Intezer Autonomous SOC
Intezer LabsReviews from AWS customer
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
193 reviews
from
External reviews are not included in the AWS star rating for the product.
Intezer Review
What do you like best about the product?
Great analyzing capabilities. Fast analysis of IOCs.
What do you dislike about the product?
The features for free useres are very limited
What problems is the product solving and how is that benefiting you?
It is very easy to analyse an IOC and get useful information with which we can act upon and react in case of a compromise.
Quick response is key
What do you like best about the product?
Automated alerts to get low response time. Perfect for integration with other systems and threat hunting software. Can easily be learned by others in your organization and will also be a part of the whole security solution in an effective SOC. Good and current updated databases that will make sure you cover most areas. Malware analysis tools like this is used to isolate and investigate malware as it is detected on a company’s IT resources, endpoints, and applications. This is key to be able to have a serious chance to respond in a quick and fast way. Not all other tools give the coverage needed as this tool does. Detecting malware and then moving infected resources to an isolated environment is key to be able to let the show go on for the normal business. With this and good support that will always help and with good response times help you when in need.
What do you dislike about the product?
Easy to rely on only automated tools cause they can't cover all possible threats. Can't ensure complete prevention against unknown attacks delivered via email attachments as an example. You still need other tools to complement. Also i feel the support for Microsoft related stack lack security capabilities that would need to get better.
What problems is the product solving and how is that benefiting you?
Cover most of the common threats that need a fast response. Easy to overlook large scale of threats in larger organizations with multiple systems and end user workstations.
Recommendations to others considering the product:
Automation is a key ingredient to focus more time on the actual business values.
Malware DNA is awesome!
What do you like best about the product?
I like the DNA view that shows the similarities to other malware samples and families. By providing this, Intezer makes it easier to profile similar attacks.
What do you dislike about the product?
Lack of free features, I wish there was a request limited free tier for small SOCs.
What problems is the product solving and how is that benefiting you?
Intezer solves intelligence questions about malware samples. It would benefit our team by making sandboxes in the cloud.
Intezer
What do you like best about the product?
Intezer analyzer can perform fast and successful analysis.
What do you dislike about the product?
I don't see a problem. Working properly.
What problems is the product solving and how is that benefiting you?
Intezer Analyze helps protect us by performing effective and robust malware analysis on files and URLs.
Intizer Analyze is amazing and really provide context in depth
What do you like best about the product?
Using the API eliminates a lot of analysis time
What do you dislike about the product?
At this stage, I am not sure but I would like to see a slight increase in the amount of file scan within the community edition.
What problems is the product solving and how is that benefiting you?
Mean time to Respond is decreased. The real benefits are with automation.
Quick automated dynamic malware analysis
What do you like best about the product?
I was analyzing a sample many virus databases did not have the hash of the specimen. Clearly, the specimen was bad. After uploading to Intezer, I found out that it was using a unique packer, it linked me to related samples and that the final result was that it was related to cobalt strike.
What do you dislike about the product?
There is not much to dislike for a product that can perform both static and dynamic analysis in addition to being able to link to other common malware similar to ssdeep.
What problems is the product solving and how is that benefiting you?
No problems only solutions Intezer provided.
My most detailed analysis tool. Check out dynamic scan and TTPs.
What do you like best about the product?
The breakdowns of each section are great. It isn't "yes this is clean" it is "because of this code string here it is clean". Click to go through the code in a clean, broken down way so you can UNDERSTAND the code.
What do you dislike about the product?
The dynamic scan doesn't have python installed on machine so it cannot always check that but then you have static scan for that purpose so it is a small problem in reality.
What problems is the product solving and how is that benefiting you?
Other tools such as Virtustotal only checking the hash and thinking it is clean because it hasn't been seen before is largely useless. Intezer is perfect for finding and dealing with new threats.
Recommendations to others considering the product:
Use the free trial and decide for yourself.
Awesome malware analysis tool
What do you like best about the product?
Fast and reliable app to determine if a file is malicious or not
What do you dislike about the product?
improve the size of the fonts, and colours of the gui, anything else is good
What problems is the product solving and how is that benefiting you?
as a SOC Analyst we use intezer analyze to determine if we got malicious files, quick and easy
Review by Rizwan Shaikh
What do you like best about the product?
One of the very best platforms out there for threat intelligence.
What do you dislike about the product?
integration with SIEM tools like QRadar.
What problems is the product solving and how is that benefiting you?
I use it to Analyze URL and files
Makes My work easy
What do you like best about the product?
Most of the time I reverse malware samples and It's hard to keep track of the functions that are unique to this malware where Intezer helps me to identify them not only by giving me the unique functions of that malware and also the similar functions that are used by other malware of the same family which gives me more insight on what kind of malware I am working on and how to correlate them.
What do you dislike about the product?
There is not a specific thing to me for disliking in Intezer I get what I needed from intezer, I yet to try out the threat hunting api provided by intezer which I think, it will be above my expectation.
What problems is the product solving and how is that benefiting you?
I use intezer for identifying the functions that are related to malware families out in the wild to write generic detection for the malware family and intezer makes that work easier and saves my precious time whereas manually reversing and keeping track of all the functions would take a lot of time.
showing 71 - 80