DESCRIPTION NAME:

Data Exfiltration - DNS (Response)

 CONFIDENCE LEVEL: LOW
 SEVERITY INBOUND:
 SEVERITY OUTBOUND:
Informativo
Basso
Medio
Alto

 Panoramica e descrizione

 Dettagli tecnici

Attack Phase: "Data Exfiltration"

Protocol: DNS

Risk Type: MALWARE

Threat Type: Suspicious Behavior

Confidence Level: Low

Severity: High

DDI Default Rule Status: Enable

Event Class: "Suspicious Traffic"

Event Sub Class: "Covert Channel"

Behavior Indicator: "Suspicious Traffic"

APT Related: NO

 Soluzioni

Network Content Inspection Pattern Version: 1.13359.00
Network Content Inspection Pattern Release Date: 03 Jul 2018
Network Content Correlation Pattern Version: 1.13291.00
Network Content Correlation Pattern Release Date: 05 Jun 2018


Sondaggio