PolySwarm is a next-generation malware intelligence marketplace that provides early detection of threats, unique samples, higher accuracy, and unrivaled threat hunting capabilities. It aggregates threat detection engines from various contributors, including independent researchers and security teams, to cover protection gaps and better protect enterprises against new threats. The platform offers PolyScore threat scoring, which enables SOC automation, and allows users to try it out with a free sign-up. PolySwarm's robust network of threat detection engines delivers wide coverage against common threats, and its specialized engines detect emerging and rare threats that others may miss.
FEATURES
ALTERNATIVES
A community-driven project sharing detection logic, adversary tradecraft, and resources to make detection development more efficient, following MITRE ATT&CK structure.
A collection of public YARA signatures for various malware families.
A library of adversary emulation plans to evaluate defensive capabilities against real-world threats.
Powershell Threat Hunting Module for scanning remote endpoints and collecting comprehensive information.
A community-driven public malware repository providing access to malware samples, tools, and resources for the cybersecurity community.
Tool for visualizing correspondences between YARA ruleset and samples
PINNED

InfoSecHired
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.

Mandos Brief Newsletter
A weekly newsletter providing cybersecurity leadership insights, industry updates, and strategic guidance for security professionals advancing to management positions.

CTIChef.com Detection Feeds
A tiered cyber threat intelligence service providing detection rules from public repositories with varying levels of analysis, processing, and guidance for security teams.

ImmuniWeb® Discovery
ImmuniWeb Discovery is an attack surface management platform that continuously monitors an organization's external digital assets for security vulnerabilities, misconfigurations, and threats across domains, applications, cloud resources, and the dark web.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.