---
title: Stamus-Networks-Blog | Phishing
description: Phishing | Follow our blog as we share our experiences, insights, perspectives and open-source experiments.
---

[![Stamus Networks Logo](https://www.stamus-networks.com/hubfs/stamus_logo_blue_cropped-2.png "Stamus Networks Logo")](https://stamus-networks-6344338-hs-sites-com.sandbox.hs-sites.com/?hsLang=en)

![Stamus_Pattern_16x9](https://www.stamus-networks.com/hubfs/Backgrounds/Stamus_Pattern_16x9.png "Stamus_Pattern_16x9")

# Stamus Networks Blog

## We believe that sharing information is necessary to improve global security. The purpose of this blog is to share our experiences, perspectives and experiments.

### Subscribe to our Blog

[Blog](https://www.stamus-networks.com/blog) /

Showing 6 results  
of 6 items. 

Reset All

### Category

- Suricata
- Network Detection and Response
- Stamus Security Platform
- Open Source
- Stamus Labs
- Back to Basics
- Threat Hunting
- SELKS
- ClearNDR
- Clear NDR Enterprise
- IDS-IPS
- Events
- Network Security Monitoring
- Threat intelligence
- Declarations of Compromise
- Clear NDR Community
- Industry Perspective
- Stamus News
- Artificial Intelligence
- Uncovered with SSP
- Unique to Clear NDR
- Transparency
- Threats! What Threats?
- Endpoint Detection
- Core Principles
- Compliance
- Kibana
- CVE
- Phishing
- Cloud Security
- SANS
- uncovered with Clear NDR
- Jupyter Notebook
- Splunk
- XDR
- Declarations of Policy Violations
- GopherCap
- Model Context Protocol (MCP)
- NATO CCDCOE
- Scirius Security Platform
- Beaconing
- MCP
- Zero Trust
- feature spotlight

### Recent Posts

### Posts by Categories

- [Suricata (105)](https://www.stamus-networks.com/blog/tag/suricata)
- [Network Detection and Response (104)](https://www.stamus-networks.com/blog/tag/network-detection-and-response)
- [Stamus Security Platform (103)](https://www.stamus-networks.com/blog/tag/stamus-security-platform)
- [Open Source (100)](https://www.stamus-networks.com/blog/tag/open-source)
- [Stamus Labs (70)](https://www.stamus-networks.com/blog/tag/stamus-labs)
- [Back to Basics (66)](https://www.stamus-networks.com/blog/tag/back-to-basics)
- [Threat Hunting (63)](https://www.stamus-networks.com/blog/tag/threat-hunting)
- [SELKS (57)](https://www.stamus-networks.com/blog/tag/selks)
- [ClearNDR (50)](https://www.stamus-networks.com/blog/tag/clearndr)
- [Clear NDR Enterprise (42)](https://www.stamus-networks.com/blog/tag/clear-ndr-enterprise)
- [IDS-IPS (42)](https://www.stamus-networks.com/blog/tag/ids-ips)
- [Events (32)](https://www.stamus-networks.com/blog/tag/events)
- [Network Security Monitoring (32)](https://www.stamus-networks.com/blog/tag/network-security-monitoring)
- [Threat intelligence (26)](https://www.stamus-networks.com/blog/tag/threat-intelligence)
- [Declarations of Compromise (23)](https://www.stamus-networks.com/blog/tag/declarations-of-compromise)
- [Clear NDR Community (21)](https://www.stamus-networks.com/blog/tag/clear-ndr-community)
- [Industry Perspective (21)](https://www.stamus-networks.com/blog/tag/industry-perspective)
- [Stamus News (19)](https://www.stamus-networks.com/blog/tag/stamus-news)
- [Artificial Intelligence (15)](https://www.stamus-networks.com/blog/tag/artificial-intelligence)
- [Uncovered with SSP (14)](https://www.stamus-networks.com/blog/tag/uncovered-with-ssp)
- [Unique to Clear NDR (13)](https://www.stamus-networks.com/blog/tag/unique-to-clear-ndr)
- [Transparency (12)](https://www.stamus-networks.com/blog/tag/transparency)
- [Threats! What Threats? (11)](https://www.stamus-networks.com/blog/tag/threats-what-threats)
- [Endpoint Detection (10)](https://www.stamus-networks.com/blog/tag/endpoint-detection)
- [Core Principles (9)](https://www.stamus-networks.com/blog/tag/core-principles)
- [Compliance (7)](https://www.stamus-networks.com/blog/tag/compliance)
- [Kibana (7)](https://www.stamus-networks.com/blog/tag/kibana)
- [CVE (6)](https://www.stamus-networks.com/blog/tag/cve)
- [Phishing (6)](https://www.stamus-networks.com/blog/tag/phishing)
- [Cloud Security (5)](https://www.stamus-networks.com/blog/tag/cloud-security)
- [SANS (5)](https://www.stamus-networks.com/blog/tag/sans)
- [uncovered with Clear NDR (5)](https://www.stamus-networks.com/blog/tag/uncovered-with-clear-ndr)
- [Jupyter Notebook (4)](https://www.stamus-networks.com/blog/tag/jupyter-notebook)
- [Splunk (4)](https://www.stamus-networks.com/blog/tag/splunk)
- [XDR (4)](https://www.stamus-networks.com/blog/tag/xdr)
- [Declarations of Policy Violations (3)](https://www.stamus-networks.com/blog/tag/declarations-of-policy-violations)
- [GopherCap (3)](https://www.stamus-networks.com/blog/tag/gophercap)
- [Model Context Protocol (MCP) (2)](https://www.stamus-networks.com/blog/tag/model-context-protocol-mcp)
- [NATO CCDCOE (2)](https://www.stamus-networks.com/blog/tag/nato-ccdcoe)
- [Scirius Security Platform (2)](https://www.stamus-networks.com/blog/tag/scirius-security-platform)
- [Beaconing (1)](https://www.stamus-networks.com/blog/tag/beaconing)
- [MCP (1)](https://www.stamus-networks.com/blog/tag/mcp)
- [Zero Trust (1)](https://www.stamus-networks.com/blog/tag/zero-trust)
- [feature spotlight (1)](https://www.stamus-networks.com/blog/tag/feature-spotlight)

[See all](https://www.stamus-networks.com/blog/tag/phishing#)

[![Don't Take the Bait: Detect Whaling Phishing with Network Detection & Response](https://www.stamus-networks.com/hubfs/Detect-WhalePhishing-with-NDR.jpeg) ](https://www.stamus-networks.com/blog/dont-take-the-bait-detect-whaling-phishing-with-network-detection-response)

## [Don't Take the Bait: Detect Whaling Phishing with Network Detection & Response](https://www.stamus-networks.com/blog/dont-take-the-bait-detect-whaling-phishing-with-network-detection-response)

** Aug 22, 2023 **Stamus Networks Team

** [Network Detection and Response](https://www.stamus-networks.com/blog/tag/network-detection-and-response), [Phishing](https://www.stamus-networks.com/blog/tag/phishing)

In our past series, “[Threat! What Threats?](https://www.stamus-networks.com/blog/threats-what-threats-detecting-phishing-with-stamus-security-platform)” we covered the topic of phishing in a generic way, but...

[Read More](https://www.stamus-networks.com/blog/dont-take-the-bait-detect-whaling-phishing-with-network-detection-response)

[![](https://www.stamus-networks.com/hubfs/SHM-Threat-Hunting-Cover-images-Punycode.jpg) ](https://www.stamus-networks.com/blog/hunting-for-punycode-domain-phishing)

## [Hunting for Punycode Domain Phishing](https://www.stamus-networks.com/blog/hunting-for-punycode-domain-phishing)

** Nov 29, 2022 **Peter Manev

** [Threat Hunting](https://www.stamus-networks.com/blog/tag/threat-hunting), [Stamus Security Platform](https://www.stamus-networks.com/blog/tag/stamus-security-platform), [Phishing](https://www.stamus-networks.com/blog/tag/phishing), [ClearNDR](https://www.stamus-networks.com/blog/tag/clearndr)

Punycode domains have traditionally been used by malware actors in phishing campaigns. These...

[Read More](https://www.stamus-networks.com/blog/hunting-for-punycode-domain-phishing)

[![](https://www.stamus-networks.com/hubfs/SHM-Threat-Hunting-Cover-images-plain-text.jpg) ](https://www.stamus-networks.com/blog/hunting-for-plain-text-executables-with-stamus-security-platform)

## [Hunting for Plain Text Executables with Stamus Security Platform](https://www.stamus-networks.com/blog/hunting-for-plain-text-executables-with-stamus-security-platform)

** Oct 18, 2022 **Peter Manev

** [Threat Hunting](https://www.stamus-networks.com/blog/tag/threat-hunting), [Stamus Security Platform](https://www.stamus-networks.com/blog/tag/stamus-security-platform), [Phishing](https://www.stamus-networks.com/blog/tag/phishing), [ClearNDR](https://www.stamus-networks.com/blog/tag/clearndr)

Plain text executables (such as those downloaded from a PowerShell user agent) are often seen on...

[Read More](https://www.stamus-networks.com/blog/hunting-for-plain-text-executables-with-stamus-security-platform)

[![Weak Attack Signals Your IDS Will Miss: Homoglyphs by Stamus Networks Team](https://www.stamus-networks.com/hubfs/Weak-Signals-Homoglyphs.jpeg) ](https://www.stamus-networks.com/blog/weak-attack-signals-your-legacy-ids-will-miss-homoglyphs)

## [Weak Attack Signals Your Legacy IDS Will Miss: Homoglyphs](https://www.stamus-networks.com/blog/weak-attack-signals-your-legacy-ids-will-miss-homoglyphs)

** Oct 14, 2022 **Stamus Networks Team

** [Network Detection and Response](https://www.stamus-networks.com/blog/tag/network-detection-and-response), [IDS-IPS](https://www.stamus-networks.com/blog/tag/ids-ips), [Phishing](https://www.stamus-networks.com/blog/tag/phishing)

Intrusion detection systems (IDS) have proven to be a highly effective and commonly used method of...

[Read More](https://www.stamus-networks.com/blog/weak-attack-signals-your-legacy-ids-will-miss-homoglyphs)

[![](https://www.stamus-networks.com/hubfs/SHM-Threat-Hunting-Cover-images-phishing.jpg) ](https://www.stamus-networks.com/blog/hunting-for-phishing-with-stamus-security-platform)

## [Hunting for Phishing Activity with Stamus Security Platform](https://www.stamus-networks.com/blog/hunting-for-phishing-with-stamus-security-platform)

** Sep 06, 2022 **Peter Manev

** [Threat Hunting](https://www.stamus-networks.com/blog/tag/threat-hunting), [Stamus Security Platform](https://www.stamus-networks.com/blog/tag/stamus-security-platform), [Phishing](https://www.stamus-networks.com/blog/tag/phishing), [ClearNDR](https://www.stamus-networks.com/blog/tag/clearndr)

In this week’s guided threat hunting blog, we focus on using Clear NDR to uncover phishing...

[Read More](https://www.stamus-networks.com/blog/hunting-for-phishing-with-stamus-security-platform)

[![Hunting for Malware Masquerading as an Image File by Peter Manev](https://www.stamus-networks.com/hubfs/Stamus-Threat-Hunt-ImageMalware%20%281%29.jpg) ](https://www.stamus-networks.com/blog/hunting-for-malware-masquerading-as-an-image-file)

## [Hunting for Malware Masquerading as an Image File](https://www.stamus-networks.com/blog/hunting-for-malware-masquerading-as-an-image-file)

** Aug 16, 2022 **Peter Manev

** [Threat Hunting](https://www.stamus-networks.com/blog/tag/threat-hunting), [Stamus Security Platform](https://www.stamus-networks.com/blog/tag/stamus-security-platform), [Phishing](https://www.stamus-networks.com/blog/tag/phishing)

For week 2 of our series on guided threat hunting, we will be reviewing a hunting technique to...

[Read More](https://www.stamus-networks.com/blog/hunting-for-malware-masquerading-as-an-image-file)

[![Stamus-Logo-with-R-white](https://www.stamus-networks.com/hs-fs/hubfs/Stamus-Logo-with-R-white.png?width=2000&height=536&name=Stamus-Logo-with-R-white.png "Stamus-Logo-with-R-white")](https://www.stamus-networks.com/?hsLang=en)

 ABOUT STAMUS® NETWORKS

Stamus Networks is the network intelligence foundation for AI-powered security operations and the creator of the Clear NDR® system. Built on Suricata, the world's leading open-source network security engine, Clear NDR transforms raw network traffic into actionable security insights with unmatched transparency, customization, and effectiveness. Designed to close visibility gaps and reduce alert fatigue, Clear NDR is trusted by leading financial institutions, government agencies, and has been battle-tested over ten years in NATO's largest cybersecurity exercises. Stamus Networks empowers security teams with greater control, fewer false positives, faster response times, and a more responsive, open approach than legacy vendors.

- [**](https://www.linkedin.com/company/stamus-networks)
- [**](https://twitter.com/StamusN/)
- [**](https://www.youtube.com/Stamus-Networks)
- [* *](https://discord.gg/JUMSU9uA)
- <https://www.facebook.com/StamusNetworks>

Paris, FranceIndianapolis, USA

**[contact@stamus-networks.com](mailto:contact@stamus-networks.com)

[Privacy](https://www.stamus-networks.com/privacy-policy?hsLang=en)

 © 2014-2026 Stamus Networks, Inc. All rights Reserved.