Explore the full potential of OpenCTI Enterprise Edition, start your 30 days free trial.Learn more
XTM Hub by FiligranSign In
Hybrid Analysis Sandbox logo

Hybrid Analysis Sandbox

Verified
Malware Analysis
Sandbox
Enrichment & Analysis

Overview

The OpenCTI Hybrid Analysis enrichment connector allows automatic enrichment of StixFile, Artifact, URL, Domain, and Hostname observables by submitting them for sandbox analysis. It enriches observables with associated MITRE ATT&CK techniques, extrac

The OpenCTI Hybrid Analysis enrichment connector allows automatic enrichment of StixFile, Artifact, URL, Domain, and Hostname observables by submitting them for sandbox analysis. It enriches observables with associated MITRE ATT&CK techniques, extracts contacted domain names and IP addresses, identifies dropped files during detonation, and assigns maliciousness scores. The connector automatically creates relationships between observables and discovered indicators, enhancing threat intelligence with behavioral analysis results and attack patterns mapped to the MITRE framework.

Basic information

Hybrid Analysis Sandbox
Internal enrichment
6.8.13
0
    Hybrid Analysis Sandbox | OpenCTI Integrations Library | XTM Hub by Filigran