Introducing G2.ai, the future of software buying.Try now
Share your insights with ANY.RUN Sandbox

Thousands of people like you come to G2 to find out whether solutions like ANY.RUN Sandbox are the right fit for them. Share your real experiences with ANY.RUN Sandbox and the G2 community and help someone make the right decision about their software.

ANY.RUN Sandbox Reviews & Product Details

ANY.RUN Sandbox Product Details

Claimed

ANY.RUN Sandbox Media

ANY.RUN Sandbox Demo - ANY.RUN malware sandbox
Analysis of all kinds of cyber threats in ANY.RUN
ANY.RUN Sandbox Demo - ANY.RUN virtual machine
Upload a file to monitor malicious behavior in real-time
ANY.RUN Sandbox Demo - Mitre ATT&CK Matrix in ANY.RUN
Investigate attacker’s TTPs
Play ANY.RUN Sandbox Video
Product Avatar Image

Have you used ANY.RUN Sandbox before?

Answer a few questions to help the ANY.RUN Sandbox community

126 ANY.RUN Sandbox Reviews

4.7 out of 5
The next elements are filters and will change the displayed results once they are selected.
Search reviews
Hide FiltersMore Filters
The next elements are filters and will change the displayed results once they are selected.
The next elements are filters and will change the displayed results once they are selected.
126 ANY.RUN Sandbox Reviews
4.7 out of 5
126 ANY.RUN Sandbox Reviews
4.7 out of 5
G2 reviews are authentic and verified.
JU
Security Analyst
Enterprise (> 1000 emp.)
"ANY.RUN Sandbox Experience"
What do you like best about ANY.RUN Sandbox?

The file and URL inspection capabilities are excellent. Being able to immediately interact with a potentially malicious file or URL right in the platform is very helpful, and the ability for the platform to provide immediate feedback of analysis helps us identify threats quicker and deploy mitigations faster. The ability to extract threat related IOCs and implement their detection in our environment helps us anticipate and block threats quicker, and provide greater insight into the exact malicious activities files and URLs perform so we can be better prepared to defend against them. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

Only downsides are the limitations imposed on the use of the free version of the platform. Limiting malicious file analysis to 90 seconds and malicious URL analysis to five minutes can hamper investigations depending upon how long it takes for webpages to load, or how long it takes for a file to execute. I do appreciate the ability to extend the analysis time for live file analysis, but this can only be performed a limited amount of times, and overall analysis of files and URLs is limited to a few times a day. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your detailed feedback! We're glad to hear that our platform supports your threat detection and mitigation efforts. To overcome the limitations of the free version, we invite you to explore our paid plans, which offer extended analysis time and greater flexibility. Your insights are greatly appreciated and help us continue improving ANY.RUN to better serve your needs.

MOHAMED B.
MB
SysAdmin
Mid-Market (51-1000 emp.)
"Powerful and Interactive Malware Analysis Tool"
What do you like best about ANY.RUN Sandbox?

ANY.RUN stands out because of its real-time interactivity and user-friendly interface. I really appreciate how I can manually interact with malware during execution, check registry and file changes live, and download artifacts for deeper analysis. The visualization tools like network traffic flow and MITRE ATT&CK mapping also save a lot of time during investigations. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

Some advanced features are restricted in the free version, which limits deeper analysis in some cases. Also, the sandbox sometimes takes a little while to queue during high usage periods. More OS variety (like Android or Linux) would also be helpful for broader testing. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your insights and experiences! We truly appreciate your feedback, as it helps us continuously improve ANY.RUN and make it even better for our users.

Great news—Android and Linux Ubuntu are already live! We invite you to give it a try. New platforms are already in our roadmap! Stay tuned for updates, and thank you for staying with us!

RR
IT Helpdesk Support
Mid-Market (51-1000 emp.)
"Interactive Analysis, Redefined"
What do you like best about ANY.RUN Sandbox?

What I like best about ANY.RUN is how interactive and intuitive it is. Unlike traditional sandboxes, it lets me actively explore and analyze malware behavior in real time. I can easily follow network connections, file changes, and process actions without digging through logs. The visual interface makes complex data much more accessible. It feels like having a hands-on lab, but in the cloud. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

One thing I dislike about ANY.RUN is the limitation on analysis time and features in the free version—it can feel restrictive during deeper investigations. Sometimes, more advanced malware evades detection or doesn’t fully execute in the sandbox environment. I’ve also noticed occasional delays when the system is under heavy load. While the UI is generally great, certain areas could benefit from more customization. Still, these are relatively minor compared to its overall strengths. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your insights and experiences! We truly appreciate your feedback, as it helps us continuously improve ANY.RUN and make it even better for our users.

Your thoughts and suggestions are invaluable to us - we take note of every detail and are always working on enhancements. Stay tuned for updates, and thank you for being a part of our community!

MM
Cybersecurity Researcher
Small-Business (50 or fewer emp.)
"Powerful and intuitive malware analysis platform for professionals"
What do you like best about ANY.RUN Sandbox?

The existent-clip synergistic analysis is perfectly game-modified. Can supervise malware conduct measure-by-measure, track web connection, register changes, and register system adjustment. The envision procedure tree and elaborated account make it easy to understand even complex menace. To appreciate the velocity and simpleness of the interface. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

Sometimes the free level have limitations with runtime or register size‚ and certain advanced malware circumvent analysis by find the sandbox. It would be great if more OS option or furtive environment were add in the hereafter. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your insights and experiences! We truly appreciate your feedback, as it helps us continuously improve ANY.RUN and make it even better for our users.

New platforms are already in our roadmap! Stay tuned for updates, and thank you for staying with us!

JH
Senior Cybersecurity engineer
Mid-Market (51-1000 emp.)
"A whole lab in the cloud and on the go"
What do you like best about ANY.RUN Sandbox?

I love the fact that within minutes of receiving an alert, we can send a sample to Any.Run, and begin analyzing it. The process is easy, and gives a wealth of information and saves us the hassle of running our own lab to do the same work but at 3x the cost and time. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

The only downsides are the lack of mobile sandboxing simulation for malware just used on phones and tablets. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your insights and experiences! We truly appreciate your feedback, as it helps us continuously improve ANY.RUN and make it even better for our users.

Your thoughts and suggestions are invaluable to us—we take note of every detail and are always working on enhancements. Stay tuned for updates, and thank you for being a part of our community!

CA
M.Computer Engineer
Enterprise (> 1000 emp.)
"A Must-Have for Real-Time Malware Analysis!"
What do you like best about ANY.RUN Sandbox?

ANY.RUN is an outstanding sandbox platform that brings together all the tools needed for effective malware analysis. Its real-time interactive analysis capability sets it apart from traditional static solutions, allowing you to observe malware behavior as it unfolds.

The user interface is clean and intuitive, and the detailed reports are extremely valuable for both technical and non-technical users. Features like MITRE ATT&CK mapping, IOC extraction, network traffic inspection, and interactive command-line access make deep analysis straightforward and efficient.

It’s a reliable solution for anyone looking to investigate suspicious files, gather threat intelligence, or validate IOCs. I use it regularly and highly recommend it to colleagues in the cybersecurity field. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

While ANY.RUN offers a convenient and interactive environment for malware analysis, there are several areas where the platform could be improved.

The biggest downside is the limited system configuration flexibility—users cannot easily simulate more diverse environments (e.g., different OS builds, regional settings, or enterprise-like setups). Additionally, for advanced users, some of the network analysis capabilities feel too basic, and deeper packet inspection options are missing unless you upgrade.

Another concern is the pricing model. The free version is very limited, and the paid tiers can be expensive for small teams or individual researchers.

Overall, ANY.RUN is useful for quick analyses and educational purposes, but for more advanced, in-depth investigations, other solutions may offer better customization and depth. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your insights and experiences! We truly appreciate your feedback, as it helps us continuously improve ANY.RUN and make it even better for our users.

New platforms are already in our roadmap! Stay tuned for updates, and thank you for staying with us!

Verified User in Retail
CR
Mid-Market (51-1000 emp.)
"ANY.RUN Makes Malware Analysis Fast and Interactive"
What do you like best about ANY.RUN Sandbox?

I really appreciate ANY.RUN’s interactive approach to sandboxing. Unlike traditional sandboxes that just give you static reports, ANY.RUN lets me actually interact with the environment in real time — clicking through windows, running commands, and observing live behavior. This makes it so much easier to track down malicious actions, registry changes, dropped files, and network connections. The intuitive visual process tree is also a huge plus for quickly understanding how malware executes. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

Overall, I’m very satisfied, but there are a few areas that could improve. Sometimes large or heavily obfuscated samples take longer to analyze, which slows down workflows. I’d also like to see deeper integrations with more threat intelligence feeds or automatic enrichment to speed up investigations even more. Lastly, while the UI is very user-friendly, advanced users might want even more granular control over the sandbox environment and simulation settings. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your insights and experiences! We truly appreciate your feedback, as it helps us continuously improve ANY.RUN and make it even better for our users. Stay tuned for updates, and thank you for staying with us!

Wally algenis G.
WG
Analista de ciberseguridad
Information Technology and Services
Small-Business (50 or fewer emp.)
"An essential tool for malware analysis"
What do you like best about ANY.RUN Sandbox?

I have used ANY.RUN for several months as part of my malware analysis and cybersecurity testing tasks. The interface is intuitive, highly interactive, and allows for real-time results with a great level of detail. What I value most is the ability to control the environment as if it were a real desktop, which makes it easier to track malware behaviors minute by minute.

Additionally, the active community and technical support of ANY.RUN make the experience even more reliable. It is an essential tool for researchers, security analysts, and incident response teams.

✅ Interactive

✅ Detailed reports

✅ Fast and easy to use Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

How efficient it is to analyze URL sha 255 and its potential threat analysis Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your insights and experiences! We truly appreciate your feedback, as it helps us continuously improve ANY.RUN and make it even better for our users.

Your thoughts are invaluable to us - we take note of every detail and are always working on enhancements. Stay tuned for updates, and thank you for being a part of our community!

Paul D.
PD
IT Manager & Offensive Security Pentester
Mid-Market (51-1000 emp.)
"Using ANY.RUN in a typical SMB workplace"
What do you like best about ANY.RUN Sandbox?

The ease to test unknown links and files that are received via emails is invaluable in maintaining the company security against malicous actors. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

The shear complexity is a bonus, but can also be confusing at times. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you so much for sharing your experience! We're thrilled to hear that ANY.RUN is helping you keep your organization secure by verifying suspicious files and links.

Your feedback truly means a lot to us—it helps guide our improvements and inspires us to keep delivering the best experience possible.

GS
Cybersecurity analyst
Enterprise (> 1000 emp.)
"It is a good sandbox but it can be improved"
What do you like best about ANY.RUN Sandbox?

The option that allows you to fully interact with the sandbox, both to see the processes outside the environment and connections is very efficient. Review collected by and hosted on G2.com.

What do you dislike about ANY.RUN Sandbox?

The problem is that sometimes it takes a long time to start the environment and sometimes it blocks some pages and does not allow to perform the corresponding tests. Review collected by and hosted on G2.com.

Response from Thomas Harris of ANY.RUN Sandbox

Thank you for sharing your insights and experiences! We truly appreciate your feedback, as it helps us continuously improve ANY.RUN and make it even better for our users.

Your thoughts and suggestions are invaluable to us - we take note of every detail and are always working on enhancements. Stay tuned for updates, and thank you for being a part of our community!

ANY.RUN Sandbox Comparisons
Product Avatar Image
Intezer
Compare Now
Product Avatar Image
VirusTotal
Compare Now
Product Avatar Image
Joe Sandbox
Compare Now
ANY.RUN Sandbox Features
Malware Detection
Malware Evaluation
Sandboxing
Threat Intelligence
AI Text Summarization
ANY.RUN Sandbox