Vendor: F5

July 25, 2023 · View on GitHub

Product: BIG-IP DNS

RulesModelsMITRE TTPsEvent TypesParsers
40222
Use-CaseEvent Types/ParsersMITRE TTPContent
Malwaredns-query
syslog-f5-dns-query
syslog-f5-dns-query-1

dns-response
syslog-f5-dns-response
s-f5-dns-response
syslog-f5-dns-query-1
T1071.004 - Application Layer Protocol: DNS
T1568.002 - Dynamic Resolution: Domain Generation Algorithms
  • 4 Rules

ATT&CK Matrix for Enterprise

Initial AccessExecutionPersistencePrivilege EscalationDefense EvasionCredential AccessDiscoveryLateral MovementCollectionCommand and ControlExfiltrationImpact
Application Layer Protocol: DNS

Dynamic Resolution

Dynamic Resolution: Domain Generation Algorithms

Application Layer Protocol