Black Hat USA 2026 · PolySwarm is co-hosting the poker night · Claim a Seat →

Product Updates

What's New at PolySwarm

New capabilities, faster tooling, and platform updates shipping to customers now.

Latest releases

Container & package scanning, now in research preview

Scan container images and open-source packages for malware and supply-chain risk before they ship, with one clear go/no-go score. Now in research preview, request access.

Explore container scanning

AI-generated threat summaries

Every scan now includes a plain-language summary of findings — malware family, behavior signals, and risk level — without any extra steps.

Open the portal

Known Good Binaries

Mark trusted binaries as known-good so your scan workflow skips the noise and focuses on what actually needs investigation.

Read the docs

API & CLI 4.0

Run scans concurrently for faster high-volume processing. The async-native SDK on a unified transport is live on PyPI today.

Read the docs

Unified scan and sandbox results

Scan, sandbox detonation, and artifact details are now in one view with persistent links, extracted malware configs, dropped-file downloads, and sandbox video playback.

Open the portal

URL and IP analysis

Submit URLs and IPs for enrichment alongside file scans. The portal runs network analysis and surfaces threat intel tags and IOC context in your results.

Open the portal

Threat intel tags in scan results

Scan results now surface malware family, campaign, and threat actor associations from sample metadata, right where you need them.

Open the portal

Notification webhooks

Configure webhooks to receive real-time notifications on scan completions and hunt matches, so your workflows trigger on events instead of polling.

Read the docs

See it for yourself

Start scanning in minutes, or talk to our team about where PolySwarm fits in your stack.