Filigran and GLIMPS join forces to industrialize malware analysis in Threat Intelligence flows

A technology partnership that automates IOC enrichment and reduces investigation time by 83%. This alliance combines European expertise in open-source Threat Intelligence with next-generation AI-based malware analysis technology.

Paris, September 30, 2025 – Filigran, the European cybertech company specializing in open-source cybersecurity solutions, and GLIMPS, the French expert in AI-powered file analysis, announce their strategic partnership. This collaboration aims to industrialize Threat Intelligence flows by directly integrating GLIMPS’ malware analysis capabilities into Filigran’s OpenCTI platform.

A partnership born from field needs

This partnership originated from GLIMPS’ daily use of OpenCTI. Comprised of former SOC/CERT analysts, the GLIMPS team has relied on OpenCTI for years as the backbone of its threat intelligence workflows.

“This partnership with GLIMPS perfectly illustrates the ecosystem we are building around OpenCTI,” said Samuel Hassine, CEO and co-founder of Filigran. “Seeing malware analysis specialists develop native connectors to automatically enrich our CTI flows validates our open-source approach and our ability to meet analysts’ most specific needs.”

“As a former CTI analyst, I know how time-consuming it can be to correlate alerts, qualify IoCs, and produce actionable reports—all under tight deadlines and pressure,” explained Jordan, VP Product Engineering NA at GLIMPS. “That’s exactly what we wanted to automate with these connectors. Intelligence is only useful if it can be acted upon at the right time—not afterward.”

A revolutionary analysis technology

With more than 10 years of expertise in AI and reverse engineering, GLIMPS has developed a proprietary technology called Code Conceptualization. This scientifically recognized approach stands out from traditional detection techniques by focusing on code analysis rather than signatures. Its deep learning-based AI engine detects any type of malware in any type of file through code comparison.

Based in Rennes at Cyber Place, GLIMPS has also had a Canadian subsidiary since 2023 and opened offices in New York in 2025, reflecting its international expansion.

An innovative bidirectional integration

The alliance materializes in the development of two open-source connectors that create a bidirectional flow between OpenCTI and GLIMPS Malware:

  • The enrichment connector automates the analysis of artifacts within OpenCTI in real time via the GLIMPS Malware Detect API, directly enriching STIX objects with verdicts, scores, and detailed context.
  • The alerting connector automatically formats each GLIMPS detection into a STIX object and pushes it into OpenCTI, notifying SOC/CERT teams in under 2 seconds.

Measurable operational benefits

This integration delivers significant productivity gains for cybersecurity teams:

  • 83% reduction in investigation time through automated analysis tasks.
  • $20,000 CAD in annual savings per analyst by eliminating manual tasks.
  • No context switching: analysts remain in their OpenCTI interface.
  • Reduced MTTR: detections generate actionable STIX objects in 2 seconds.
  • Fewer false positives thanks to multi-engine correlation.

Focus on critical sectors

The partnership specifically targets sectors with the highest security demands, where speed and precision of analysis are crucial: defense, aerospace, financial services, insurance, and the public sector.

The approach stands out for being transparent and open: all data exchanges use the STIX standard, and the connectors are open source, allowing the community to audit, fork, or extend them as needed.

The teams are currently working on expanding integration capabilities and developing new automation features to meet the evolving needs of CTI analysts.

About GLIMPS

Founded in November 2019, GLIMPS is the French specialist in in-depth file analysis, with the goal of detecting and characterizing the most sophisticated threats in just seconds. Its AI and Deep Learning experts develop innovative solutions designed to strengthen enterprise security while improving operational efficiency. Based in Rennes, the company also has a Canadian subsidiary and offices in New York.
Learn more: Website BlogLinkedIn

About Filigran

Founded in October 2022, Filigran stands out in the cybertech ecosystem through its commitment to revolutionizing threat intelligence and its application within cybersecurity teams. Its mission is to design innovative open-source solutions specifically built to address the complex challenges organizations face in anticipating cyber risks and threats. Filigran solutions are used by more than 6,000 public and private organizations worldwide.
Learn more: Website – Blog – LinkedIn – X/Twitter

Press Contacts – Filigran / Rumeur Publique
Cédric Buisson | +33 6 60 92 19 76
Sophie Braquenié | +33 6 72 16 68 29
filigran@rumeurpublique.fr

Stay up to date with everything at Filigran

Sign up for our newsletter and get bi-monthly updates of Filigran major events: product updates, upcoming events, latest content and more.