Service

Sandbox Scryer

Readiness Level
Foundational

CISA does not endorse any commercial product or service. CISA does not attest to the suitability or effectiveness of these services and resources for any particular use case. Any reference to specific commercial products, processes, or services by service mark, trademark, manufacturer, or otherwise, does not constitute or imply their endorsement, recommendation, or favoring by CISA.

Description

Leverages the MITRE-ATT&CK Framework: An open-source tool for producing threat hunting and intelligence data from public sandbox detonation output. This tool can organize and prioritize findings, assisting in assembling IOCs, understanding attack movement, and hunting threats.

Learn about CISA’s CPGs