Skip to content

Commit

Permalink
- Added network traffic
Browse files Browse the repository at this point in the history
  • Loading branch information
shivaccuknox committed Jan 10, 2024
1 parent 0683784 commit 0e2c010
Show file tree
Hide file tree
Showing 2 changed files with 18 additions and 0 deletions.
9 changes: 9 additions & 0 deletions actions/mitre/integrityProtection.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,9 @@
title: networkTraffic
description: Malware uses DNS as a transport to communicate with the command-and-control servers [infloBlox]. Hence the packets contents need to be checked for data exfiltration. Basic checks can be implemented by the security engines on the DNS packets
severity: high
tags: [5gcore, edge, mitre]
references:
- name: mitre
url: https://fight.mitre.org/data%20sources/DS0029
- name: infoBlox
url: https://www.infoblox.com/dns-security-resource-center/dns-security-faq/what-is-dns-protection/
9 changes: 9 additions & 0 deletions res/actionTemplate.yaml
Original file line number Diff line number Diff line change
@@ -0,0 +1,9 @@
title: xxx
description:
severity: high
tags: [5gcore, edge, accuknox]
references:
- name:
url:
- name:
url:

0 comments on commit 0e2c010

Please sign in to comment.