Interactive Sandbox
ANY.RUN Interactive Sandbox connector for OpenCTI
Automate analysis of suspicious files and URLs to quickly determine their threat level, uncover attacker TTPs, and extract actionable IOCs.

Send files or URLs for automated sandbox analysis directly from OpenCTI.
Leverage Automated Interactivity to move seamlessly from automated detonation to interactive investigation.
Enrich observables with behavioral context, malware families, MITRE ATT&CK techniques, and threat scores.
Extract actionable IOCs, network artifacts, and other indicators for further investigation.
Use cases
Requirements
ANY.RUN Sandbox plan with API access


