File Attack Deep Dives
2 parts, in reading order.
Part 1
How File-Based Attacks Land: A Detection Engineer's Field Guide
A practical taxonomy of how malware and phishing arrive as files, why classic controls miss them, and how detection should think.
Part 2File Attack Deep Dives: HTML as an Attack Surface
Every way an HTML page attacks: smuggling, external fetches, QR handoffs, phone callbacks, credential phishing, job scams, and AI prompt injection.