Umbrixon

Module 03

Lure Check

Paste a link you are unsure about and get a verdict in seconds. Lure Check reads the URL against a dozen phishing signals and explains, in plain English, exactly what looks wrong.

We never open the link. Analysis is static, the URL string is all we read.

Signals we read

  • Transport, raw-IP and punycode hosts
  • Brand lookalikes by edit distance
  • Credential-bait keywords in the path
  • High-abuse TLDs, hyphen stuffing, odd ports

Why static-first

Opening a suspicious link to judge it is exactly what the attacker wants. Lure Check never fetches the page, it reasons purely about the URL string, so there is nothing to detonate and nothing to catch. That makes it safe to run on anything: a link from a customer, a header in a reported email, or a QR code a colleague scanned. When the surface alone is enough to condemn a link, you get your answer without taking any risk at all.

Static check vs. deep detonation

Free check

  • All 12 static signals evaluated
  • Top 3 triggered signals shown
  • Plain-English verdict & score

Sentinel & up

  • Every triggered signal, fully explained
  • Redirect-chain and landing-page detonation
  • Kit fingerprinting & brand match
  • Bulk URL submission via API
Compare plans