Skip to content
cyber-triage-logo
Primary Menu
Platform
Workflow
Benefits
Why Cyber Triage
Cyber Triage for Teams
Cyber Triage for Enterprise
Key Features
Compare Versions
Automated Ingest
Guided Analysis
Malware Detection
How Cyber Triage Uses AI
EDR
EDR + Cyber Triage
EDR Evasion 101
Integrations
EDR Powershell Script
Integrated Capabilities
Malware Scanner for Autopsy
Use Cases
SOC Endpoint Investigation
Consultants
SOC DFIR Teams
Law Enforcement - Intrusions
Law Enforcement - ICAC (Trojan Defense)
Pricing
Buy Cyber Triage
Buy Malware Scanning Boosts
Buy Autopsy Malware Scanner Module
Buy Rapid Endpoint Triage Service
Resources
DFIR Education
Blog
Training
Webinars
Product Videos
Intro to DFIR Blog Series
Case Studies
How to Bridge the EDR/Forensics Gap
How to Scale IR Collaboration
How to Escalate to IR with Confidence
How to Speed Up Client Investigations
Recent Releases
3.18 (More MCP & Cloud Functions)
3.17 (MCP & GenAI)
3.16 (Enterprise Tier)
3.15 (Defender Telemetry, Access Control, IRIS)
About
About
Team
Contact
Start Free Trial
Cyber Triage
Integrations
Available with Team Edition
Request Demo
Autopsy
Open source digital forensics
Claude Desktop/Code
Desktop AI tools
CrowdStrike Falcon
Endpoint detection and response
IBM QRadar SIEM
Rapidly detect advanced security threats in your network with real-time analytics
IBM QRadar SOAR
Fast, laser-focused incident response with security orchestration and automation
IRIS
Collaborative incident response platform
KAPE
Artifact parser and extractor
Microsoft Defender for Endpoint
Endpoint detection and response
Palo Alto Cortex XSOAR
Comprehensive security operations platform
Polyswarm
Decentralized threat intelligence market powered by the blockchain technology
Recorded Future Triage
Sandboxing suspicious files for behavioral analysis
ReversingLabs
Expose unknown malware through enterprise-class file intelligence and visibility
SentinelOne Singularity
Enterprise EDR that places an agent on hosts for continuous monitoring
Splunk SIEM
SIEM that can be used to generate and triage alerts
Splunk SOAR
Orchestration platform that can be used to automate incident response workflows
Sumo Logic
Real-time SaaS platform to operate and secure your applications at cloud scale.
Swimlane
Enterprise security automation and orchestration platform
The Sleuth Kit
Open source disk forensics tool
Velociraptor
Digital forensic and incident response tool
Volatility
Open source memory forensics tool
Yara
Malware research and detection tool