Advancing UK Aerospace, Defence, Security & Space Solutions Worldwide
  • Home
  • /
  • Security
  • /
  • Darktrace adds early warning system to Antigena Email

Security

Darktrace adds early warning system to Antigena Email

Cambridge based Darktrace has added an early warning system to its Antigena Email product, allowing members of the Darktrace community to contribute and benefit from insights gleaned from across the fleet.

Above: Jack Stockdale OBE, Darktrace CTO.
Courtesy Darktrace

This new capability is now available to Antigena Email users and includes the extension of anonymised, learned domain behavioral profiles across Darktrace’s expansive and diverse group of global customers.

“Darktrace stops all kinds of cyber-attacks against organizations in every sector in over 110 countries globally. That represents a huge bank of knowledge about how malicious payloads behave in the very earliest stage of a cyber-attack,” commented Jack Stockdale OBE, Darktrace CTO. “Antigena Email has now realised the vision of leveraging collaborative, anonymised insights to leave attackers with nowhere to hide.”

Advertisement
Leonardo animated rectangle

Ninety-four per cent of cyber-attacks begin in the inbox. As organisations continue to rely on email as a primary workplace collaboration tool and attacks become increasingly novel and sophisticated, email security technologies that rely on behaviour rather than threat intelligence become more imperative.

Darktrace’s Self-Learning AI observes emails to build bespoke behavioral profiles for each customer and leverages these behavioural profiles, rather than a ledger of binary ‘good’ or ‘bad,’ to accurately determine whether each email belongs in a recipient’s inbox. Antigena Email uniquely analyses domains within email addresses and links in email bodies and attachments to evaluate their popularity and typical presence in the inbox.

Now, when Antigena detects unusual domain behavior in a customer environment, a supplementary interpretation can be made by comparison with this new fleet-wide version of the behavioural profiles. This new functionality can lead to increased suspicion, for example, of a potential account compromise when a fleet-wide popular domain suddenly strays from its usual behavioural patterns – even in a trusted supplier or vendor.

This update recently allowed Darktrace to stop a phishing campaign sent from a compromised government account in South America that was soliciting fake philanthropic donations. Although the government domain was legitimate, the attacker had inserted their own 'reply-to' address into the email headers. This address had zero domain precedent locally or globally and, in combination with other indicators, led Antigena Email to flag this email as suspicious.
 

 

Advertisement
ODU RT

 

 

 

Advertisement
General Atomics LB
Babcock delivers LFB’s first fully electric lorries

Security

Babcock delivers LFB’s first fully electric lorries

10 December 2025

Babcock has marked a major milestone in its partnership with London Fire Brigade (LFB) by supplying the service with its first fully electric large goods vehicles (eLGVs) making LFB the first fire service in the UK to use a fully electric fleet for training.

UK prison building programme continues expansion

Security

UK prison building programme continues expansion

10 December 2025

As part of Government action to keep the public safe and ensure jails never run out of space again, around 5,000 new prison places are under construction in the biggest jail expansion programme since the Victorian era, including in the North West, South East, South West and East of England.

Cobham Satcom and Gatehouse Satcom

Defence Security Space

Cobham Satcom and Gatehouse Satcom's Network Division to merge

8 December 2025

Cobham Satcom and Gatehouse Satcom today announced a strategic merger between Gatehouse Satcom and Cobham Satcom’s Network Division.

Blighter adds radar target tracker to BlighterNexus system

Defence Security

Blighter adds radar target tracker to BlighterNexus system

5 December 2025

Cambridge based Blighter has added a proprietary dynamic radar target tracker module to its integrator-friendly BlighterNexus AI-assisted multisensor connectivity & processing system.

Advertisement
Leonardo animated rectangle
Government launches consultation on use of facial recognition and biometrics

Security

Government launches consultation on use of facial recognition and biometrics

4 December 2025

The UK Government has launched a consultation on the use of facial recognition and biometrics in law enforcement and aims to better equip the police.

Leonardo inaugurates Regional Cyber Centre in Malaysia

Security

Leonardo inaugurates Regional Cyber Centre in Malaysia

4 December 2025

The Regional CyberSec Centre based in Kuala Lumpur joins Leonardo's Global CyberSec Centre (GCC) network, which already includes the federated centres in Bristol, Brussels, Chieti and Riyadh, consolidating Malaysia’s role as a strategic hub for Southeast Asia.

Advertisement
ODU RT