Vicente Diaz
@trompi
ThreatIntel Strategist at VirusTotal. Former Kaspersky - GReAT. APT hunter and Threat Intel war veteran. Progressive metal fan. Tweets are my own.
ID: 15529571
http://www.virustotal.com 22-07-2008 12:01:06
1,1K Tweet
2,2K Followers
583 Following
Code Insight has been one of our most impactful releases (thanks everyone!), but the VT team didn't stop working hard to improve it. Code Insight analyses now new formats, including BAT,CMD,SH and VBS. Find all details in our Q&A, by Bernardo Quintero: blog.virustotal.com/2023/05/vt-cod…
We've been working with Mandiant (part of Google Cloud)'s Jared Wilson to add Permhash to VirusTotal, a new way to unearth adversary's infrastructure and toolkits by leveraging permissions similarity. Details here, by Emiliano Martinez: blog.virustotal.com/2023/05/virust…
We improved the identification of file formats using Generative AI. Find here all the details, by Bernardo Quintero: blog.virustotal.com/2023/06/ai-boo…
Syntax highlighting, auto-complete, templates, testing capabilities ... Our new YARA editor couldn't look better! Check out all the details here, by leximagination: blog.virustotal.com/2023/07/action…
Today we launch VirusTotal's Crowdsourced AI, our open initiative for the security community to explore AI's capabilities to improve threat detection and response: blog.virustotal.com/2023/07/virust… by Bernardo Quintero
Today we announce YARA Netloc, a new feature extending YARA's supported entities from traditional files to network infra, including domains, URLs and IPs. This opens endless possibilities for hunting and monitoring. All details here, by leximagination: blog.virustotal.com/2023/07/action…
Our new VirusTotal Malware Trends Report: "Emerging formats and delivery techniques" is out! by Gerardo Fdez., Alexey Firsh, fernando blog.virustotal.com/2023/07/virust…
You can now automatically generate YARA LiveHunt rules for IOC tracking. Learn how, by leximagination: blog.virustotal.com/2023/08/action…
We keep adding more security partners to our Crowdsourced AI effort. We are thrilled to welcome NICS Lab and their AI analysis engine for Powershell scripts, learn more about it at blog.virustotal.com/2023/08/crowds…, by Bernardo Quintero
Join us next August 30th 17:00 CEST for a new Threat Hunting live session with a focus on VT's new YARA Netloc capabilities, by leximagination: brighttalk.com/webcast/18282/…
Results of Major Technical Investigations for Storm-0558 Key Acquisition: crash dump contains crypto key, dump moved to debug env (not air gapped) for analysis, attackers sit there, use key to access gov corp mail as api accepts consumer key in corp env msrc.microsoft.com/blog/2023/09/r…
New VT Academy training for SOC and IR analysts, led by Kevin Holvoet! Learn how to efficiently and successfully investigate and contextualize any malicious activity. Watch now: youtube.com/playlist?list=…
PIVOTcon is finally out! This has been a nice project in the making, and we are just starting: join me + Bartek Jerzman in Malaga, 8-10 May 2024 for a #threatintel conference, in a trusted environment (vetted attendees only) where we can push the #cti bar a little further #PIVOTcon24