Saturday, December 28, 2024
Homecyber securityVirusTotal Announced a New Feature Let Researchers To Create & Share IoCs

VirusTotal Announced a New Feature Let Researchers To Create & Share IoCs

Published on

SIEM as a Service

The VirusTotal has recently released a new feature, VirusTotal Collections, that will eventually fill the gap that generally occurred during investigations. However, as time passes, it becomes more difficult to report some new findings.

This new feature will solve the problem as the VirusTotal collection provides a live report which includes:- 

  • A title
  • A group of IoCs
  • An optional description 

Pure IoC Sheet

However, the collection provides all the latest information, and it is enhanced with VirusTotal analysis along with some aggregate tags. 

- Advertisement - SIEM as a Service

The most interesting part of this collection is that they are public through the UI and API of VirusToal, it can also be shared using their permalink.

While the community provides content, that includes comments, graphs, and collections that generally contribute to the Community section of the file, URL, domain, as well as IP address reports.

Here’s what the software engineer of VirusTotal, Juan Infantes stated:- 

“Collections are open to our VirusTotal Community (registered users) and they will be enhanced with VirusTotal analysis metadata providing the latest information we have for the IoCs, along with some aggregated tags.”

Not only that even the IoCs in a collection also includes the other raw details that are provided by the VirusTotal itself, and here they are mentioned below:-

  • Detection rate
  • The first and last time the artifact was seen
  • File size

Along with other data, this feature also provides the following information:-

  • Name of the registrar
  • Country
  • The autonomous system
  • The managing network operator

This new feature of VirusTotal enables the security researchers to easily and effectively collude with other experts with each key detail that is needed to mitigate any threat in a more efficient and easy way.

You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity, and hacking news updates.

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Lumma Stealer Attacking Users To Steal Login Credentials From Browsers

Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a...

New ‘OtterCookie’ Malware Attacking Software Developers Via Fake Job Offers

Palo Alto Networks reported the Contagious Interview campaign in November 2023, a financially motivated...

NjRat 2.3D Pro Edition Shared on GitHub: A Growing Cybersecurity Concern

The recent discovery of the NjRat 2.3D Professional Edition on GitHub has raised alarms...

Palo Alto Networks Vulnerability Puts Firewalls at Risk of DoS Attacks

A critical vulnerability, CVE-2024-3393, has been identified in the DNS Security feature of Palo...

API Security Webinar

72 Hours to Audit-Ready API Security

APIs present a unique challenge in this landscape, as risk assessment and mitigation are often hindered by incomplete API inventories and insufficient documentation.

Join Vivek Gopalan, VP of Products at Indusface, in this insightful webinar as he unveils a practical framework for discovering, assessing, and addressing open API vulnerabilities within just 72 hours.

Discussion points

API Discovery: Techniques to identify and map your public APIs comprehensively.
Vulnerability Scanning: Best practices for API vulnerability analysis and penetration testing.
Clean Reporting: Steps to generate a clean, audit-ready vulnerability report within 72 hours.

More like this

Lumma Stealer Attacking Users To Steal Login Credentials From Browsers

Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a...

NjRat 2.3D Pro Edition Shared on GitHub: A Growing Cybersecurity Concern

The recent discovery of the NjRat 2.3D Professional Edition on GitHub has raised alarms...

Palo Alto Networks Vulnerability Puts Firewalls at Risk of DoS Attacks

A critical vulnerability, CVE-2024-3393, has been identified in the DNS Security feature of Palo...