CISA released an automated malware and forensic analysis platform called Thorium, developed in collaboration with Sandia National Laboratories. Thorium allows integration of various analysis tools, aimed at supporting cyber defenders in evaluating threats and indexing forensic analyses. This platform is designed to assist government and critical infrastructure in defending against cyber threats. It reduces the burden on malware analysts who often manage extensive lists of malware, allowing them to conduct efficient and scalable analysis of threats and vulnerabilities in software.
The Thorium framework underscores CISA's focus and commitment to provide valuable services and resources at scale that help government and critical infrastructure protect against cyber threats and strengthen their cybersecurity.
By publicly sharing this platform, we empower the broader cybersecurity community to orchestrate the use of advanced tools for malware and forensic analysis.
Collection
[
|
...
]