logo

Assemblyline 101 - Open Source Malware Triage

ID: eaa0247f-0a1f-5690-8530-883ddb593c50

STIX ID: report--eaa0247f-0a1f-5690-8530-883ddb593c50

Feed Name: Pulsedive Blog

Threat Score
25/100

Date Published: 2025-01-07

Date Updated: 2026-04-28

Author: Pulsedive Threat Research

...
...

Assemblyline is an open-source malware triage and analysis platform; this report provides an overview of its services, Docker-based installation and deployment steps, and a maldoc analysis example showing remote template injection and extraction of IOCs. The guide demonstrates how Assemblyline aggregates results from multiple services to flag suspicious files, extract embedded files/URLs, and present heuristics and reputation-based indicators to speed analyst triage.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.