Anomali Copilot Suite Overview

Note: Your organization must have an active Anomali Copilot suite subscription to use Anomali Copilot-powered features and products. Contact your Anomali account Sales representative for details.

The Anomali Copilot suite of generative AI solutions is designed to revolutionize the way Security Operations Centers detect, investigate, and respond to incidents and alerts. It leverages the industry’s largest threat repository (ThreatStream) and is built on a secure and private foundation of AI models.

The Anomali Copilot suite includes the following capabilities: 

  • Threat Detection and Analysis

    By harnessing the power of generative AI, Anomali Copilot can analyze threats detected in Threat Bulletins, HTML pages, articles, and tables.

  • Import into ThreatStream

    Anomali Copilot provides a set of analyst tools allowing you to import detected threat intelligence into ThreatStream and create Threat Bulletins or investigations.

  • Summarization

    Anomali Copilot can distill complex information into concise and actionable intelligence which saves you time and prevents information overload.

  • Natural Language with AQL

    Anomali Copilot can translate your search queries into Anomali Query Language (AQL) enabling you to generate dashboards and alerts in seconds.

  • Seamless Chat Experience

    Anomali Copilot allows you to use natural language processing to interact with your threat intelligence, providing answers backed by verified sources and searches.

  • Custom Data Analysis

    By employing the Anomali Custom Copilot feature, you can summarize and analyze custom data.

  • RSS Feeds

    Anomali Copilot-powered RSS feeds enable you to produce summaries of open-source threat intelligence news, research, and advisory RSS feeds and enrich ThreatStream content with key takeaways, relevant tagging taxonomy tags, and associations.

To learn more about Anomali Copilot features available with ThreatStream, refer to the following topics: 

Anomali Copilot Chat

Anomali Custom Copilot

Using Copilot Asset Analyzer

Managing Anomali Copilot RSS Feeds

Summarizing Threat Model Entities with Anomali Copilot

Using Anomali Copilot in ThreatStream

You can also install the Anomali Copilot browser extension and Anomali Copilot 365 add-ins to leverage Anomali Copilot threat detection capabilities outside of ThreatStream. Refer to the Downloads page in ThreatStream for installation packages and documentation.