Explore OpenCTI or OpenAEV platform with 30 days Free Trial!
XTM Hub by FiligranSign In
PolySwarm Scan & Sandbox logo

PolySwarm Scan & Sandbox

Automatic deploy
Verified
Enrichment & Analysis
Malware Analysis And Sandbox

Overview

Enrich file artifacts with PolySwarm multi-engine scanning and CAPE/Triage sandbox analysis.

Submits Artifact observables to PolySwarm for multi-engine scanning and sandbox analysis (CAPE, Triage, or both). Creates STIX Notes with scan verdicts, sandbox behavioral reports, LLM threat summaries, and network IOCs. Optionally enriches with malware family profiles (threat actors, CVEs, ATT&CK patterns) via polykg. Attaches JSON, PDF, and LLM reports as files to the observable.

Basic information

PolySwarm Scan & Sandbox
Vendor Contact
Connectors
Internal enrichment
7.260527.0
0

    We use cookies to make the XTM Hub work, understand how it's used, and improve your experience. Strictly necessary cookies are always on. With your consent, we also use optional cookies for functionality, performance and analytics, and marketing. You can accept all, reject all, or choose which optional cookies to allow. You can change your preferences at any time via "Cookie settings". See our Cookie Policy for more information.