BigHugger
sk Skill · mukul975

analyzing-dns-logs-for-exfiltration

Analyzes DNS query logs to detect data exfiltration via DNS tunneling, DGA domain communication, and covert C2 channels using entropy analysis, query volume anomalies, and subdomain length detection in SIEM platforms. Use when SOC teams need to identify DNS-based threats that bypass traditional network security controls.

installs 8w
131
30-day movement
starts with the next reading
Related entries
1
Connections
0
Pythonthreat-detectionc2-detectiondns-tunnelingsplpythonexfiltrationdnssplunkdgasoc
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Installs, lifetime
524
Installs, 8 weeks
131
Licence
Apache-2.0
Host stars
33k
Host language
Python