Interactive Sandbox
ANY.RUN Interactive Sandbox for Cortex XSOAR
Automate malware and phishing analysis in Cortex XSOAR to reduce manual triage and accelerate incident investigation.

Automate file and URL detonation with Cortex XSOAR playbooks, including private Sandbox sessions for sensitive submissions.
Automatically enrich incidents with sandbox verdicts, risk scores, and behavioral context.
Extract indicators of compromise and sync them with Sentinel Threat Intelligence.
Prioritize and classify incidents based on risk and observed behavior.
Investigate more threats with less manual work and make faster, evidence-based decisions.
Use cases
Requirements
ANY.RUN Sandbox plan with API access


