Skip to content

Create spam_emoji_cash_lures.yml #3013

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 3 commits into
base: main
Choose a base branch
from

Conversation

brycampbell
Copy link
Member

Description

A very simple rule designed to detect emoji used in conjunction with financial symbols to deliver spam based content. This includes an explicit reliance on dmarc failures and not in the alexa 1m to reduce any potential false positives from legit stuff.

Associated samples

Associated hunts

Screenshot (insights)

@brycampbell brycampbell requested a review from a team as a code owner July 29, 2025 17:11
@github-actions github-actions bot added the in-test-rules PR is in our testing suite to collect telemetry label Jul 29, 2025
@brycampbell brycampbell enabled auto-merge July 30, 2025 08:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
in-test-rules PR is in our testing suite to collect telemetry
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant