Polyswarm Logo

Polyswarm

0
Commercial
Visit Website

PolySwarm is a next-generation malware intelligence marketplace that provides early detection of threats, unique samples, higher accuracy, and unrivaled threat hunting capabilities. It aggregates threat detection engines from various contributors, including independent researchers and security teams, to cover protection gaps and better protect enterprises against new threats. The platform offers PolyScore threat scoring, which enables SOC automation, and allows users to try it out with a free sign-up. PolySwarm's robust network of threat detection engines delivers wide coverage against common threats, and its specialized engines detect emerging and rare threats that others may miss.

FEATURES

ALTERNATIVES

Converts OpenIOC v1.0 XML files into STIX Indicators, generating STIX v1.2 and CybOX v2.1 content.

Scan files or process memory for Cobalt Strike beacons and parse their configuration.

SecurityTrails API provides access to a vast repository of historical DNS lookups, WHOIS records, hostnames, and domains for cyber forensics and investigations.

Repository for detection content with various types of rules and payloads.

Cortex is a tool for analyzing observables at scale and automating threat intelligence, digital forensics, and incident response.

A free threat intelligence feed and banlist feed of known malicious IP addresses for public use only.

Open source web app for storing and searching Actor related data from users and public repositories.

A simple, self-contained modular host-based IOC scanner for incident responders.