<< APT - new buzzword - Advanced Persistent Threat | Home | Jailbreaking iPad touch and more >>

DNS Sinkholing - Malware Investigation

Ever heard about DNS Sinkholing - Through registering expired domain names previously used in cyber espionage attacks as command and control servers, malware hunters were able to observe incoming connections from still-compromised computers. This allowed them to collect information on the methods of the attackers as well as the nature of the victims.

I think this is a smart technique ... dns sinkholing

Ivan

Reference: Shadows in the Cloud Report



Add a comment is disabled Send a TrackBack