Friday, April 4, 2025
Homecyber securityVirusTotal Announced a New Feature Let Researchers To Create & Share IoCs

VirusTotal Announced a New Feature Let Researchers To Create & Share IoCs

Published on

SIEM as a Service

Follow Us on Google News

The VirusTotal has recently released a new feature, VirusTotal Collections, that will eventually fill the gap that generally occurred during investigations. However, as time passes, it becomes more difficult to report some new findings.

This new feature will solve the problem as the VirusTotal collection provides a live report which includes:- 

  • A title
  • A group of IoCs
  • An optional description 

Pure IoC Sheet

However, the collection provides all the latest information, and it is enhanced with VirusTotal analysis along with some aggregate tags. 

The most interesting part of this collection is that they are public through the UI and API of VirusToal, it can also be shared using their permalink.

While the community provides content, that includes comments, graphs, and collections that generally contribute to the Community section of the file, URL, domain, as well as IP address reports.

Here’s what the software engineer of VirusTotal, Juan Infantes stated:- 

“Collections are open to our VirusTotal Community (registered users) and they will be enhanced with VirusTotal analysis metadata providing the latest information we have for the IoCs, along with some aggregated tags.”

Not only that even the IoCs in a collection also includes the other raw details that are provided by the VirusTotal itself, and here they are mentioned below:-

  • Detection rate
  • The first and last time the artifact was seen
  • File size

Along with other data, this feature also provides the following information:-

  • Name of the registrar
  • Country
  • The autonomous system
  • The managing network operator

This new feature of VirusTotal enables the security researchers to easily and effectively collude with other experts with each key detail that is needed to mitigate any threat in a more efficient and easy way.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity, and hacking news updates.

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Australian Pension Funds Hacked: Members Face Financial Losses

Several of Australia’s largest superannuation funds have been targeted in a coordinated cyberattack, leading...

Frida Penetration Testing Toolkit Updated with Advanced Threat Monitoring APIs

In a significant update to the popular dynamic instrumentation toolkit Frida, developers have introduced...

OpenVPN Flaw Allows Attackers Crash Servers and Run Remote Code

OpenVPN, a widely-used open-source virtual private network (VPN) software, has recently patched a security...

Apache Traffic Server Flaw Allows Request Smuggling Attacks

A critical vulnerability has been discovered in Apache Traffic Server (ATS), an open-source caching...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

New Phishing Campaign Targets Investors to Steal Login Credentials

Symantec has recently identified a sophisticated phishing campaign targeting users of Monex Securities (マネックス証券),...

UAC-0219 Hackers Leverage WRECKSTEEL PowerShell Stealer to Extract Data from Computers

In a concerning development, CERT-UA, Ukraine's Computer Emergency Response Team, has reported a series...

Hunters International Linked to Hive Ransomware in Attacks on Windows, Linux, and ESXi Systems

Hunters International, a ransomware group suspected to be a rebrand of the infamous Hive...