It'd be nice to have an integration with the VT hunting API as source feed.
The integration would download the matched binaries/files and then ingest them as input like anything else and apply all the other magical AIL features such as pattern matching and so on.
@Terrtia
I second that very warmly. Would be a great addition. Think of all the accidentally leaked (by hand or security solution) documents and emails.
It'd be nice to have an integration with the VT hunting API as source feed. The integration would download the matched binaries/files and then ingest them as input like anything else and apply all the other magical AIL features such as pattern matching and so on.