Friday, February 21, 2025
Homecyber securityVirusTotal Announced a New Feature Let Researchers To Create & Share IoCs

VirusTotal Announced a New Feature Let Researchers To Create & Share IoCs

Published on

SIEM as a Service

Follow Us on Google News

The VirusTotal has recently released a new feature, VirusTotal Collections, that will eventually fill the gap that generally occurred during investigations. However, as time passes, it becomes more difficult to report some new findings.

This new feature will solve the problem as the VirusTotal collection provides a live report which includes:- 

  • A title
  • A group of IoCs
  • An optional description 

Pure IoC Sheet

However, the collection provides all the latest information, and it is enhanced with VirusTotal analysis along with some aggregate tags. 

The most interesting part of this collection is that they are public through the UI and API of VirusToal, it can also be shared using their permalink.

While the community provides content, that includes comments, graphs, and collections that generally contribute to the Community section of the file, URL, domain, as well as IP address reports.

Here’s what the software engineer of VirusTotal, Juan Infantes stated:- 

“Collections are open to our VirusTotal Community (registered users) and they will be enhanced with VirusTotal analysis metadata providing the latest information we have for the IoCs, along with some aggregated tags.”

Not only that even the IoCs in a collection also includes the other raw details that are provided by the VirusTotal itself, and here they are mentioned below:-

  • Detection rate
  • The first and last time the artifact was seen
  • File size

Along with other data, this feature also provides the following information:-

  • Name of the registrar
  • Country
  • The autonomous system
  • The managing network operator

This new feature of VirusTotal enables the security researchers to easily and effectively collude with other experts with each key detail that is needed to mitigate any threat in a more efficient and easy way.

You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity, and hacking news updates.

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

SPAWNCHIMERA Malware Exploits Ivanti Buffer Overflow Vulnerability by Applying a Critical Fix

In a recent development, the SPAWNCHIMERA malware family has been identified exploiting the buffer...

Sitevision Auto-Generated Password Vulnerability Lets Hackers Steal Signing Key

A significant vulnerability in Sitevision CMS, versions 10.3.1 and earlier, has been identified, allowing...

NSA Allegedly Hacked Northwestern Polytechnical University, China Claims

Chinese cybersecurity entities have accused the U.S. National Security Agency (NSA) of orchestrating a...

ACRStealer Malware Abuses Google Docs as C2 to Steal Login Credentials

The ACRStealer malware, an infostealer disguised as illegal software such as cracks and keygens,...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

SPAWNCHIMERA Malware Exploits Ivanti Buffer Overflow Vulnerability by Applying a Critical Fix

In a recent development, the SPAWNCHIMERA malware family has been identified exploiting the buffer...

Sitevision Auto-Generated Password Vulnerability Lets Hackers Steal Signing Key

A significant vulnerability in Sitevision CMS, versions 10.3.1 and earlier, has been identified, allowing...

NSA Allegedly Hacked Northwestern Polytechnical University, China Claims

Chinese cybersecurity entities have accused the U.S. National Security Agency (NSA) of orchestrating a...