Announcing Our Partnership with Threatray: Enhancing Detection Capabilities Together

by Jul 7, 2025

We are excited to announce a strategic partnership between Nextron Systems and Threatray AG. This collaboration aims to significantly enhance our existing threat detection capabilities and further improve the precision and sensitivity of our detection signatures. Nextron will leverage Threatray’s advanced Binary Intelligence Platform to refine and extend our detection rules, benefiting both our THOR and Valhalla customers, while Threatray will enhance its own platform by integrating detection matches provided by Nextron’s THOR Thunderstorm.

At Nextron, our approach differs fundamentally from traditional antivirus solutions. Rather than actively removing or quarantining files, we provide forensic analysts with detailed insights into suspicious or malicious activities. Our detection rules are intentionally more sensitive, identifying generic suspicious characteristics – such as obfuscated scripts or anomalous file behaviors – that require further analyst review. This sensitivity allows analysts to detect threats even when traditional antivirus software remains silent.

Threatray complements our approach by specializing in deep code analysis of executable binaries, identifying unique characteristics in malware families and emerging variants through sophisticated binary analysis.

Through this partnership, samples analyzed within Threatray’s Binary Intelligence Platform will be enriched with match results generated by Nextron’s detection rules. This collaboration significantly improves Threatray’s analytical depth, providing their customers with enhanced threat intelligence.

Meanwhile, Nextron’s analysts gain direct access to Threatray’s powerful Binary Intelligence Platform, enabling deeper insights into malware code and capabilities. This integration supports the continuous refinement and enhancement of Nextron’s detection capabilities, ensuring high sensitivity while maintaining manageable false positives.

Both Nextron and Threatray have built reputations for identifying threats that typically evade traditional detection mechanisms. By uniting our strengths, we reinforce our commitment to offering powerful, precise, and actionable threat detection solutions that help security teams uncover threats that others may overlook.

We look forward to the innovation this partnership will bring and remain committed to delivering exceptional threat detection solutions.

Stay tuned for further updates as our collaboration progresses!

About the author:

Avatar photo

Florian Roth

Florian Roth serves as the Head of Research and Development at Nextron Systems. With a background in IT security since 2000, he has delved deep into nation-state cyber attacks since 2012. Florian has developed the THOR Scanner and actively engages with the community via his Twitter handle @cyb3rops. He has contributed to open-source projects, including 'Sigma', a generic SIEM rule format, and 'LOKI', an open-source scanner. Additionally, he has shared valuable resources like a mapping of APT groups and operations and an Antivirus Event Analysis Cheat Sheet.

Subscribe to our Newsletter

Monthly news, tips and insights.

Follow Us

Upgrade Your Cyber Defense with THOR

Detect hacker activity with the advanced APT scanner THOR. Utilize signature-based detection, YARA rules, anomaly detection, and fileless attack analysis to identify and respond to sophisticated intrusions.