An endpoint, inside an organization, is infected with known malware. The malware attempts to make a command and control connection to a C&C server via the destination IP address.
Which mechanism prevent this connection from succeeding?
DNS Sinkholing seems like the obvious choice here. It redirects the malware's attempt to connect to the C&C server to a benign destination, effectively blocking the connection.
Lenora
5 days agoGlenna
8 days agoRasheeda
9 days agoGlennis
17 days agoShonda
1 days agoSylvia
21 days agoJovita
23 days agoSheridan
25 days ago