat Hunt

Environment Threat Hunt Results

IOC Hits Found

  • DNS Logs: 1 resolution event
  • Network Flow: Connection attempts to associated IP

Assessment

Limited exposure found after analyst-approved hunt.