Behind the Surface Analysis Blog

Behind the Surface Analysis Blog

Home
Notes
Archive
About
How HTMLMIX Uses AI to Help Cybercriminals Evade Email Security Filters
Real threat actors are using AI-powered tools like HTMLMIX to bypass email filters at scale. Here's how the tool works and how to defend against it.
Jan 20 • Travis Simcox
I Saw a Phishing Site That Traps Security Bots
I analyze dozens of phishing sites per month. Most are cut-and-paste redirects pointing to Phishing-as-a-Service kits. But this campaign was a little…
Jan 20 • Travis Simcox

November 2025

Would you recognize the sound of a bank account being drained? How automated OTP social engineering bypasses MFA
Today we publish the first public findings on MrJayOTP.
Nov 2, 2025 • Travis Simcox
CleanTraffic: The redirect service that is anything but clean
Did you know cybercriminals are using A/B testing to optimize their phishing campaigns?
Nov 2, 2025 • Travis Simcox
Coming soon
This is Behind the Surface Analysis Blog.
Nov 2, 2025 • Travis Simcox
© 2026 Travis Simcox · Privacy ∙ Terms ∙ Collection notice
Start your SubstackGet the app
Substack is the home for great culture