ET DNS Non-DNS or Non-Compliant DNS traffic on DNS port Opcode 8 through 15 set

m4v3r1ck

$ sudo -i
UniFier
31 jan 2018
3.898
3
1.858
163
FYI: De laatste twee dagen krijg ik meldingen vanuit Threat Management:

ET DNS Non-DNS or Non-Compliant DNS traffic on DNS port Opcode 8 through 15 set

Bij UI heefy UI_Marcus dit signaal inmiddels opgepakt in dit draadje.

3- The same issue happened to 2 Signatures
ET DNS Non-DNS or Non-Compliant DNS traffic on DNS port Reserved Bit Set
ET DNS Non-DNS or Non-Compliant DNS traffic on DNS port Opcode 8 through 15 set
edit: toevoeging twee Signatures.
 
  • Leuk
Waarderingen: PcRene