ANY.RUN Cites G2 Fall 2026 Leader Status and Vendor-Reported SOC Efficiency Gains in German Manufacturer Case Study
ANY.RUN announced it was named Grid Leader and Momentum Leader in G2's Fall 2026 malware analysis rankings, and separately published a case study claiming a five-person SOC at an unnamed German manufacturer cut alert triage time using its cloud sandbox across…
ANY.RUN announced on 2026-09-10 that it was named both Grid Leader and Momentum Leader in G2's Fall 2026 malware analysis rankings, citing customer satisfaction and market momentum. The vendor states its Interactive Sandbox is used by over 700,000 security professionals and 16,000+ SOC and MSSP teams across Windows, Linux, macOS, and Android, and claims that 95% of SOCs report faster investigations with MTTR reductions of up to 21 minutes per case. Separately, on 2026-09-16, ANY.RUN published a case study in which a five-person security team at an unnamed German manufacturer replaced an air-gapped forensic laptop with its cloud-managed interactive sandbox, protecting roughly 10,000 endpoints and 10,000 users. The vendor claims a median 15 minutes saved per alert investigation, 20-40 daily tasks processed, a 2.5-minute alert-to-isolation target, and a 95% agreement rate between analyst and sandbox verdicts; the customer's identity was withheld and all outcomes are vendor-supplied. The case study also describes an interactive detonation of a multi-stage phishing chain — from a PDF link to a password-protected ZIP to malware execution — used as a training example. Note: the two '95%' figures refer to different claims (share of SOCs reporting faster investigations vs. analyst-sandbox verdict agreement rate).
- ANY.RUN named Grid Leader and Momentum Leader in G2's Fall 2026 malware analysis rankings (announced 2026-09-10).
- Vendor claims 700,000+ users and 16,000+ SOC and MSSP teams on its Interactive Sandbox, covering Windows, Linux, macOS, and Android.
- Vendor claims 95% of SOCs report faster investigations and MTTR reductions of up to 21 minutes per case.
- Case study (published 2026-09-16) covers a five-person SOC at an unnamed German manufacturer protecting roughly 10,000 endpoints and 10,000 users.
- Case study claims: median 15 minutes saved per alert investigation, 20-40 daily tasks processed, 2.5-minute alert-to-isolation target, and 95% agreement between analyst and sandbox verdicts.
- The case study team replaced an air-gapped forensic laptop with ANY.RUN's cloud-managed interactive sandbox.
- A multi-stage phishing chain (PDF link to password-protected ZIP to malware execution) was reproduced interactively as a training example.
- All figures in both reports are vendor-supplied; the German manufacturer's identity was withheld.
Coverage timelineoldest first · each row is one article
- · 6d agoANY.RUN Secures Leader Status in G2’s Malware Analysis Rankings
ANY.RUN· 15
ANY.RUN announced G2 Fall 2026 Grid Leader and Momentum Leader recognition in the malware analysis category, citing 700,000+ users.
- · 7h agoGerman Manufacturer Shrinks Security Alert Response While Protecting 10,000 Endpoints
Cyber Security News· 22
Vendor case study: a German manufacturer's five-person SOC cut alert triage time using ANY.RUN's cloud sandbox across 10,000 endpoints.