Sublime Security is the adaptive, AI-powered cloud email security platform that combines best-in-class effectiveness with unprecedented visibility and control.
We’re excited to announce that Sublime has raised $150M in a Series C led by @Georgian_io, joined by new investors @Avenir_Growth, @01Advisors, @jonoberheide, and @nicoleperlroth, and existing investors @IndexVentures, @IVP, @slow, and @CitiVentures.
This year we launched ASA and ADÉ, our AI agents that autonomously triage threats and auto-adapt coverage, freeing security teams from repetitive work and delivering rapid, tailored defenses. We’ve grown our customer base 4x since the beginning of the year while maintaining zero enterprise customer churn since company inception.
This funding accelerates our vision to deliver autonomous email security that adapts to each organization's unique needs, stopping sophisticated attacks while eliminating the manual work and vendor bottlenecks of legacy solutions.
Thank you to our customers, partners, and investors for being on this journey with us.
🔗 Read more: sublime.security/blog/sublim…
A tough question we face at Sublime is, "how do we know our agents are actually improving with every attack?" In this new post about research from the Sublime AI team, we explore the use of an LLM-backed continual learning harness to evaluate AI decisions. Check it out: sublime.security/blog/scalin…
Calendar-based attacks have gone from hot to inferno since August. 1,000%+ MoM growth.
Why? Two chances to land: inbox and calendar. Most email security stops the inbox attack and ignores the calendar one entirely. Attackers exploit that gap deliberately, sending weak inbox lures to trip the alarm while the calendar payload sits waiting for a click.
Sublime stops both. Our latest Attack Spotlight breaks down a calendar invite attack abusing three free services to deliver an RMM payload.
sublime.security/blog/sublim…
Inside the Inbox is our monthly demo series. Each session is a live walkthrough of what Sublime actually does: including how our agents ASA (Autonomous Security Analyst) triages a user-reported email end-to-end, and how ADÉ (Autonomous Detection Engineer) builds and deploys a new detection in response to a real threat.
Don't miss our first session on Thursday, September 24th, with sessions each month following.
sublime.security/events/insi…
Financial fraud, fabricated threads, vendor impersonation, shady banking details... the usual playbook.
But the fake W-9 came with a PDF revision history showing it had already been used in prior fraud campaigns.
Our Detection team dug into the full lineage in our most recent Attack Spotlight: sublime.security/blog/fake-w…
Email security AI models keep getting better, but coverage gaps still take weeks to close and detection logic stays opaque. The issue isn't your model, it's your architecture.
Tomorrow, September 10, @jkamdjou and @DAlperovitch make the case for why the architecture underneath your email security product is the variable that actually matters.
Register: sublime.security/events/why-…
Sublime automates away 100+ hours of email investigation and triage for US Signal analysts ever year. Now those hours can be used for the high-level security tasks that only an expert can tackle.
Learn how Sublime frees up analyst time and security budget for US Signal: sublime.security/customers/u…
Vendors keep improving their models with AI, but the structural complaints from security teams haven't changed. @jkamdjou and @DAlperovitch make the case for why it's an architecture problem on September 10: sublime.security/events/why-…
Email is the top initial access vector. For most Falcon teams, that means leaving the platform to investigate it.
Today that changes.
Sublime is now live in the CrowdStrike Marketplace. Announcing at #FalCon2026.
sublime.security/blog/sublim…
Microsoft has proprietary email headers that can tell you if a message was spoofed or the account was compromised, why auth got bypassed, and why something landed in inbox instead of spam.
Breakdown from Sublime's detection engineers: sublime.security/blog/gettin…
Sublime's Security Threat Intel & Research team (STIR) is tracking DOUBLOON DREDGER – a threat actor launching token harvesting attacks from free Notion accounts, with custom PDFs that overlay 3 payloads on a single button. First-stage JS ties them to Tycoon2FA.
Full investigation + IOCs → sublime.security/blog/doublo…
While security vendors refine their AI models, attackers find coverage gaps that won't be closed for months. It doesn't matter how smart your AI is if it can't stay ahead of attackers, which is why architecture matters more than AI (especially post-Mythos).
On Sept 10, @jkamdjou and @DAlperovitch make the case for why detection architecture, not AI model quality, matters more in security.
🔗 Register today: sublime.security/events/why-…
Email attacks are getting more sophisticated. Is your organization covered?
Join us August 19 at 11am ET to see what layered email defense actually looks like in practice, including a live demo of Sublime catching what existing tools miss.
Register: sublime.security/events/whic…
AI phishing triage saves hours. AI phishing prevention stops the cycle.
Every reported phish that doesn't trigger a coverage update is a door left open. The next variant lands. Another user reports it. Repeat.
Faster triage isn't the fix. Prevention is.
Read the blog: sublime.security/blog/phishi…
Find your @defcon 34 Sublime Security custom t-shirt outside the Lost and Found at the Las Vegas Convention Center West Hall on the Level 2 now until 6:30pm PT. Our team is excited to share this year's design with you!
⚡️Sublime annual t-shirt drop at @defcon 34⚡️
If you're here this week, you'll want to know where to be. Location dropping later tomorrow – be sure to follow us and be the first to know!
#DefCon#Cybersecurity#EmailSecurity#InfoSec
Tailored Phishing Simulations is now in beta.
Test employees against the attacks Sublime is already detecting in your environment – not last quarter's generic simulations.
Available now for M365 and Google Workspace customers, directly inside the platform.
Read the full announcement: sublime.security/blog/tailor…
The future for both attackers and defenders is agentic AI. In the world of detection and prevention, it’s a cohesive team of agents operating alongside human analysts to keep ahead of adversaries.
In this final part of @jkamdjou and @ianthiel “Detection and Prevention in the Post-Mythos World” series, they take a look at the future of agentic security at Sublime.
Link: sublime.security/blog/from-d…
In Part 3 of "Detection and Prevention in the Post-Mythos World," @jkamdjou and @ianthiel break down how Sublime's AI agents autonomously identify attacks, generate detection coverage, and deploy it in hours.
This is what agentic security looks like today. Part 4 is what's coming next.
🔗 sublime.security/blog/how-ag…