Your mailbox threat-hunter. MailHawk connects to a live inbox and hunts the phishing and impersonation that already landed — sender-auth spoofing, homograph & dnstwist lookalikes, disguised links, weaponised attachments — then harvests the actors' IOCs and taps a shared threat-intelligence feed. Explainable, every finding.
No cost, no expiry. We'll email your license key — paste it into the app and start hunting.
Atomic detectors feed a campaign-signature layer, every finding cross-referenced to MITRE ATT&CK and CAPEC. Scored 0–100, with a quarantine-first disposition and defanged IOCs throughout.
~/.config/mailhawk/license.key.mh-gui.mh hunt --account work or click Hunt in the GUI. Review verdicts, IOCs, and shared-KB hits.