CTI Visualization: Grafana and VirusTotal

Integrating VirusTotal IoCs into the Home Network Guardian

As part of the Home Network Guardian project, a key element for elevating security is the integration of Indicators of Compromise (IoC) data from external sources like VirusTotal. This allows for proactive monitoring and rapid response to potential threats before they reach critical assets on the home network.

Data from the VirusTotal API is automatically collected and stored in a central MySQL database. This storage enables historical analysis and advanced visualization within Grafana.

What is Analyzed? CTI Data Architecture

The Grafana dashboard (defined in virus_total.json) transforms raw VirusTotal scan results into clear CTI indicators, analyzing data points such as:

Grafana Dashboard showing VirusTotal analysis

Visualizing VirusTotal IoC data in Grafana for proactive threat hunting.

Benefits and Added Value for Security

Visualizing VirusTotal data in Grafana goes beyond simple reporting—it actively supports Threat Hunting efforts: