Protect 2026

Discovery Labs Menu

 

Threat Protection Track

Dive deep into the evolving threat landscape with real-world attack scenarios, advanced threat intelligence, and best practices for stopping threats before they reach your people.

Operation First Wave: Modernizing Pre-Delivery Email Defense for the AI Era

Defend the 'Pacific Break Technologies' surf shop from an AI-driven cyber campaign before it reaches the inbox. Get hands on experience investigating complex attacks and radically simplifing your daily SOC operations using the Proofpoint Core Email Protection Gateway, culminating in a fast-paced capture-the-flag competition.

Operation Riptide: Eradicating Inbox Threats with API Defense

Join the IT team at 'Utah, Bodhi & Riptide, LLP' to eradicate advanced threats that have slipped past the perimeter and landed directly in the legal team's inboxes. You will learn how to deploy our API defense in minutes for instant protection, culminating in a fast-paced capture-the-flag challenge where you retract malicious emails before sensitive data is compromised.

Operation Break Point: Reducing Human Risk Across the Attack Lifecycle

In Operation Break Point, you'll investigate a coordinated attack against Tommy San Diego's surf company as the Undertow Collective exploits trusted suppliers, email, collaboration tools, and compromised identities to steal valuable intellectual property.

Spoof Safari: Hunt Down a Brand Impersonation Threat 

Organizations are vulnerable to brand impersonation through lookalike domains, spoofed email activity, and malicious infrastructure designed to deceive customers, suppliers, and employees. Security teams need to detect suspicious lookalikes, determine whether they are legitimate or malicious, prioritize findings, and act quickly before the threat causes harm. In this lab you will investigate a suspected brand impersonation threat from a Lookalike Domains notification and initiate a takedown request.

AI Email Safari: Securing Application-generated Email in the Wild

Your organization has recently deployed a new AI Agent to improve operational efficiency, but your team has discovered it is sending email through an open relay with limited security controls, raising potential concerns around message handling and data protection. This lab will guide you through using Secure Email Relay (and its optional DLP capabilities) to secure AI-generated emails.

01 04

Data Security Track

Explore how to safeguard sensitive data across cloud, email, and endpoints. Discover how to prevent data loss, detect insider threats, and ensure compliance in a rapidly evolving digital environment.

Transform Your DLP Program for the Age of AI

The Intelligence may be Artificial but the risk to the business is Real. See how the Proofpoint Data Protection suite can prevent the loss of valuable information while you investigate these incidents and detect risky behavior in a unified interface.

Discover, Classify, and Remediate your Data with DSPM and Data Access Governance 

Investigate a potential data exposure using Proofpoint DSPM. Discover externally shared sensitive data, assess risk with data risk map, investigate related assets, make remediation decisions with with data access governance, apply sensitivity labels, and stage a DLP policy to strengthen future data protection.

Modernizing Email Data Protection for the AI Era

Step into the world of Viva Collective as it works to protect confidential business initiatives from email data loss. Through realistic scenarios, you'll learn how Proofpoint Adaptive Email DLP identifies risky behavior and helps prevent sensitive data from leaving the organization.

From Suspicion to Evidence: A Digital Communications Investigation

Become the investigator in an immersive corporate espionage mystery. Follow the digital trail, uncover hidden connections across enterprise communications, and transform archived data into actionable intelligence. Your investigation could expose a scheme that threatens the financial future of millions of Americans. 

Inside the Insider: Investigating User Motive and Risk

At Pacific Crest Surfboards, a wave of corporate cost-cutting guts the Insider Risk team just as a small group of aggrieved employees quietly begins moving the company's most valuable IP out the door to a rival startup. It is up to you to spot the patterns and investigate what happened to help the legal team put the pieces back together to understand how this coordinated theft could have happened.

Avoid the “50-Year Storm” Wave by Securely Adopting AI

Professor PromptLeak is chasing the AI wave, but one wrong prompt could trigger a “50-Year Storm” of data exposure. Join Proofpoint’s Data Security AI Lab at Protect to see how secure AI adoption helps teams prevent wipeouts, govern sensitive data, and innovate with confidence.

01 04

AI Security Track

Discover how to enable secure AI adoption across your organization—gaining visibility into AI and agent activity, preventing unsanctioned use, and protecting sensitive data from exposure.

Proofpoint AI Security: No Unsanctioned AI, No Stolen Resin 

Professor PromptLeak is using unsanctioned AI to steal valuable IP. He thought he found the perfect break—until Proofpoint AI Security caught the wave. Get hands-on detecting risky AI use and protecting sensitive data.

AI Security Gateway: Enterprise Agentic Visibility And Enforcement 

Kai Delgado, a surfer admitted to Seabright Regional Hospital after a reef wipeout, has his shoulder dislocated and suffers a concussion. A misconfigured back-office agent exposes his PII, PHI, and payment data across the enterprise and feeds it into a public LLM. In this lab, you'll play the security analyst working to uncover the rogue agent and contain the breach.

01 04