Explore OpenCTI or OpenAEV product with 30 days Free Trial!
XTM Hub by Filigran
Sign Up
AssemblyLine logo

AssemblyLine

Supported by community
Detection & Response Enablement

Overview

Enriches StixFile and Artifact observables by submitting them to an AssemblyLine 4 instance for automated malware analysis, then imports verdicts, tags, and extracted IOCs back into OpenCTI.

Enrich OpenCTI Artifacts and StixFiles by submitting them to an AssemblyLine 4 deployment for sandbox analysis. AssemblyLine results are pushed back as a Malware-Analysis SDO, malicious indicators (domains, IPs, URLs), Malware SDOs for attributed families, MITRE ATT&CK Attack Patterns observed at runtime, a Note summarising the verdict, and an external reference to the AssemblyLine submission.

Basic information

AssemblyLine
Connectors
7.260527.0
1

    We use cookies to run XTM Hub. Necessary cookies are always on, optional cookies (functionality, analytics, marketing) are used with your consent. Accept all, reject all, or manage your choices anytime in "Cookie settings".