You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
After completion of #27, determine effort (and complete if possible) the ability to use MineMeld for automated generation of IoT EDL and upload for use.
We need to add to SN the ability to identify IoT C2 activity via DNS that we have learned from our Honeypots.
High level requirements include
creation of EDLs from IoT Domain files generated by honeypot team. First instance of this could be manual but long term could include Minemeld work to keep the EDL updated
identity the EDL event from the FW vs. the Threat events from DNS db or WF as these events will need special processing
After completion of #27, determine effort (and complete if possible) the ability to use MineMeld for automated generation of IoT EDL and upload for use.
Ticket #28: IoT Safe Networking Processing -- Domains
We need to add to SN the ability to identify IoT C2 activity via DNS that we have learned from our Honeypots.
High level requirements include
https://paloaltonetworks.box.com/s/halb8utfbtm8k319lvc6bn6xred44hni
The text was updated successfully, but these errors were encountered: