Assemblyline 4 - Automated malware analysis framework
April 13, 2026 · View on GitHub
Assemblyline 4 - Automated malware analysis framework
AssemblyLine 4 is an open source malware analysis framework. It leverages Kubernetes and Docker to adapt to many use cases; from a small appliance for supporting manual malware analysis and security teams to large-scale enterprise security operations scanning millions of files a day and providing triage capabilities.
AssemblyLine can be easily integrated in your environment using its powerful rest API and web interfaces. The platform comes with dozens of services to provide deep file analysis and enable integration with other security platforms such as anti-virus, malware-detonation sandboxes and threat knowledge bases. Best of all, with a little bit of Python code you can extend it yourself by creating new analysis and integration services.
What is the purpose of this repo?
This is a repository containing development resources for the Assembyline project.
"A scalable file triage and malware analysis system integrating the cyber security community's best tools!"
Documentation: https://cybercentrecanada.github.io/assemblyline4_docs/
"Plateforme de tri de fichier et d'analyse de « malware » qui intègre les meilleurs outils de la communauté en cyber sécurité!"
Documentation: https://cybercentrecanada.github.io/assemblyline4_docs/fr/
Core Components
| Repository Name | Main Branch | Dev Branch | PyPI Release |
|---|---|---|---|
| Assemblyline Base |
|
|
|
| Assemblyline Core |
|
|
|
| Assemblyline Service Client |
|
|
|
| Assemblyline UI |
|
|
|
| Assemblyline UI Frontend |
|
|
N/A |
| Assemblyline Service Base |
|
|
|
Auxiliary Components
| Repository Name | PyPI Release |
|---|---|
| Assemblyline Client |
|
| Assemblyline Service Utilities |
|
| Assemblyline Incident Manager |
|
| Multidecoder |
|