Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Thursday, 4 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Lastline – Virus Total is good, but industry needs something better

by The Gurus
October 7, 2014
in Editor's News
Share on FacebookShare on Twitter

Virus Total has been described as a useful tool, but the industry needs something better.
 
Talking to IT Security Guru, Giovanni Vigna, co-founder and CTO of Lastline, said that it has run malware on Virus Total which is “the wrong tool in a way and sometimes people get upset when people run tests on it, but it is the only one we have”.
 
Asked if he felt that something could replace it, Vigna said that Virus Total is “a fantastic tool”, but said that the industry needs something better as the tools that run in Virus Total are just normal anti-virus.
 
He said: “I think that this is something that the security community has already acknowledged and the anti-virus companies know that we need to go beyond static signatures and we need dynamic data and dynamic execution to work with.”
 
Jaime Blasco, director of AlienVault labs, praised Virus Total as “a great tool for researchers” as it lets you easily explore certain pieces of malware and obtain new information when you are investigating a certain incident or malware family.
 
He said: “The Virus Total team has done a great job (the company was started in Spain like us) and Google bought them a few years ago. The problem when you use Virus Total as a tool to ‘compare’ anti-virus solutions, the engines that they use usually work in ’static mode’, meaning that they only analyse the file itself.
 
“The problem is anti-virus usually has more features that can only be tested when they are running in real environments, such as behavioural analysis or when it comes to exploit detection, they use heuristics that can only be applied in a real environment.”
 
Mark Osborn, senior security consultant at MWR InfoSecurity, said: “We believe Virus Total isn’t ‘broken’, it’s just a tool; and as a tool to provide information, it works extremely well. In fact, other tools are also hooking into it and providing extra value.
 
“Virus Total does, however, go right to the heart of the anti-virus problem: there is no asymmetry between attacker and defender – both parties have access to the same information and this will always result in an advantage to the attacker.”
 
Luis Corrons, technical director of PandaLabs at Panda Security, also defended Virus Total, saying it was not the industry as a whole who built Virus Total, instead it was a company that had a brilliant idea and decided to give it a try.
 
“If Lastline had better ideas I am sure they could start a new project covering this, or they could even talk to Virus Total (or other companies offering similar services) and tell them their ideas to see if they can be implemented,” he said.
 
Osborn said: “If a Virus Total alternative existed, which only defenders had access to, then this would be of much more value to the defenders. This is the main reason behind our recent release of a new service which may go some way to tipping the balance in favour of network defenders tackling the threat of advanced malware.”

Tags: Anti-VirusGoogleLastlineToolVirus Total
ShareTweet
Previous Post

Lawyer and accountant cyber training initiative launched

Next Post

Humans can’t be patched, so integrate IT security at board level

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol