653 shaares
1 résultat
taggé
dns_tunneling
The goal of this hunt is to review DNS logs to baseline common domains queried by endpoints in the environment as well as identify potentially infected endpoints by looking for evidence of DNS tunneling,rogue communication, or data exfiltration, over DNS channels, domain generation algorithm (DGA) d