AI-generated phishing infrastructure is evolving faster than blocklists can track, rendering domain-based security strategies obsolete. Browser-level detection focused on attack techniques offers a more effective defense.
Attackers are leveraging AI to create disposable phishing infrastructure and rapidly evolving toolkits that sidestep traditional security measures. Blocklists—which rely on identifying known-bad domains, signatures, and indicators—cannot keep pace with this speed of innovation.
Push Security analysis reveals the fundamental weakness: blocklists are reactive, flagging threats after they're discovered. AI-powered attacks generate new domains and variants faster than security teams can document them.
The shift to browser-level, technique-based detection addresses this gap. Rather than tracking individual domains or signatures, this approach identifies malicious behavior patterns—how phishing attempts operate, not where they're hosted. This strategy proves more durable against rapidly evolving threats.
Organizations relying solely on domain blocklists face increasing risk. The transition to behavior-focused detection represents a necessary evolution in combating AI-assisted phishing campaigns that outpace traditional infrastructure-based defenses.
A former NSA official has warned against connecting water infrastructure controllers to the internet following suspected Iranian cyberattacks on U.S. water systems.
Security researchers scanning Polish government websites discovered critical vulnerabilities that could expose courts, hospitals, and airports to cyberattacks. The vulnerabilities stem from common software used to manage and display web content.
A critical SQL injection vulnerability in Metabase is being actively exploited in the wild to steal customer data. The zero-day attack has already compromised instances at Framework and Tally.
Healthcare software company Unlimited Technology Systems disclosed a data breach affecting 3.8 million individuals. The breach occurred in October 2025.