news

Swiss security technology company Threatray develops a deep code analysis based on artificial intelligence and machine learning

2024-07-22

한어Русский языкEnglishFrançaisIndonesianSanskrit日本語DeutschPortuguêsΕλληνικάespañolItalianoSuomalainenLatina

Text | Yiming Technology Titanium Media APP Note: Switzerland has ranked first in the Global Innovation Index for 12 consecutive years. It is an important source of innovation in the world and China's first strategic innovation partnership country. It has excellent complementarity with China in the fields of innovation development and science and technology finance. The "Swiss Innovation 100" hosted by Venturelab brings together the best "Swiss-made" start-ups and growth-stage technology innovation companies, and is the most internationally influential innovation ecosystem benchmark in Switzerland. Since 2011, the list has selected 100 most pioneering and market-promising Swiss innovative companies and 25 Swiss growth-stage companies with the most unicorn potential across Switzerland every year, covering life sciences, engineering machinery, robotics, information and communications, low-carbon technology, food technology and other fields. This year, 41 companies have been newly listed. In order to fully display and introduce Switzerland's most cutting-edge innovative technologies, Titanium Media APP and Venturelab's Chinese authorized partner Insight Tech have jointly launched the "Swiss Innovation 100" special topic to fully display the panoramic view of Switzerland's pioneering science and technology innovation ecosystem. This article is the 96th issue of the column, introducing Threatray, a company listed in the 2023 "Swiss Innovation 100" that is committed to developing malware detection and analysis tools.

Threatray, a Swiss security technology company founded in 2018, has developed a malware detection and analysis tool. Through the pioneering deep code analysis technology and code search engine driven by artificial intelligence and machine learning, it can detect, attribute and correlate malware at the code level, thereby improving the security level of enterprises in defending against malware.

Threatray is a spin-off company of the Bern University of Applied Sciences and was co-founded by Professor Endre Bangerter, a professor of cybersecurity at the Bern University of Applied Sciences with more than 20 years of experience in the field, and Jonas Wagner.


Image source: Threatray official website

In the information age, network security is an important issue that enterprises cannot ignore. Ransomware, phishing attacks, malware and other network attacks are diverse and increasingly complex. Existing defense tools, such as firewalls, security detection and defense systems, antivirus software, etc., have played a positive security defense effect, but because they do not yet have the ability to conduct in-depth analysis of network attacks, there are still problems such as difficulty in detecting attribution and preventing advanced network threats in advance.


Image source: Threatray official website

Threatray has developed a malware detection and analysis tool that uses the first-of-its-kind deep code analysis technology and code search engine driven by artificial intelligence and machine learning to detect, attribute and correlate malware at the code level, thereby improving the company's security level in defending against malware.

Threatray's core technologies include AI and machine learning models for binary code analysis, and a highly scalable malware code search engine. Through artificial intelligence and machine learning models, Threatray can analyze previously inaccessible binary code structures more deeply than any other product at an unprecedented speed and scale. Through the search engine, Threatray can match unknown samples with a database of more than 100 million malware binaries in seconds, find the relationship between current attacks and historical attacks, and reveal associations between malware that other technologies cannot currently discover. By quickly identifying malware and revealing similarities between current attacks and known threats, Threatray has achieved major innovations in malware identification, attribution, and intelligence analysis and correlation.

Based on this technology, Threatray launched two scenario applications: Binary Intelligence Platform and Binary Intelligence for Endpoint.

Binary Intelligence Platform focuses on AI detection and analysis of suspicious files and their binary codes, and for the first time releases the intelligence value of malware code. It uses a new threat reporting and early warning method, which links unknown samples with malware mentioned in OSINT (open source intelligence) reports, and can discover malware associations and variants with one click. Results can be obtained within seconds without creating Yara rules and extraction patterns, helping enterprises to more effectively warn against data leaks and protect file security.

Binary Intelligence for Endpoint focuses on detecting "fileless malware" attacks in memory. In the past, memory was a blind spot for malware detection, and advanced attackers could bypass detection and deploy fileless malware. Through endpoint protection, Threatray can scan process memory, identify suspicious loading code from fileless malware, and perform AI detection analysis and attribution on these codes. Threatray can scan an endpoint in a few minutes and quickly complete the detection of 1,000 endpoints. Threatray also stores and indexes each piece of analyzed code to help trace back past events and confirm whether there are previously undiscovered security vulnerabilities or attacks.

Threatray has established partnerships with a number of companies, including la Mobilière, Switzerland's oldest insurance provider, InfoGuard, Switzerland's leading cybersecurity solutions provider, and large companies such as Swiss Post.

In 2021, Threatray received a seed round of funding of CHF 2.3 million to further expand its team. Threatray hopes to use its code-based malware detection and analysis tools to help enterprises, network security teams and other organizations defend against increasingly complex global malware threats.


The Chinese version of the 2023 Swiss Innovation 100 is proudly released by Insight Tech. Insight Tech is the authorized Chinese partner of the Swiss Innovation 100, responsible for the operation and promotion of the Swiss Innovation 100 in China and assisting the list projects in commercial cooperation with China. As a Sino-European (Swiss) science and technology innovation investment and industrialization operator, Insight Tech provides investment and financing and business development services for the two-way cooperation between Swiss innovation and Chinese industry and conducts equity investment business. To obtain the complete list of the 2023 Swiss Innovation 100 and the industry list, please visit Insight Tech's official account or official website.