Matchboxmatchbox
← Back to match

CAPEv2

Open-source malware sandbox that detonates samples and auto-extracts unpacked payloads and configs.

PlatformWebfree

CAPE (Config And Payload Extraction) is an open-source malware sandbox, forked from Cuckoo Sandbox, that detonates suspicious files in an isolated environment and captures their behavior: created/modified files, network traffic, screenshots, memory dumps, and automatically unpacked and decrypted payloads. It adds YARA-driven automated unpacking, static and dynamic configuration extraction, and a programmable debugger, and is used by malware analysts either self-hosted or via a free hosted demo instance.

Categories
Security toolsMalware analysisSandboxing

Full match profile

Behind the summary, Matchbox keeps a richer profile of CAPEv2 - the signals our matcher actually reads to decide when to surface it. It stays private; claim the listing to see and control it.

  • Problem & pain-point mapping
  • Who we surface it to (audience fit)
  • What it's a strong alternative to
  • Trust & credibility signals

Try Matchbox with your own problem

Describe what is not working - we’ll show you whether CAPEv2 (or something else) actually fits.