Platform Update β€” Global Scam Intelligence Engine

byβ€’

πŸš€ Platform Update β€” Global Scam Intelligence Engine

We're excited to announce the latest update to the Global Scam Intelligence Platform, introducing new investigation capabilities, automated intelligence collection, and expanded phishing discovery. These enhancements strengthen our ability to identify, analyze, and monitor malicious websites while maintaining the existing detection architecture.

πŸ”Ž Investigation Export System

Security analysts can now generate comprehensive investigation dossiers directly from the Review dashboard.

The new Investigator Export feature produces complete forensic reports for any analyzed website while preserving all existing review workflows.

Included in every investigation report

  • Complete evidence matrix

  • AI classification results

  • Rule engine detection reasoning

  • Hosting infrastructure intelligence

  • WHOIS information

  • TLS / SSL certificate details

  • Redirect chain analysis

  • Analyst review decisions

  • Takedown reports

  • Investigation timeline

  • Change history

  • Current review status

Two export formats are available:

  • Export JSON β€” machine-readable forensic data

  • Export PDF β€” professionally formatted investigation report

The reporting interface now includes improved toast notifications to immediately surface export failures or processing errors.

πŸ€– Automated Continuous Re-Scanning

Threat intelligence is now refreshed automatically through an enhanced recurring analysis workflow.

Every five minutes, the intelligence engine evaluates the entire database and automatically schedules websites for additional analysis based on their current intelligence status.

Sites are automatically prioritized when they meet one or more of the following conditions:

β€’ Analyst-reviewed within the last 7 days
β€’ High-risk findings older than 12 hours
β€’ Any intelligence older than 48 hours
β€’ Newly discovered domains that have never been scanned

Recently reviewed investigations receive Priority 9, ensuring that websites modified after takedowns or remediation attempts are rescanned immediately.

Each intelligence cycle now reports the total number of rescan_queued websites, providing visibility into automated workload generation.

No manual intervention is required.

🌍 Expanded Threat Intelligence Sources

The discovery engine has been expanded with additional verified phishing intelligence feeds while continuing to use the existing scoring, normalization, and deduplication pipeline.

Newly Integrated Sources

Source

Purpose

Phishing.Database β€” New Today

Newly discovered phishing URLs

Phishing.Database β€” Domains

Recently identified malicious domains

Extended Blocklist

Large rotating phishing infrastructure feed

The platform now prioritizes the newest intelligence before deduplication, ensuring that attribution data remains as current and accurate as possible.

Existing detection logic, AI scoring, and reputation analysis remain unchanged.

⚑ Increased Intelligence Capacity

The intelligence crawler has been optimized to process larger workloads without increasing operational complexity.

Metric

Previous

Current

Maximum websites processed per run

420

480

Average execution time

~45 seconds

~45 seconds

Available execution window

240 seconds

240 seconds

Performance testing shows sufficient capacity to support future intelligence feed expansion while remaining comfortably within execution limits.

πŸ“Š Platform Impact

This release delivers measurable improvements across multiple areas of the platform.

╔════════════════════════════════════════════════════════════════════╗
β•‘ UPDATE HIGHLIGHTS β•‘
╠════════════════════════════════════════════════════════════════════╣
β•‘ βœ“ Investigation Export System (JSON & PDF) β•‘
β•‘ βœ“ Complete Digital Forensics Reports β•‘
β•‘ βœ“ Automated Continuous Re-Scanning β•‘
β•‘ βœ“ Priority-Based Intelligence Queue β•‘
β•‘ βœ“ Three Additional Live Threat Intelligence Sources β•‘
β•‘ βœ“ Improved Feed Prioritization β•‘
β•‘ βœ“ Scan Capacity Increased (420 β†’ 480 per cycle) β•‘
β•‘ βœ“ Zero Existing Detection Logic Rewritten β•‘
β•‘ βœ“ Continuous 24/7 Threat Monitoring β•‘
β•šβ•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•β•

Looking Ahead

These enhancements improve investigative capabilities, automate ongoing intelligence collection, and expand phishing discovery without altering the platform's proven detection architecture.

The Global Scam Intelligence Platform continues to evolve with a focus on scalability, automation, and actionable cybersecurity intelligenceβ€”delivering faster detection, richer investigations, and broader visibility into the ever-changing global threat landscape.

1 view

Add a comment

Replies

Be the first to comment