A technology partnership that automates IOC enrichment and reduces investigation time by 83%. This alliance combines European expertise in open-source Threat Intelligence with next-generation AI-based malware analysis technology.

Paris, September 30, 2025 – Filigran, the European cybertech company specializing in open-source cybersecurity solutions, and GLIMPS, the French expert in AI-powered file analysis, announce their strategic partnership. This collaboration aims to industrialize Threat Intelligence flows by directly integrating GLIMPS’ malware analysis capabilities into Filigran’s OpenCTI platform.
A partnership born from field needs
This partnership originated from GLIMPS’ daily use of OpenCTI. Comprised of former SOC/CERT analysts, the GLIMPS team has relied on OpenCTI for years as the backbone of its threat intelligence workflows.
“This partnership with GLIMPS perfectly illustrates the ecosystem we are building around OpenCTI,” said Samuel Hassine, CEO and co-founder of Filigran. “Seeing malware analysis specialists develop native connectors to automatically enrich our CTI flows validates our open-source approach and our ability to meet analysts’ most specific needs.”
“As a former CTI analyst, I know how time-consuming it can be to correlate alerts, qualify IoCs, and produce actionable reports—all under tight deadlines and pressure,” explained Jordan, VP Product Engineering NA at GLIMPS. “That’s exactly what we wanted to automate with these connectors. Intelligence is only useful if it can be acted upon at the right time—not afterward.”
A revolutionary analysis technology
With more than 10 years of expertise in AI and reverse engineering, GLIMPS has developed a proprietary technology called Code Conceptualization. This scientifically recognized approach stands out from traditional detection techniques by focusing on code analysis rather than signatures. Its deep learning-based AI engine detects any type of malware in any type of file through code comparison.
Based in Rennes at Cyber Place, GLIMPS has also had a Canadian subsidiary since 2023 and opened offices in New York in 2025, reflecting its international expansion.
An innovative bidirectional integration
The alliance materializes in the development of two open-source connectors that create a bidirectional flow between OpenCTI and GLIMPS Malware:
- The enrichment connector automates the analysis of artifacts within OpenCTI in real time via the GLIMPS Malware Detect API, directly enriching STIX objects with verdicts, scores, and detailed context.
- The alerting connector automatically formats each GLIMPS detection into a STIX object and pushes it into OpenCTI, notifying SOC/CERT teams in under 2 seconds.
Measurable operational benefits
This integration delivers significant productivity gains for cybersecurity teams:
- 83% reduction in investigation time through automated analysis tasks.
- $20,000 CAD in annual savings per analyst by eliminating manual tasks.
- No context switching: analysts remain in their OpenCTI interface.
- Reduced MTTR: detections generate actionable STIX objects in 2 seconds.
- Fewer false positives thanks to multi-engine correlation.
Focus on critical sectors
The partnership specifically targets sectors with the highest security demands, where speed and precision of analysis are crucial: defense, aerospace, financial services, insurance, and the public sector.
The approach stands out for being transparent and open: all data exchanges use the STIX standard, and the connectors are open source, allowing the community to audit, fork, or extend them as needed.
The teams are currently working on expanding integration capabilities and developing new automation features to meet the evolving needs of CTI analysts.
About GLIMPS
Founded in November 2019, GLIMPS is the French specialist in in-depth file analysis, with the goal of detecting and characterizing the most sophisticated threats in just seconds. Its AI and Deep Learning experts develop innovative solutions designed to strengthen enterprise security while improving operational efficiency. Based in Rennes, the company also has a Canadian subsidiary and offices in New York.
Learn more: Website – Blog – LinkedIn
About Filigran
Founded in October 2022, Filigran stands out in the cybertech ecosystem through its commitment to revolutionizing threat intelligence and its application within cybersecurity teams. Its mission is to design innovative open-source solutions specifically built to address the complex challenges organizations face in anticipating cyber risks and threats. Filigran solutions are used by more than 6,000 public and private organizations worldwide.
Learn more: Website – Blog – LinkedIn – X/Twitter
Press Contacts – Filigran / Rumeur Publique
Cédric Buisson | +33 6 60 92 19 76
Sophie Braquenié | +33 6 72 16 68 29
filigran@rumeurpublique.fr
Discover other press release
Filigran Report: Organizations Can See Their Threats but Can’t Act Fast Enough—84% Say Cyberattacks Exploit Known but Unprioritized Risks
Filigran, the European open-source threat management company, today released The State of Threat Management Report, a global study of 550 security decision-makers and practitioners conducted by independent research firm Vanson Bourne.
AI-Powered Attacks Become Top Concern for Security Professionals, New Filigran Survey Reveals
AI-powered attacks have emerged as the biggest cybersecurity concern among security professionals, according to new research conducted by Filigran during Infosecurity Europe 2026.
Filigran Launches XTM One, an AI-Native Platform for Automating Continuous Threat Exposure Management
Filigran, the European open-source threat management company, today announced XTM One, an AI-native agentic layer that automates Continuous Threat Exposure Management (CTEM) workflows across the Filigran XTM Platform.