VirusTotal is a service that analyzes suspicious files, domains, IPs, and URLs to detect malware and other breaches. It automatically shares the results with the security community, allowing for collaborative threat intelligence. The platform provides a range of features, including file scanning, URL scanning, and search functionality, as well as an API for automating submissions. By using VirusTotal, users can help to identify and combat malware and other cyber threats, while also contributing to the broader security community. Note: Users are advised not to submit personal information, and to review the Terms of Service and Privacy Notice before using the service.
FEATURES
SIMILAR TOOLS
A threat intelligence dissemination layer for open-source security tools with STIX-2 support and plugin-based architecture.
A comprehensive Continuous Threat Exposure Management platform that combines AI-driven vulnerability assessment, penetration testing, and attack surface management to help organizations discover, prioritize, and remediate security vulnerabilities.
A summary of the threat modeling posts and final thoughts on the process
A collection of YARA rules for research and hunting purposes.
A threat intelligence platform that collects, analyzes, and operationalizes threat data from multiple sources to help organizations identify and respond to security threats.
CIFv3 is the next version of the Cyber Intelligence Framework, developed against Ubuntu16, encouraging users to transition from CIFv2.
ZoomEye is an advanced cyberspace search engine that provides detailed information on cyberspace assets, including server software and version information, for cybersecurity experts, researchers, and enterprises.
PINNED

Mandos
Fractional CISO service that helps B2B companies implement security leadership to win enterprise deals, achieve compliance, and develop strategic security programs.

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.