INKY Email Security: How GenAI Catches Phishing Threats Other Filters Miss
Email is almost always the first avenue a threat actor will take. It is still the number one cause of data breaches for companies, and the hooks are getting sharper. Most people do not realize how far the problem has advanced. Today’s criminals employ incredibly sophisticated techniques that elude even the most skeptical and well-trained eyes.
This is exactly the problem INKY was built to solve. INKY is a GenAI-powered email security platform that detects threats others overlook, acting as a security coach that guides users toward safe actions on any device or email client. At Univision Computers, we deploy and manage INKY for Florida, Montana, Washington businesses that are tired of watching phishing emails sail past their built-in filters. In this post, we break down exactly what INKY does, how its technology works, and why it has become a cornerstone of our email security practice.
Why Traditional Email Filters Are Losing
The classic approach to email security relies on signature matching and static rules. If an email looks like a known bad message, it gets blocked. The problem is that modern attackers do not send the same message twice. They use zero-font tricks, brand-impersonation layouts, QR-code redirects, and AI-generated language that reads as naturally as a colleague’s note. By the time a signature exists, the campaign is already over.
This is why so many organizations still get hit despite investing in network security tools, security awareness training, and the default protections that ship with Microsoft 365. The threats have evolved past what rule-based filters were designed to catch. INKY takes a fundamentally different approach: instead of matching patterns, it understands the email.
What Makes INKY Different: GenAI That Actually Reads Email
INKY’s core advantage is its use of generative AI. INKY GenAI can read each email and fully understand its intent. This allows it to identify scams that simple pattern matching cannot. Where a traditional filter asks “does this match a known bad signature?”, INKY asks “what is this email trying to get the recipient to do, and is that legitimate?”
That distinction matters because the most dangerous emails today are not full of malware attachments or obvious red flags. They are conversational, context-aware, and socially engineered. A business email compromise (BEC) attack might be a short, polite message from a spoofed executive asking accounts payable to move a wire transfer. There is no malicious payload to scan. The threat lives entirely in the language and intent. INKY’s GenAI is built specifically to catch that class of attack.
The Three Engines Behind INKY’s Detection
INKY does not rely on a single technique. It combines three proprietary technologies that work together to see threats the way a trained human analyst would, only faster and at scale.
1. Computer Vision
INKY renders every email and applies computer vision algorithms to “see” each email as the human recipient will. This is critical for catching brand impersonation. A phishing email might use a pixel-perfect replica of a Microsoft login page or a Chase bank banner. Text-based filters cannot tell the difference between a real logo image and a forgery. INKY can, because it is literally looking at the rendered email the way your eyes would.
2. The Approximate Matching Engine
INKY’s proprietary approximate matching engine finds brand-indicative and scam-indicative text, despite attacker cloak attempts like zero-font and other tricks. Attackers hide text by making it the same color as the background, shrinking it to zero font size, or inserting invisible characters to break up keywords. INKY’s matching engine cuts through those cloaking techniques and identifies the real intent behind the message.
3. Conversation Analysis
INKY analyzes the full conversation context, not just the individual message. It looks at who is participating, whether the tone and request pattern match prior exchanges, and whether a sudden change in banking details or request urgency fits the established relationship. This is what allows INKY to flag BEC attacks that rely on hijacked or spoofed threads rather than fresh malicious emails.
The INKY Email Assistant: Coaching Users in Real Time
One of the most underappreciated parts of the INKY platform is the Email Assistant. Periodic security training often falls short with distracted, busy users. A once-a-year phishing quiz does not change behavior in the moment that matters. INKY’s Email Assistant provides continuous coaching, helping users make safe choices on any device or email client.
It works through interactive banners that appear directly in the email. When INKY detects something suspicious, it does not just silently quarantine the message. It tags the threat category, highlights suspicious language, and provides a detailed explanation of why the email is risky. The user learns in context, at the exact moment they are making a decision. Over time, this turns your workforce into a human layer of detection that actually understands what it is looking at.
This complements the phishing simulations and awareness training we run for clients. Training builds the foundation; INKY reinforces it every single day.
INKY’s Product Tiers: What Each Layer Protects
INKY is not a single product. It is a platform with two tiers, each building on the last. Here is what is included and why it matters for your business.
INKY Advanced: Inbound and Internal Protection
- Inbound Mail Protection (PF): Anti-phishing, anti-malware, and spam filtering. Uses AI to block impersonation and ransomware with intuitive user coaching. This is your first line of defense against emails arriving from outside your organization.
- Internal Mail Protection (IMP): Account takeover protection using sender profiling and social-graphing anomaly detection. If a compromised account starts sending emails that do not match its normal behavior, INKY catches it. This is critical because once an attacker is inside, they use legitimate internal accounts to move laterally.
- Advanced Attachment Analysis (AAA): Detects zero-day malware that has no known signature yet. This is where traditional AV tools fail and INKY’s AI analysis picks up the slack.
- Graymail Protection: A super spam filter for newsletters and similar low-value mail, keeping inboxes clean so users are not desensitized to warnings.
- Email Signatures: Update and control email signatures for compliance and branding purposes across the entire organization.
INKY Advanced Plus: Generative AI, Outbound Protection, and Compliance
Advanced Plus includes everything in Advanced, plus the full GenAI engine and outbound protection features:
- Generative AI: Understands language and intent to stop email threats with precision. This is the engine that reads emails the way a human would and catches the conversational BEC attacks that rule-based filters miss entirely.
- Outbound Mail Protection (OMP): Detects and prevents data loss with interactive safeguards for outgoing emails. If a user is about to send sensitive data to the wrong recipient or an external address, INKY intervenes before the message leaves your organization.
- Email Encryption: Easy-to-use encryption that encourages organizations to keep their data secure without creating friction that makes users avoid it.
- DMARC Monitoring: Monitors domain usage to improve email delivery and prevent your domain from being spoofed by attackers impersonating your brand. This protects both your deliverability and your reputation.
QR Code Detection: Closing a Growing Attack Vector
One capability worth calling out separately is INKY’s QR code detection. INKY AI scans and decodes QR codes embedded in emails to determine if the encoded URL is safe. This matters because QR-code phishing, also called quishing, has exploded as attackers realized that security tools were scanning email text but not the pixel patterns inside images. A phishing email might contain nothing but a QR code that, when scanned with a phone, routes the user to a credential-harvesting page. INKY decodes the QR code in the email itself and evaluates the destination URL before the user ever reaches for their phone.
How INKY Fits Into a Complete Security Stack
Email security is essential, but it is not sufficient on its own. INKY is most effective when it is part of a layered defense strategy. At Univision Computers, we position INKY as the email layer within a broader network security architecture that includes:
- Managed firewall services to control what traffic enters and leaves your network
- Endpoint protection and MDR to catch threats that make it past email and onto devices
- Zero-trust and MFA rollouts so that a compromised credential does not become a full account takeover
- Data backup and recovery so that if an attack does succeed, you can restore without paying a ransom
This is also why INKY pairs so well with our managed IT services. When we manage your environment, INKY’s dashboard gives our team deeper insights to track and understand threats across your organization. We see what INKY GenAI detects, tagged by threat category, with detailed explanations, so we can respond faster and tune your posture over time. For organizations that have their own internal IT staff, we offer co-managed IT so your team stays in the loop while we handle the heavy lifting on security.
Deployment: Six Minutes to Protected
One of the reasons we chose INKY as a partner is how easy it is to deploy. INKY features auto-onboarding for Microsoft 365. As one partner put it: “INKY makes it so easy to install with their auto-onboarding on Microsoft 365. Six minutes and I’m done.”
That speed matters. Long, complex deployments create windows of exposure and strain IT teams. INKY’s auto-onboarding means we can have a new client protected often within the same call where we scope the engagement. There is no need to rip and replace your existing mail flow or stand up new infrastructure. INKY slots into your Microsoft 365 tenant and starts analyzing mail immediately.
For businesses running Microsoft 365, this also means INKY integrates naturally with the broader stack we already manage, including Microsoft 365 support and Microsoft 365 backup. Email security, productivity, and backup all live in the same ecosystem, managed by the same team.
What INKY Catches That Your Current Filter Probably Does Not
If you are relying on the default protections in Microsoft 365 or a legacy secure email gateway, here is what is likely getting through:
- Brand impersonation using pixel-perfect logo replicas that text filters cannot evaluate
- BEC and vendor fraud where the email contains no malware, just socially engineered language and a fake request
- Account takeover where a compromised internal account sends mail that looks legitimate because it comes from a real mailbox
- QR code phishing where the malicious payload is an image, not text or an attachment
- Zero-font and cloaking tricks designed to break keyword matching
- Zero-day malware in attachments that has no signature for your AV to match
INKY was built for exactly these scenarios. Through GenAI, AI, and machine learning, INKY catches what others miss.
Why We Partner With INKY
We do not recommend tools lightly. INKY earned its place in our stack because it solves a real problem we see every week: phishing emails that defeat conventional filters and reach real users. As one incident response partner noted, “Email is almost always the first avenue a threat actor will take. That is why we partner with INKY. They do an excellent job protecting against phishing attacks, which is vector number one.”
For our clients, that means fewer incidents, faster response, and a workforce that gets smarter over time because INKY coaches them in the moment. For us, it means a single platform that covers inbound, internal, and outbound email protection, eliminating the need to stitch together multiple single-solution vendors. As another partner put it: “INKY’s platform covers all the email security and compliance solutions our customers need. The ability to partner with one vendor for multiple products boosts efficiency and improves our bottom line.”
Who INKY Is Right For
INKY is a strong fit for any organization where email is a primary business tool and where a successful phishing attack would be costly. That includes:
- Businesses handling financial transactions where BEC and vendor fraud could result in wire-transfer losses
- Healthcare practices that need to protect PHI and meet compliance requirements
- Professional services firms where client trust and confidential communications are core to the business
- Organizations on Microsoft 365 that want more than the default protections without a complex deployment
- Companies with remote or hybrid workforces where users access email from many devices and need coaching in context
If your business is in Florida and any of those describe you, INKY is worth a serious look. And because we manage the deployment and ongoing tuning, you do not need to become an email security expert to get the benefit.
The Cost of Waiting
Every day without INKY is a day your email is being evaluated by tools that were built for a previous generation of threats. The attackers have moved to AI-generated, socially engineered, visually impersonated attacks. Your defense should be built on technology that understands those attacks, not just matches their signatures.
The good news is that closing this gap is fast. INKY’s auto-onboarding means deployment is measured in minutes, not weeks. And when it is paired with the rest of our security services, disaster recovery testing, and cloud computing capabilities, you get a complete posture rather than a single point solution.
Get a Free Email Security Assessment
Want to see what INKY would catch in your environment before you commit? We offer a free email security assessment for Florida businesses. We will review your current email security posture, show you where the gaps are, and demonstrate what INKY detects that your current tools are missing.
Contact Univision Computers today to schedule your assessment, or learn more about our full range of managed IT services and network security solutions.
