Predictive Ban

Block before exposure

  • Protect

Not all risky emails are immediately identifiable. Some fall into a gray area: credible enough to slip under the radar, yet suspicious enough to represent a risk.

Predictive Ban continuously analyzes these emails and identifies the ones your employees would likely have rejected. It blocks them upstream, before they even reach the inbox.

Fewer suspicious emails to sort through. Fewer decisions to make. Less exposure to risk.

Reduces risk exposure without adding friction for your teams.

Discover Protect

Advanced Threat Detector

Constant vigilance

  • Protect

Continuously monitors malicious email campaigns by cross-referencing multiple threat intelligence sources, detection of sites impersonating known brands, and signals of urgency or authority used by attackers. Result: +35% spear-phishing detection and +13% spam detection over the first five months of the year.

Stays one step ahead of the most targeted and sophisticated attacks.

Discover Protect

Wave Block

Stop mass campaigns from the very first hour

  • Protect

Wave Block detects malicious email campaigns from their very first waves and blocks them before they gain momentum. Its model distinguishes attack waves from legitimate mass mailings, allowing it to act quickly without disrupting expected communications.

Cuts short large-scale attack waves before they spread.

Discover Protect

Multi-Signal Detector 

Fine-grained, email-by-email analysis

  • Protect

Multi-Signal Detector complements previous protections with an individual analysis of each message, in order to intercept what escapes mass detection, i.e. around 6% of total flow processed.

Each email is individually assessed for its probability of being spam, based on binary features describing the sender, subject, and body of the message, as well as its presence in this note’s dynamic list (H52). This is not a deep semantic analysis, but a targeted evaluation that reinforces overall detection.

Lets nothing through, including targeted and discreet attacks, too rare to be caught by mass detection.

Discover Protect

Secure Link

Verify the link the moment it matters

  • Protect

Secure Link is Mailinblack’s proprietary anti-phishing technology that analyzes links at the very moment they are clicked.

Each link in an incoming email is rewritten and encrypted, then submitted to a triple AI analysis: the morphology of the link, its semantics (words or impersonated brands), and the content of the destination page. The origin of the email is also verified based on Secure Link’s data. In case of danger, the user is instantly warned.

Protects against hidden threats within malicious links.

Discover Protect

Swift Threat Response

The strength of the collective

  • Protect

Swift Threat Response draws on Mailinblack’s collective intelligence: a threat detected at one client automatically becomes a protection for the entire fleet. The same behavior blocked at several clients within 48 hours is neutralized everywhere, with a threshold calibrated to keep false positives under 1%.

Result: significantly more precise detection than random blocking, and several billion emails neutralized every year thanks to this collective protection.

Turns every individual attack into instant collective protection.

Discover Protect

Precision Filter, LabEngine, Data Leak Prevention

Detect more accurately, act faster

  • Protect

Precision Filter is an intelligent analysis engine dedicated to email filtering, cross-referencing multiple signals to identify at-risk messages. It relies on LabEngine, a rule-injection module that generates new detection rules in real time, without waiting for a full update cycle, in order to react quickly to emerging threats.

These protections are complemented by Data Leak Prevention technology, which prevents client-side leaks of sensitive data, such as passwords or banking credentials.

Detects, adapts in real time, and protects sensitive data at every stage of filtering.

Discover Protect

Smart Simulation

Awareness training that adapts to each person

  • Cyber Coach
  • Sikker

Smart Simulation changes the way teams are prepared for phishing attacks. Rather than sending the same generic scenarios to every employee, Smart Simulation creates a tailor-made simulation for each individual, based on signals drawn from their email use, their sector of activity, and their organizational context, along with their identity signals and communication habits. Concretely, the system tailors these simulations to the tools used daily and sends them at the most opportune moment, where the risk is highest.

Moves from standardized awareness training to realistic, personalized training that reflects the genuine attempts each employee could actually face.

Discover Cyber Coach

Field Sense

Vigilance right down to the browser

  • Sikker

Automatically detects login forms (usernames, passwords, access codes) directly in the user’s browser, without slowing down their work.

Identifies areas of exposure (reused passwords, at-risk access) as close as possible to the user, with maximum confidentiality guaranteed by 100% local analysis.

Discover Sikker

Why Néréus

Nereus

(in ancient Greek : Νηρεύς / Nēreús, from νέειν / néein, "to swim")

In Greek mythology, Nereus is an ancient sea deity of the Mediterranean, associated with knowledge, anticipation, and understanding the movements of the sea.

A calm yet immense figure. In the depths, Nereus perceives movements that no one can yet see on the surface.

What sets Néréus apart is the data.

Twenty years of analyzing email flows, behaviors, and threats. Today, Néréus draws on signals from 26,000 organizations and more than 6 billion emails analyzed every year.

spider néréus
spider néréus

This is the result of twenty years of continuous analysis of email flows, threats, and behaviors around risk. A real, long-term history, built by very few players.

This depth gives Néréus a decisive advantage: learning from situations that have actually been observed, rather than from theoretical scenarios. The more numerous, varied, and recent the signals, the more relevant detection and simulations become.

Twenty years of learning, continuously refined at the scale of the entire Mailinblack fleet.

 

We’ve been helping organizations strengthen their cyber capabilities for over 20 years.

Request a demo

Frequently Asked Questions

Does a model get trained on user data?

No. No client data is used to train the model.

Does Mailinblack read our employee's emails?

No. Processing is entirely automated. The signals used are not stored in plain text and are deleted immediately after being used to generate the simulation profile.

Are Mailinblack's AI technologies compliant with the European AI Act?

Yes. Mailinblack's AI technologies do not fall under any of the unacceptable risk categories defined by the AI Act. They are classified in the limited-risk system category.