Digital threats such as phishing, brand impersonations and scams are evolving faster than ever before. To stay ahead, your tools need to evolve too.
The latest release of the unphish platform introduces intelligent workflows, AI-assisted analysis, One-click Enforcement and Threat Intelligence capability. Together, these enhancements help organisations detect more threats, investigate them faster and gain greater visibility into the campaigns targeting their brand.
To develop the AI capabilities introduced in this release, we’ve partnered with Engram, a not-for-profit Australian AI research organisation focused on building systems that augment human intelligence. Together, we’ve combined Engram’s AI expertise with unphish’s years of operational experience to develop intelligent, in-house capabilities that help analysts investigate and disrupt threats more efficiently.
Here’s what’s new in the latest release:
Threat Intelligence
As organisations face an increasing volume of phishing attacks, scams and brand impersonation, understanding individual threats is no longer enough. The latest release introduces Threat Intelligence, a new capability that provides a broader view of the campaigns targeting your organisation.
Rather than presenting threats as isolated cases, Threat Intelligence identifies relationships between them to reveal the bigger picture. By grouping related activity into Threat Clusters, organisations can identify coordinated campaigns, understand where attacks are originating, uncover reused infrastructure and monitor how threat actors are operating over time.
Combined with enhanced reporting, Threat Intelligence also provides greater visibility into enforcement performance and emerging trends, helping organisations make more informed decisions about where to focus their disruption efforts. Instead of simply asking, “What threats do I have today?”, organisations can understand the campaigns behind those threats and respond with greater confidence.
Key enhancements
- Campaign-level visibility through Threat Clusters
- Insights into threat origins and reused infrastructure
- Enhanced reporting and enforcement metrics
- Greater visibility into emerging trends and campaign activity
- Actionable intelligence to support faster, more informed decision-making
AI-Assisted Analysis
One of the biggest enhancements in the latest release is the introduction of AI-assisted analysis throughout the investigation process. Rather than existing as a standalone feature, AI is embedded across the platform to help analysts review and validate threats more efficiently.
As new detections enter the Threat Feed, the platform automatically gathers supporting evidence, including screenshots, metadata and origin information. It then analyses that information to provide an AI confidence score, recommended priority and suggested action, giving analysts a structured, evidence-backed assessment before they begin their review.
By automating much of the repetitive investigative work, our analysts can spend less time collecting evidence and preparing cases, and more time validating findings, investigating complex campaigns and disrupting online threats. AI assists throughout the investigation, while our expert analysts remain in control of every decision.
Key enhancements
- Automatic evidence collection
- Threat confidence scores
- Recommended priority and suggested action
- Richer case information
- Faster investigations with analyst oversight
Intelligent Workflows
No two threats are the same. Different cyber threat types require different evidence, different enforcement providers and different response strategies. As threat volumes continue to grow, manually determining the appropriate process for every case becomes increasingly difficult to scale.
The latest release introduces Intelligent Workflows, configurable workflows that automatically apply the appropriate investigation and enforcement process based on the threat type and each organisation’s unique requirements. Built from years of real-world operational experience, these workflows standardise how threats are assessed and progressed while remaining flexible enough to adapt to different organisations and evolving threat landscapes.
Rather than spending time on repetitive decision-making, analysts can focus on investigating more complex threats while the platform automatically routes cases through the correct workflow. The result is a faster, more consistent and more scalable approach to threat disruption without compromising visibility or control.
Key enhancements
- Configurable client-specific workflows
- Automatic workflow selection based on threat type
- Intelligent routing to the appropriate enforcement provider
- Reduced manual effort and greater operational consistency
- Faster, more scalable threat disruption
One-click Enforcement
Speed is critical when responding to online threats. The longer a phishing site, impersonation page or fraudulent website remains live, the greater the potential impact on organisations and their customers.
With the latest release, One-click Enforcement allows eligible threats to move directly into enforcement once they have been reviewed. By removing unnecessary manual steps, organisations can progress cases more quickly while maintaining complete visibility over every enforcement action.
Working alongside Intelligent Workflows, the platform automatically ensures each case follows the appropriate enforcement process and is routed to the correct provider. This helps reduce response times, improve consistency and enable organisations to disrupt online threats faster than ever before.
Key enhancements
- One-click submission for eligible enforcement requests
- Reduced manual steps throughout the enforcement process
- Seamless progression from review to enforcement
- Faster disruption of threats such as phishing, scams and brand impersonation
- Complete visibility into every enforcement action
Dashboard
The Dashboard has been enhanced to provide greater visibility into your organisation’s threat landscape. Bringing together active threats, enforcement progress, resolution rates, takedown times, case volumes and emerging trends, it gives organisations the insights they need to quickly understand their current threat environment and monitor operational performance.
Interactive visualisations, live activity feeds, pipeline health indicators and threat origin mapping provide a clear overview of what matters most. By surfacing this information in a single view, organisations can identify trends, track enforcement activity and gain a better understanding of their overall digital risk.
Key enhancements
- Greater operational visibility
- Live enforcement activity and pipeline health
- Resolution rates, takedown times and case metrics
- Threat origin mapping and trend insights
- At-a-glance view of your threat landscape
Reporting
The Reporting dashboard has been significantly enhanced to provide organisations with deeper insights into their threat detection and enforcement performance. Executive summaries, SOC/analyst operational metrics and client enforcement outcomes are presented in a clear, easy-to-understand view, making it easier to measure performance and identify opportunities for improvement.
Organisations can track key metrics such as average takedown time, SLA compliance, workflow performance, enforcement outcomes and threat type trends, all within a single, easy-to-understand view. By turning operational data into actionable insights, the Reporting dashboard helps security teams monitor effectiveness, identify patterns and make more informed decisions over time.
Key enhancements
- Executive and operational performance dashboards
- Average takedown time and SLA compliance metrics
- Client enforcement outcome reporting
- Workflow and threat trend analysis
- Clear insights to support informed decision-making
Built for What's Next
The latest release marks an important milestone in the evolution of the unphish platform, but it’s only the beginning.
By developing these features into the platform, we’ve laid the foundation for the next generation of digital threat detection and disruption. As the threat landscape continues to evolve, so will unphish, with ongoing enhancements designed to help organisations respond faster, gain deeper insights and stay ahead of emerging threats.
This release reflects our commitment to continuous innovation and to building a platform that evolves alongside the organisations it protects. Because as threats evolve, so do we.