Elevating Phishing Investigations With Generative AI

September 26, 2023

Written by

Intezer

We're excited to announce a significant enhancement to our Automated Phishing Investigation solution, using Generative AI. Intezer can now inspect the actual text of emails by integrating with Generative AI, adding another layer of analysis to our robust phishing investigation suite.

With Generative AI, Intezer can now analyze the body content and HTML for hidden elements -- even if the emails don't include a phishing link or malicious file attachments.

Beyond Traditional Phishing Analysis Techniques

Our existing approach to investigating phishing emails involved analyzing files, links, and metadata using multiple analysis techniques and threat intelligence sources. While these methods are effective, we recognized the need to delve deeper and also inspect the actual text of the email, much like how a human would approach a suspicious email.

Mimicking Human Investigations of Phishing Emails

The integration of Large Language Models (LLM) AI serves to add another perspective to the analysis process. When humans investigate suspicious emails, they don’t just look at metadata and links; they read the text to determine the risk. By integrating Generative AI into Intezer's email analysis process, we mimic this human approach, allowing for a more comprehensive analysis of potential phishing threats.

Analyzing Text and Underlying HTML

Our Generative AI doesn’t just stop at the email body text. It goes a step further to inspect the underlying HTML to detect any hidden elements that might be embedded within the email. This thorough inspection ensures that even the most sophisticated phishing attempts, employing hidden elements or obfuscated text, do not go unnoticed.

phishing investigation solution
Example of evidence collection from a suspicious email, including links and the email body and underlying HTML.
AI powered phishing investigation solution
Example of the type of insights you can get from the Generative AI analysis of email body text and HTML.
Another example of the insights you can get from the email body, in this case the reported email was actually found to be safe

Continuing the Journey to Autonomous SOC

By adding Generative AI to our Automated Phishing Investigation, we are elevating the way phishing emails are analyzed, ensuring a more rounded and thorough investigation, akin to human inspection but with the speed and accuracy of advanced AI. We continue to innovate and enhance our offerings, to provide the ultimate Autonomous Level 1 SOC experience in the market.

Stay tuned for more updates and enhancements from Intezer as we continue our mission to provide cutting-edge solutions to solve the talent shortage in the cybersecurity industry.

Try Intezer for free or book a demo to learn more.

Intezer

Count on Intezer AI SOC to triage, investigate and respond to every alert at unmatched speed and accuracy.

In this article

Share article

Related Articles

Alert Triage

AI SOC

3 min

We let a fruit fly brain triage 12,716 real SOC Alerts. Here is what happened.

On behalf of people who run SOCs, we explore how a fly brain triages alerts compared with a boring linear model you could train in eleven seconds.

AI SOC

4 min

The impact of the AI SOC: Intezer joins the Cybersecurity Awesomeness Podcast

Intezer's Field CISO and CMO join the Cybersecurity Awesomeness Podcast to explain what the AI SOC is, how it cuts false positives, and why analysts end up more empowered.

AI SOC

CISO

MDR

4 min

Financial services need to rethink the MDR model

MDR providers investigate only about 40% of alerts. Learn why financial institutions are rethinking MDR renewals and what full alert coverage requires in 2026.