MCP Integrations: Connecting AI Assistant to MCP Integrations
Written by detections.ai · Organizer

Take threat intelligence from report to verification without leaving the detections.ai AI Assistant.
This walkthrough shows how MCP support connects the enterprise AI Assistant to tools like VirusTotal. Select a report from Intel Exchange, ask AI Assistant to extract and verify its file hashes, and receive consolidated VirusTotal results with prompts for further action.
Before running the workflow, VirusTotal must be configured and enabled as an MCP connection in AI Assistant.
Use the detections.ai AI Assistant with a configured MCP connection to validate indicators through external security tools such as VirusTotal.
Set it up by:
- Open AI Assistant Settings > MCP Connectors and configure VirusTotal.
- Add your VirusTotal API key, enable the connection, and confirm the required tools are available.
- Open AI Assistant and select an Intel Exchange report as your source.
- Ask AI Assistant to extract the file hashes from the report and verify them with VirusTotal.
- Submit the request. AI Assistant will review the report and its sources, extract the hashes, and query VirusTotal.
- Review the consolidated verification results and supporting context.
- Use the suggested follow-up prompts to continue working with the findings inside or outside detections.ai.
This workflow uses the enterprise version of AI Assistant and requires VirusTotal to be configured as an MCP connection before submitting the request.


