Threat Hunting C2: DNS TXT Record Abuse with Faan Rossouw

Malware of the Day – Encrypted DNS Comparison: Detecting C2 When You Can’t See the Queries

Malware of the Day – TXT Record Abuse in DNS C2 (Joker Screenmate)

Malware of the Day – Command and Control via Google Workspace APIs

Malware of the Day – Agent-to-Agent Communication via SMB (AdaptixC2)

A Network Threat Hunter’s Guide to DNS Records

Malware of the Day – Velociraptor as C2

Safe vs Malicious: DNS Edition

Malware of the Day – ZetaSwitch – DNS/HTTP Multi-Modal C2

DNS Packet Inspection for Network Threat Hunters

Malware of the Day – Multi-Modal C2 Communication – Numinon C2

Malware of the Day – C2 over ICMP (ICMP-GOSH)