Proteus的封面图片
Proteus

Proteus

计算机和网络安全

Identifying human vulnerabilities at scale through autonomous adversary emulation.

关于我们

Proteus uses Generative AI and a powerful rules engine to create customized and targeted social engineering campaigns that mimic the most advanced techniques being used in the wild. It allows red teams to scale their human vulnerability management up to the size of any enterprise, whether they're doing risk analysis or running a pentest.

网站
https://protectwithproteus.com
所属行业
计算机和网络安全
规模
1 人
类型
私人持股
领域
Pentesting、Social Engineering和Cybersecurity

Proteus员工

动态

  • 查看Proteus的组织主页

    26 位关注者

    #deepfake videos are an exploding threat against a very underprotected risk surface (video platforms). These are not sophisticated nation-state threat actors, they’re script kiddies with cheap but sophisticated technology. The answer to “why would they attack me?” Is now “because it costs almost nothing to attack you, and you definitely have more than nothing to be stolen”.

    查看Bojan Simic的档案

    Co-Founder and CEO at HYPR - Creating Trust in the Identity Lifecycle

    Super interesting stats from the CrowdStrike threat report that just came out. Vishing went up by more than 400% in the last half of the year. Access to generative AI tools to make voice calls is exploding and is resulting in massive risk for organizations. We are seeing enterprises respond in the following ways: 1. Implement phishing resistant MFA controls that do not use any shareable credentials. Demo video here - https://lnkd.in/dnbR4yEt 2. Implement secure identity verification for employees instead of relying on helpdesk. Demo video here - https://lnkd.in/eUPNrAUk

    • 该图片无替代文字
  • 查看Proteus的组织主页

    26 位关注者

    Proteus can run simulations of this exact attack playbook to see how vulnerable your company is. Reach out if you’re interested in being part of our beta!

    查看Social-Engineer, LLC的组织主页

    4,074 位关注者

    The FBI has issued a warning for all Gmail users: Threat actors are using AI-generated phone calls to impersonate Google, claiming your account has been compromised. They’ll send you a code, pretending it’s for security, but in reality, it grants them full access to your account. Remember—Google will never send verification codes this way or share personal details via email. Protect yourself now by enabling Multi-Factor Authentication. https://lnkd.in/eU6KEcUt Christopher Hadnagy #CyberSecurity #InfoSec #MultiFactorAuthentication #StaySafeOnline #PhishingAlert #GmailSecurity #AIThreats #AccountSecurity #DigitalSafety

  • 查看Proteus的组织主页

    26 位关注者

    Another deepfake voice attack, this time stealing $18.5M. But it’s ok, you’re testing your company for human risk, right? ??

    查看Ben Colman的档案

    CEO at Reality Defender | 1st Place RSA Innovation Sandbox | Ex-Goldman Sachs, Google, YCombinator

    Another day, another $18.5 million lost to deepfake voice fraud — once again in Hong Kong. This is just the tip of the iceberg. Research predicts AI-enabled fraud losses could hit $40B by 2027 — and that's just in the U.S. All at a time when more than half of C-suite executives expect deepfake attacks to target their finances. Traditional security measures are no match for deepfakes. Risk-averse organizations are taking action to head off deepfake threats by implementing solutions like Reality Defender, but 62% of CISOs still worry their companies are still not taking the threat seriously enough. The choice is simple: in today's digital landscape, verifying authentic communication is not a luxury — it's essential for business continuity.

  • 查看Proteus的组织主页

    26 位关注者

    What would happen to your company if half your employees fell for a malicious phishing email? This study on AI-driven spear phishing achieved a click-through rate of above 50%, which is insane. Proteus helps you determine your level of human risk by running personalized spear phishing campaigns like this one, at scale, while mimicking real-world attacks.

    查看Linda Miller, OLY的档案

    Fraud Prevention Expert | Founder | Olympian

    You guys. I know everyone is outraged-out, but the tsunami that AI is going to unleash on us demands our attention. Case in point: The smart people at Cornell recently ran a human subject study on whether language models can successfully spear-phish people. Bottom line: AI was *50 percent better and 50 times cheaper* than the old-fashioned way. Phishing was already a serious problem and these results are deeply troubling. What did they do? They used AI agents built from GPT-4o and Claude 3.5 Sonnet to search the web for available information on a target and use this for highly personalized phishing messages. What did they learn? 1. AI spear-phishing is highly effective, receiving a click-through rate of more than 50%, significantly outperforming our control group. 2. AI-spear phishing is also highly cost-efficient, reducing costs by up to 50 times compared to manual attacks. 3. AI models are highly capable of gathering open-source intelligence. They produce accurate and useful profiles for 88% of targets. Only 4% of the generated profiles contained inaccurate information. 4. Safety guardrails are not a noteworthy barrier for creating phishing mails with any tested model, including Claude 3.5 Sonnet, GPT-4o, and o1-preview. Yikes! #GenAI #socialengineering #fraudasaservice #fraudrisk

  • 查看Proteus的组织主页

    26 位关注者

    This is a great summary of the “state of play” for AI in Cybersecurity. It’s the classic cat and mouse game between attackers and defenders, but at a scale amplified by GenAI.

    查看Abnormal Security的组织主页

    69,867 位关注者

    ?? AI has revolutionized cybersecurity, creating both powerful defenses and dangerous new threats. Cybercriminals are leveraging offensive AI to craft hyper-realistic phishing emails, clone voices, and deploy adaptive malware—at a scale that overwhelms traditional defenses. At the same time, organizations are turning to defensive AI to detect anomalies, automate responses, and stay one step ahead in the growing AI arms race. Our latest blog breaks down how AI is transforming cybersecurity on both sides—and why advanced, AI-driven solutions are critical to protecting your organization. Learn more: https://lnkd.in/eKuEiDfJ

  • 查看Proteus的组织主页

    26 位关注者

    Even GenAI companies like OpenAI are vulnerable to #socialengineering attacks leveraging their own tools. Proteus helps companies spot this type of attack by simulating them using the same tricks the attackers are using.

  • 查看Proteus的组织主页

    26 位关注者

    The FBI and CISA have joined the choir - sophisticated social engineering attacks using Generative AI are becoming the biggest threat to businesses. Proteus mimics real world SE threats to train your employees to spot theee advanced techniques being seen in the wild.

    查看John Gunn的档案

    CEO & Next-Generation MFA Evangelist

    Recently the FBI and CISA dropped a joint advisory as part of their ongoing #StopRansomware effort, warning about new cyber threats. They're urging organizations to step up their game by installing updates ASAP, using phishing-resistant MFA, and making sure everyone is trained up. With Generative AI making these attacks easier, it's time to rethink our phishing and ransomware defenses. At Token, we recently ran a survey to dig into CISOs perspectives on how they are integrating advanced phishing-resistant MFA strategies to protect their organizations against emerging threats. The insights are pretty eye-opening. Check out the full article on The Hacker News for more details - https://lnkd.in/gUNK6YRa

  • 查看Proteus的组织主页

    26 位关注者

    Some crazy social engineering stats from Abnormal Security: ?? File-sharing phishing attacks have surged 350%, as attackers leverage trusted platforms like Gmail and Dropbox, making them nearly indistinguishable from legitimate communications. ?? BEC attacks increased by over 50% in the past year, with a notable 60% spike in targeting smaller organizations. ?? 41% of companies face vendor email compromise (VEC) attacks weekly, showing that threat actors are increasingly focusing on manipulating trusted business relationships.

    查看Mike B.的档案

    File-sharing phishing attacks are on the rise – to the tune of 350%. We regularly see these types of attacks (and Abnormal Security stops them), and our latest Threat Report showcases how much of a problem it is. These threats, which exploit legitimate platforms like Dropbox, Docusign, and Google Drive to disguise phishing attacks, have more than tripled over the past year. More about these findings, plus a dive into the uptick of business email compromise, is available in the report here: https://bit.ly/3XGDAI1 #threatreport #cybersecurity #phishing #BEC #VEC

  • 查看Proteus的组织主页

    26 位关注者

    This #phishing attack abused a Calendly link to redirect to a CAPTCHA-protected domain. The domain rendered a maliciously proxied version of their company's Microsoft login page. If the victim entered their credentials, it would actually log in and return real tokens, so the victim would never know they were compromised.

  • 查看Proteus的组织主页

    26 位关注者

    The 2024 State Of the Phish report is out, and surprise! most companies still aren’t training their employees to spot bulk phishing, spear phishing, and smishing attacks, even as the business impact from those attacks grows. MFA-bypass kits are also gaining traction, showing you need more than just MFA and hope to protect you employees. Thankfully there are companies like HYPR | The Identity Assurance Company, GTG.Online, and Token trying to provide alternatives to traditional cyberdefense methods.

相似主页