# About Name: RavenMail Description: Protect your Workspace from Threats, Data Leaks and AI Risks URL: https://ravenmail.io/blog # Navigation Menu - Email DLP: https://ravenmail.io/ai-email-dlp - Blog Home: https://ravenmail.io/blog - Email Threat Detection: https://ravenmail.io - Free Email Security Audit: https://ravenmail.io/try-raven?utm_source=blog # Blog Posts Each link below is the raw markdown version of a post. The full content of every post is also available in a single file: https://ravenmail.io/blog/llms-full.txt - [Bank of Baroda Data Leak: Beyond the Email Compromise](https://ravenmail.io/blog/bank-of-baroda-leak.md): When an emerging ransomware group first appears, it rarely makes global headlines. Its early victims often pass with little scrutiny outside threat intelligence.. - [[Feb 2026] How attackers are using Lovable for Multi-Stage Phishing Attacks](https://ravenmail.io/blog/lovable-vibecoding-phishing.md): Researchers at Ravenmail has discovered that attackers are no longer hosting phishing pages on obviously malicious infrastructure. Instead, they are abusing leg.. - [RavenMail Partners with WebSIA to Expand Context-Aware Email Security in Latin America](https://ravenmail.io/blog/ravenmail-websia-partnership.md): ​RavenMail has entered into a strategic partnership with WebSIA to make AI-powered, context-driven email security available to organizations across Latin Amer.. - [[Dec 2025] How Attackers Are Abusing Google Infrastructure for Phishing](https://ravenmail.io/blog/phishing-using-google-infra.md): For years, enterprise email security has relied on a foundational assumption: If an email comes from a trusted platform and passes authentication, it’s safe. .. - [[Nov 2025] Zero-Day Tax Evasion Phishing Attack Targeting Indian Companies](https://ravenmail.io/blog/tax-evasion-phishing-nov2025.md): In November 2025, Raven AI (formerly Ravenmail) identified and blocked a zero-day phishing campaign impersonating the Income Tax Department of India. The attack.. - [Webinar Alert: Your Startup’s Weakest Security Link Is Your Inbox](https://ravenmail.io/blog/webinar-oct2025.md): In the early days of building a startup, founders and CTOs obsess over product-market fit, growth, and fundraising - but often overlook one thing that can quiet.. - [[Sep 2025 Update] Nifty.com Used as Phishing Infrastructure: How Raven Detected Abuse of Trusted Infrastructure](https://ravenmail.io/blog/nifty-phishing.md): Editor's Note: This post updates our original May 2025 analysis with new intelligence covering continued threat actor operations through September 2025.​ A mu.. - [Appsheet Trademark Violation Phishing Scam - Sept 2025 Update](https://ravenmail.io/blog/appsheet-phishing-scam.md): How the AppSheet phishing campaign exposes the fundamental flaws in traditional email security Understanding AppSheet: Google's No-Code Platform Before diving i.. - [Phishing using Salesforce: How Raven AI detected attacks from compromised Salesforce Tenants ](https://ravenmail.io/blog/compromised-salesforce-phishing.md): 2025 marked an unprecedented surge in Salesforce-related phishing attacks to deliver sophisticated phishing attacks impersonating Meta Business Portal and fake .. - [When Safe Links Become Unsafe: How Raven AI Caught Attackers Weaponizing Cisco's URL Rewriting](https://ravenmail.io/blog/phishing-with-cisco-secure-links.md): In a recent credential phishing campaign, Raven AI (formerly Ravenmail) has uncovered attackers weaponizing Cisco's secure links to evade link scanning and by-p.. - [RavenMail and Scrut Automation Partner to Simplify Compliance-Centric Email Security](https://ravenmail.io/blog/ravenmail-scrut-partnership.md): Chennai / Milpitas, 26 June, 2025 — Raven (formerly Ravenmail), an AI-native email security and data loss prevention (DLP) platform, has announced a strategic.. - [RavenMail is Now ISO 27001:2022 Certified: Raising the Bar for Email Security & Data Protection](https://ravenmail.io/blog/ravenmail-achieves-iso-27001-2022-certification.md): We’re thrilled to announce that RavenMail is now ISO/IEC 27001:2022 certified—a globally recognized benchmark for information security management systems (I.. - [RavenMail Now Available on Microsoft Azure Marketplace](https://ravenmail.io/blog/ravenmail-azure-marketplace-launch.md): We’re excited to announce that RavenMail, ourAI-native email security and data loss prevention (DLP) platform, is now available on the Microsoft Azure Marketp.. - [Raven Launches Splunk Integration for Real-Time Email Threat and DLP Monitoring](https://ravenmail.io/blog/splunk-integration.md): We’re excited to announce that Raven (formerly Ravenmail) now integrates natively with Splunk, enabling security teams to seamlessly ingest email threat and D.. - [Nifty.comがフィッシングインフラとして悪用された事例:Ravenによる信頼されたインフラの悪用検出方法](https://ravenmail.io/blog/nifty-phishing-jp.md): 正規のドメイン「nifty.com」を使用した高度なフィッシング攻撃をRavenがどのように検出したかをご紹介します。メール認証をすり抜ける攻撃の手法と、最新の防御策について解説 - [Best Practices for Securing Group Email IDs in Google Workspace & M365](https://ravenmail.io/blog/secure-group-email-best-practices.md): Group email IDs can be exploited for phishing and impersonation. Learn how to secure them in Google Workspace and Microsoft 365 with practical configuration tips. - [The Silent Threat: Why SEGs, Google, Microsoft Struggle to Stop Executive Impersonation](https://ravenmail.io/blog/executive-impersonation-attacks.md): Modern executive impersonation attacks don’t carry links, malware, or spam—they carry intent. A simple “Are you available?” can be the start of a multi-.. - [How Sophos newsletter forums were gamed to distribute malware to its clients](https://ravenmail.io/blog/sophos-newsletter-abuse.md): TL:DR - A malicious link linked to QakBot infrastructure slipped into a Sophos Community Daily Digest via a user comment. Traditional email security missed it .. - [✨ AI Model Launch: Context-Aware Sender Impersonation Detection](https://ravenmail.io/blog/sender-impersonation-launch.md): For people who are not familiar about us, we are an 8-old month startup solving for 3 things in email security We are building out of India for the world, we we.. - [Attack Demo #3: Github Abuse - Delivering Malware Using Trusted Platforms](https://ravenmail.io/blog/github-malware-delivery.md): ​[Disclaimer: This blog is part of our Attack Demo series where our Red Team members demonstrate emerging tactics used by attackers. This content is for educa.. - [Government & Regulatory Impersonation: An Overlooked Threat Vector in Email Security](https://ravenmail.io/blog/regulator-impersonation.md): [Author's Note: The following narrative illustrates real cyber threats facing Indian corporations. While the specific scenarios are fictional, they represent ge.. - [What is Fileless Malware & How to Detect Them](https://ravenmail.io/blog/what-is-fileless-malware.md): Fileless malware is a sophisticated type of cyber threat that operates entirely in memory, without writing files to the disk. Unlike traditional malware, which .. - [Attack Demo #2: System Take Over Using a Single Mail](https://ravenmail.io/blog/attack-demo-2-system-take-over.md): At RavenMail, we've seen it all - from simple phishing attempts to full-blown system compromises. Today, we're taking you on a journey where are showing you how.. - [CEO Impersonation on WhatsApp & the Role of Email enabling Cross-Platform attacks](https://ravenmail.io/blog/whatsapp-attacks.md): In today's interconnected business world, communication platforms like email and WhatsApp have become integral to daily operations. However, this multi-channel .. - [Phishing-As-A-Service Meets AI - A New Frontier in Email Security](https://ravenmail.io/blog/phishing-as-a-service.md): In the rapidly evolving landscape of cybersecurity, Phishing-as-a-Service (PhaaS) has emerged as a game-changing phenomenon. As businesses and individuals becom.. - [From SolarWinds to Uber: Why EDR Falls Short in Modern Email Security](https://ravenmail.io/blog/xdr-limitations.md): In an era where cyber threats are evolving at an unprecedented pace, CISOs have increasingly turned to Endpoint Detection and Response (EDR) and Extended Detect.. - [CEO Impersonation Fraud: A Case for Context-Aware Email Security](https://ravenmail.io/blog/ceo-impersonation.md): In an era where digital communication reigns supreme, email remains a critical tool for business operations. However, it's also become a prime vector for sophis.. - [SaaS-to-SaaS Phishing: The Hidden Threat in Your Email Security](https://ravenmail.io/blog/saas-to-saas-phishing-the-hidden-threat-in-your-email-security.md): In today's rapidly evolving digital landscape, businesses are increasingly relying on Software-as-a-Service (SaaS) solutions to drive efficiency and productivit.. - [Attack Demo: How attackers can read inbox contents without getting inside](https://ravenmail.io/blog/attack-demo-how-attackers-can-read-inbox-contents-without-getting-inside-clzw7m3gq005f103axz46ie60.md): You read that right, you don't need to log inside your inbox to read the contents. There are ways for attackers to snoop what's happening on your account withou.. - [How a phishing email disrupted the UPI & ATM services in India](https://ravenmail.io/blog/how-a-phishing-email-disrupted-the-upi-and-atm-services-in-india.md): On 31 July 2024, the National Payments Council of India (NPCI) issued a press release about a possible ransomware attack on a TSP (Technology Service Provider) .. - [How the 'CrowdStrike episode' exposes the gaps in email security](https://ravenmail.io/blog/how-the-crowdstrike-episode-exposes-the-gaps-in-email-security-clz8bmyzp003p27xkwl2p5n8z.md): Deep-dive into how attackers can by-pass existing email security using CrowdStrike Phishing campaigns