paloaltonetworks:dns_security
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| paloaltonetworks:dns_security [2023/01/04 12:20] – bstafford | paloaltonetworks:dns_security [2025/08/29 13:27] (current) – [Details] bstafford | ||
|---|---|---|---|
| Line 7: | Line 7: | ||
| [[https:// | [[https:// | ||
| + | ===== DoT/DoH ===== | ||
| + | PAN-OS 11.2.1 [[https:// | ||
| + | |||
| =====Data Sources===== | =====Data Sources===== | ||
| Line 24: | Line 27: | ||
| * Stops newly registered domains 6x faster than publicaly avaialble scanners | * Stops newly registered domains 6x faster than publicaly avaialble scanners | ||
| + | New in mid 2025 | ||
| + | * Detection of unknown C2 threats developed using the open source Sliver C2 framework (ATP) | ||
| + | * Enhanced Empire C2 deteciton | ||
| + | * Protection against DNS relaying attacks, also known as Data Exfiltration via HTTP request headers (ATP+ADNS) | ||
| + | * Domain Masquerading Detection, Malicious TDS Detection (ADNS) | ||
| + | * AI Categorization, | ||
| + | * Endpoint DLP | ||
| - | ====URL Categories Blockable==== | + | =====URL Categories Blockable===== |
| * Ad Tracking | * Ad Tracking | ||
| * Command and Control | * Command and Control | ||
| Line 36: | Line 46: | ||
| * Phishing | * Phishing | ||
| * Proxy Avoidance & Anonymizers | * Proxy Avoidance & Anonymizers | ||
| + | |||
| + | ===== DNS Techniques ===== | ||
| + | * Dangling DNS (PAN only) | ||
| + | * WildCard DNS (PAN only) | ||
| + | * NXNS Attack (PAN only) | ||
| + | * CNAME Cloaking | ||
| + | * Ultra-Slow DNS Tunneling | ||
| + | * Data Theft | ||
| + | * DNS Tunneling | ||
| + | * DNS Infiltration | ||
| + | * Compromised DNS Zone | ||
| + | * DNS Rebinding | ||
| + | * Strategically Aged Domains | ||
| + | * Domain Squating | ||
| + | * Domain Generation Algorithm (DGA) | ||
| + | * Dictionary DGA | ||
| + | * Fast Flux Domains | ||
| + | * DNS Rebinding Attacks | ||
| + | * Dangling SNA Attacks | ||
paloaltonetworks/dns_security.1672834806.txt.gz · Last modified: by bstafford
