惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

G
GRAHAM CLULEY
Martin Fowler
Martin Fowler
MongoDB | Blog
MongoDB | Blog
Last Week in AI
Last Week in AI
P
Privacy & Cybersecurity Law Blog
Security Archives - TechRepublic
Security Archives - TechRepublic
博客园 - Franky
Spread Privacy
Spread Privacy
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
Project Zero
Project Zero
Engineering at Meta
Engineering at Meta
The Hacker News
The Hacker News
Stack Overflow Blog
Stack Overflow Blog
N
Netflix TechBlog - Medium
A
Arctic Wolf
Cisco Talos Blog
Cisco Talos Blog
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
Application and Cybersecurity Blog
Application and Cybersecurity Blog
T
Threat Research - Cisco Blogs
Recorded Future
Recorded Future
Latest news
Latest news
WordPress大学
WordPress大学
有赞技术团队
有赞技术团队
C
CERT Recently Published Vulnerability Notes
美团技术团队
C
CXSECURITY Database RSS Feed - CXSecurity.com
O
OpenAI News
N
News and Events Feed by Topic
MyScale Blog
MyScale Blog
www.infosecurity-magazine.com
www.infosecurity-magazine.com
B
Blog RSS Feed
酷 壳 – CoolShell
酷 壳 – CoolShell
T
Threatpost
T
The Blog of Author Tim Ferriss
L
LINUX DO - 最新话题
博客园 - 三生石上(FineUI控件)
V
Visual Studio Blog
Hugging Face - Blog
Hugging Face - Blog
博客园 - 【当耐特】
S
Securelist
Microsoft Azure Blog
Microsoft Azure Blog
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
S
Secure Thoughts
罗磊的独立博客
P
Proofpoint News Feed
T
The Exploit Database - CXSecurity.com
Apple Machine Learning Research
Apple Machine Learning Research
Cloudbric
Cloudbric
G
Google Developers Blog

Cisco Blogs

Edge opportunity for service providers: Turn infrastructure into new services MRC and SRv6: How Foundational Networking Innovations Are Enabling the Next Generation of AI Supercomputers The SMB Marketing Reset: Winning Customer Trust in a Digital-First Economy Inside the SOC: AI-powered DNS defense against ransomware Our Path Forward Securing the Federal Digital Experience with Cisco ThousandEyes for Government Cisco at ONUG Dallas 2026: Securing the AI Data Center in the Agentic Era Cisco and Red Hat are powering intelligent core to edge: Red Hat Summit insights Building the Capabilities That Win: How Cisco Partners Can Lead in the SMB & Mid-Market Era How Two Hours Felt Bigger Than My To-Do List Announcing Foundry Security Spec Ace the CCIE Collaboration Lab: Success Tips from a TAC Engineer Turned CCIE Protecting Agents with Cisco AI Defense and Google Agent Development Kit Powering an Inclusive Future: Your guide to the Purpose Pavilion at Cisco Live Las Vegas The Infrastructure Behind the Mission: SOF Week 2026 Cisco Networking App Marketplace Partners at Cisco Live 2026 Beyond the Pilot: Building the Clinical Data Fabric for the Agentic Era Benchmarking scale-out AI fabrics with Cisco N9000 + AMD Pensando™ Pollara 400 NICs Month of Developer Productivity: Build and Forget The race to autonomous transport networks: A new study Lean IT, future-ready: How to save time and simplify wireless management with AI Reading Between the Pixels: Failure Modes in Vision Language Models Biochar’s triple win: Healthier soils, improved crops, and decarbonization Designing a Proactive Customer Journey Modernize your data center operations with Cisco Nexus Dashboard Why your automation stack needs Cisco Agentic Workflows Try Cisco AI Defense Explorer Edition in this hands-on lab From Bandwidth to Intelligence: How Cisco is Powering AI-Ready Networks Spotlight on digital transformation | FY25 Purpose Report Galaxy Mode is live: A limited-time look at what your Cisco AI Assistant and AgenticOps can already do Securing the Agentic Workforce: Cisco Announces Intent to Acquire Astrix Security Understanding CISA BOD 26-02: Mitigating Risk from End-of-Support Edge Devices Digging Deeper: The Future of Mining with Automation and Ultra-Reliable Wireless Voices from the field: Helping farmers build resilient local economies across rural America Built like a startup, scaled like Cisco: Transforming data center cooling for the AI era Defining Model Provenance: A Constitution for AI Supply Chain Safety and Security Introducing Model Provenance Kit: Know Where Your AI Models Come From Security Insights: A Threat-First View for the Platform That Enforces Access How I Turned My Curiosity into a Patent From Strategy to Architecture: How Cisco is Building a Quantum-Safe Future Maximizing Managed Security Services: A Strategic Guide to Optimizing Your Portfolio (Part 1 of 2) Simplify access control in five easy steps Trust: Why security is your next growth engine Cisco IQ is generally available. Here’s what that actually means. From Vision to Reality: Intelligence in Action with Cisco IQ How connectivity is shaping the future of surgical care The power of your network: Solving a physical security incident on Vision portal 5 signs your data center is holding your AI strategy back Stop Overthinking OT Security: The Total Cost of Ownership and Being Smart with Refreshes AI-Ready, Simpler, and More Secure WAN: Cisco SD-WAN Innovations Scaling the digital future: Why AI and skills investments matter for business and society Expanding our Product Organization Recap Scaling the Future: Reddit AMA on Network Automation at Scale Bringing Professional-Level Skills to Cisco Networking Academy Announcing Cisco Availability in Google Cloud Marketplace: A New Path to Scalable, Partner-Led Growth The Innovation Paradox: How We Reduced Incidents by 25% While Deploying Faster Funding the AI-ready data center: Why flexibility wins The switch that quantum networking has been waiting for From a Message I Couldn’t Believe to a Stage I’ll Never Forget The Hidden Bottleneck Slowing Down Manufacturing Transformation 30 Years as a CCIE: Why Certifications Matter in the AI Era Securing Enterprise AI: Cisco AI Defense Expands to Google Cloud How ThousandEyes Closed the Cloud Visibility Gap by Solving It Themselves First Energy Will Define the Scale of AI Introducing the AI Agent Security Scanner for IDEs: Verify Your Agents Stop Overthinking OT Security: People, Process and Technology Powering the Future of Research: Join Cisco at NLIT 2026 Building the Digital Foundation for a Smarter West Lincoln Memorial Hospital How Cisco built an AI-RRM that maximizes your wireless solution From Automation to Autonomy: Cisco and Rockwell Power a New Era for Manufacturing Unlocking the Future of Fan Engagement: The Power of VisionEDGE Find Yourself in the Future: AI Is the New Baseline—Here’s How to Build Your Skills One Day with Our Customers: Driving better outcomes through customer centricity What It Really Takes to Build an AI-First Workforce From Connectivity to Security: How E80 Future-proofed its AGV Operations with Cisco The Infrastructure of a Floating City: AIDA Cruises’ CX-Led Digital Transformation Scaling your network for AI without a forklift upgrade Why modern networks are moving DDoS defense to the edge Evolve IP Media to AI-Driven Media Fabrics: Future-Proof Broadcast with Cisco and NVIDIA Cisco and Generation are scaling AI-powered pathways to employment Reading Between the Pixels: Assessing Prompt Injection Attack Success in Images Lean IT, future-ready: Why Wi-Fi is your AI growth strategy Cisco Modeling Labs: Bringing the Network Digital Twin to Life AI on the Factory Floor: Why Manufacturing Requires a New Architecture with Cisco Unified Edge Designing for What’s Next: Securing AI-Scale Infrastructure Without Compromise Scaling the Future: Join Our Reddit AMA on Network Automation at Scale 5 wireless trends retail IT teams can’t ignore in 2026 Can your infrastructure management tools do that? Sustainability 101: Let’s talk about energy efficiency From Chai Breaks to Checkpoints: A Day at Cisco Bengaluru Preparing for Post-Quantum Cryptography: The Secure Firewall Roadmap Non-Obvious Patterns in Building Enterprise AI Assistants Making AI Trustworthy and Observable in Real-Time: Cisco Announces Intent to Acquire Galileo A simpler path to unified, AI-ready network operations Cisco Celebrates The Smart Industry Industrial Transformation Award Winners Mobile World Congress 2026: AI-powered Network Security Powering MWC Barcelona – Building a Unified SOC and NOC with Splunk in Record Time How New Data Streams Transformed Cisco Store’s Decision-Making AI-powered Network Security at the Mobile World Congress 2026 SNOC Inside the Mobile World Congress 2026 SOC: Detecting Shadow Traffic with Firepower 6100
Independent Testing Confirms Secure Email Threat Defense’s Email Security Strength
Deepali Shukla · 2026-06-16 · via Cisco Blogs

Email is still the most reliable way for an attacker to get inside your organization. Not because perimeter defences are weak — but because email is designed to be opened. The real question for any security team is not whether threats arrive in the inbox, but whether they get stopped before anyone can act on them.

Cisco Secure Email Threat Defense (ETD) is built around that premise: intercept threats at the point of delivery, decisively, without disrupting the flow of legitimate communication. That promise was recently independently validated. ETD earned the AAA award — the highest possible rating — in the May 2026 SE Labs Advanced Email Security Evaluation, achieving a 94% Total Accuracy Rating across all tested threat categories.

The Threat Landscape ETD Is Designed For

Modern email attacks do not arrive in one flavor. The organizations we protect face a constant mix of commodity phishing, evolving malware delivery, and the far harder problem of Business Email Compromise — attacks that carry no payload, no malicious link, just a convincing request from someone who looks exactly like a trusted contact.

The independent evaluation tested ETD against all four of these categories simultaneously, using real attack techniques modeled on active threat groups — from APT29’s ransomware-laden PDF campaigns targeting research institutions, to FIN7’s backdoor malware targeting retail and finance, to North Korea’s AppleJeus group running drive-by download attacks against the cryptocurrency sector. These are not theoretical scenarios. They are the actual techniques used against real organizations today.

Performance Across Every Threat Category

ETD detected 478 of 486 threats — a 98% detection rate. More importantly, every single threat ETD detected was also stopped or blocked before it could reach the user. Detection without action is not protection. ETD does both.

Phishing & Social Engineering — Zero Inbox Compromise

Phishing and social engineering together represent the highest volume of attacks most organizations face. Against 300 phishing attempts — including QR code-based quishing and evasion techniques using Google Translation links — ETD achieved 100% protection. Every email was quarantined under admin control or stopped outright. Not one reached an inbox.

The same outcome held across 100 social engineering samples: FBI impersonation scams, fake payment urgency requests, lottery fraud, fund beneficiary scams. Every one quarantined. None accessible to end users.

This is where ETD delivers the most immediate, measurable value for security teams. The highest-volume attack categories are completely neutralised — reducing alert fatigue, eliminating user risk exposure, and removing the need for subject-line warnings that employees learn to ignore.

Malware — 97% Stopped Against Nation-State Techniques

Malware delivery via email is a different challenge: evasive, polymorphic, and increasingly tied to sophisticated threat actors. Against 60 malware samples — spanning ransomware delivery from APT29 and APT-C-36, C2 backdoors from Gamaredon and Higaisa, and the FIN7 shellcode campaigns — ETD stopped 58. 22 were stopped silently, 8 were rejected with sender notification, and 28 were quarantined for admin review.

2 emails did reach the inbox. We are transparent about that. In both cases these were advanced, evasive samples. The 97% protection rate against nation-state-grade malware delivery techniques is a strong result — and the accuracy rating reflects the 2 misses with appropriate penalty points.

For organizations in energy, financial services, government, and retail — the primary targets of the threat groups tested here — a 97% block rate against techniques specifically designed to evade detection represents a significant reduction in breach risk.

Business Email Compromise — The Hardest Problem in Email Security

BEC deserves a frank conversation. It is the hardest attack category in email security — for any vendor, any product, any architecture. These attacks carry no malware. No phishing link. No attachment. A BEC email is, technically, a clean message. The threat is entirely in the intent: impersonating a CEO to authorise a wire transfer, or a supplier to redirect a payment.

Against 26 BEC samples — constructed using look-alike domains and simulated supplier relationships to mimic real-world attacks — ETD caught 20. That is a 77% detection rate: 3 stopped, 13 quarantined, 1 rejected, 2 neutralised through content editing, and 1 correctly routed to junk. 6 reached the inbox.

77% is an honest number, and it is meaningfully ahead of what unprotected Microsoft 365 or Google Workspace will catch on their own. But no email security product eliminates BEC entirely. We recommend pairing ETD’s detection capabilities with executive verification workflows for high-value financial requests — a layered approach that addresses the gap that technology alone cannot close.

Security That Doesn’t Get in the Way

A protection score only tells part of the story. A system aggressive enough to block everything would score perfectly on threats — and destroy productivity in the process. The balance between security and usability is where many products fall short.

Of 110 legitimate messages sent through ETD during the evaluation, 99 arrived directly in the inbox without any modification. 11 were routed to junk — accessible to users, not lost. Zero legitimate emails were blocked outright.

0 legitimate emails blocked. Every message remained accessible. The 11 routed to junk were reachable — a minor inconvenience, not a lost communication.

This balance — 98% threat detection alongside zero hard false positives — is what the 94% Total Accuracy Rating reflects. It is not a single metric optimised in isolation. It is the combined score of catching threats decisively and keeping the inbox functional.

What Independent Validation Means for Your Security Strategy

Every email security vendor publishes detection rates. What independent testing provides is something a datasheet cannot: validation under adversarial conditions, with real threat intelligence, by an organization with no stake in the outcome.

The evaluation used documented attack techniques from threat groups actively targeting governments, financial institutions, and critical infrastructure. ETD’s performance in that context — not in a lab, not with sanitised samples — is the most reliable indicator of how it will perform in your environment.

The AAA rating reflects well-rounded performance across the full threat spectrum: decisive on high-volume threats, strong against sophisticated malware, honest about the limits of technology against BEC, and careful not to over-block legitimate communication. That is the standard we hold ourselves to — and the standard that independent evaluation confirms we are meeting.

Read the full report for more insight into ETD’s comprehensive email security capabilities.

All performance data sourced from the SE Labs Advanced Security Test Report — Email (Protection), Cisco Secure Email Threat Defense, May 2026 (v1.0). Test conducted 1–7 April 2026. SE Labs Ltd, ISO/IEC 27001:2022 Certified.