Joe Sandbox
自動配備
コミュニティの提供による
Detection & Response Enablement
概要
Joe Sandbox connector submits artifacts and URLs for deep malware analysis, returning multi-platform behavioral reports with MITRE ATT&CK mappings and network indicators.
Joe Sandbox is a deep malware analysis platform that performs dynamic and static analysis of malicious files and URLs. This connector submits artifacts and URLs to Joe Sandbox for analysis and enriches OpenCTI with the results.
Key features:
- Multi-platform analysis (Windows, Linux, macOS, Android)
- MITRE ATT&CK mapping
- Network indicator extraction
- Malware configuration extraction
- Yara rule matching
- Comprehensive report generation