All customer stories

Mesh Secures Crypto Payments from AI-Powered Email Attacks

99.7%
Less threat exposure
300+
Missed threats caught
90%
Faster detection + response

Content

Protect your team the way name does, book time with us

Mesh

Get a free demo
Location
USA
Industry
Finance
Protected Mailboxes
100+
Email Provider

Overview

Mesh is a San Francisco-based fintech company building the infrastructure to power a global crypto payments network. After a Series B that brought total funding past $120 million, the company scaled quickly, growing beyond 100 employees and building integrations across major financial and identity platforms. That same growth made Mesh a high-value target: a larger team, a broader digital footprint, and deep ties to the financial system gave attackers more surface area to probe.
Challenges
Generative AI impersonation of teammates and trusted vendors | Attacks from legitimate but compromised infrastructure | Data-loss risk across crypto payment data and credentials | A legacy stack that needed constant tuning while threats slipped through
This is some text inside of a div block.
This is some text inside of a div block.
This is some text inside of a div block.
This is some text inside of a div block.
Solutions
Agent-native AI that reasons about intent, not known-bad patterns | Catches zero-day phishing and new BEC variants | Real-time inline scanning via Google Workspace APIs, minimal data retention | Live in minutes, fully operational within 24 hours, zero tuning
This is some text inside of a div block.
This is some text inside of a div block.
This is some text inside of a div block.
This is some text inside of a div block.

The Challenge

As Mesh grew, the attacks changed shape. What reached inboxes no longer looked like traditional phishing. Adversaries sent highly specific impersonations, from CEO impersonation to invoice fraud to onboarding scams, combining generative AI with real-world context to produce increasingly realistic lures. Three problems stood out: generative impersonation that mimicked internal teammates and trusted vendors; attacks from legitimate but compromised servers that sailed past reputation and signature defenses; and the need for data-loss prevention to keep sensitive payment data and credentials from leaking. The sophistication had outrun what rule-based tools could handle.
Mesh is a fast-moving, tech-forward organization. We need vendors like Aegis that innovate with us in our highly dynamic environment.
Daniel Hooper
CISO @ Mesh
Daniel Hooper
CISO @ Mesh

Why AegisAI

Mesh turned to AegisAI, an email security platform built on agent-native AI designed to detect, reason, and act against advanced threats. Rather than relying on static rules, AegisAI deploys autonomous agents that understand context, model behavior, and adapt to novel attacks, reasoning through intent instead of scanning only for known-bad patterns. That lets it catch zero-day phishing, new BEC variants, and threats never seen before, exactly what was reaching Mesh. It also met Mesh's privacy requirements: real-time scanning inline with the Google Workspace APIs, retaining only metadata or flagged content. For a crypto-native company, that balance of strong protection and minimal data retention was a deciding factor.
The mark of a great email security system is that we don't have to manage it. Aegis was able to come in and help us stop attacks without requiring our team to spend extra time on it. It's put a stop to the increasing number of attacks, even those using compromised infrastructure and AI to customize attacks to specific employees.
Arjun Mukherjee
CTO @ Mesh
Daniel Hooper
CISO @ Mesh
Arjun Mukherjee
CTO @ Mesh

Spotlight: The Fourth of July Attack

Because AegisAI's agents reason through intent and context, they catch threats tailored to a specific company. One arrived on the Fourth of July. Mesh had recently posted about a crypto event it was attending in France. An attacker combined that public detail with a compromised French events company's website and identity to send a targeted payment request to Mesh's marketing team, carrying a fake CAPTCHA lure and a Google phishing page built to harvest credentials. AegisAI recognized the request for what it was and quarantined it automatically. There was no payment to reverse, no pager alert, and no user compromise. The security team came back to a clear alert and report: a clean account of an evolving threat, handled while they were out.
Arjun Mukherjee
CTO @ Mesh
Arjun Mukherjee
CTO @ Mesh
What AegisAI detected at
Mesh
  • 300+ phishing and impersonation emails the existing stack missed, surfaced in the first scan
  • CEO and executive impersonation payment requests
  • Invoice fraud and vendor-impersonation scams
  • Onboarding scams targeting new employees
  • Attacks launched from legitimate but compromised infrastructure
  • A Fourth of July spear-phish using a compromised French events company, a fake CAPTCHA, and a Google credential-harvesting page
Daniel Hooper
CISO @ Mesh

Results

Since deploying AegisAI, Mesh has seen a 99.7% reduction in employee exposure to email-based threats, with zero user-reported phishing incidents, no missed legitimate business emails, zero manual tuning, and a 90% reduction in time to detect and respond. Just as important, AegisAI freed the team to focus: with email risk largely out of the equation, Mesh's security team could concentrate on scaling infrastructure and product securely instead of chasing inbox threats.
Daniel Hooper
CISO @ Mesh

Conclusion

In a space as fast-moving and target-rich as crypto fintech, static defenses are no longer enough. Mesh chose AegisAI for its detection results and for an architecture designed to adapt as fast as attackers do: a shift from rule-based blocking to context-aware, autonomous defense. For Mesh, that meant fewer alerts, fewer incidents, and a safer path to global scale. As Mesh CEO Bam Azizi put it: "As a former security founder, I've seen the cat-and-mouse game play out for decades, especially in email security, where attackers constantly evolve to trick employees. Aegis is the first solution that truly changes the game. They came into Mesh and stopped attackers in their tracks. Our dashboard shows everything from fuzzing attempts to AI-generated spear phishing and BEC, and Aegis catches them all, without my team wasting time managing rules."
Key Decision Factors
  • AI-native defense: autonomous agents reason about intent, matching the intelligence of AI-generated attacks
  • Catches the novel: zero-day phishing and new BEC variants that carry no known-bad signal
  • Privacy by design: inline Google Workspace scanning that retains only metadata or flagged content
  • Zero management: no rules, no tuning, live in minutes and fully operational within 24 hours
Read Other Case Studies
Read All
Don’t Miss the Next Big Threat
Subscribe today to receive updates on the newest cyberattacks, product innovations, and best practices for protecting your organization.

Subscribe

Success! We’ll be in touch soon.
Something went wrong while submitting.