Post #4378979
2026-08-04 15:35 UTC
Palo: "Almost Half of Malware Samples Communicate Direct to IP"
Also Palo: "We don't understand why you want to Block-by-ASN."
https://unit42.paloaltonetworks.com/malware-bypass-dns-direct-to-ip/
#blueteam #asn #paloaltonetworks #unit42
Replies (1)
-
@fullywoolly@mastodon.social 2026-08-04 17:06
@badsamurai@infosec.exchange Direct to IP means it can bypass DNS? So if you have a pi hole that is enforcing DNS on the network to drop the IPil, it still goes through? If that's true, I have some very large misunderstandings about home router networking.