2
1

AI-Automated Threat Hunting Brings GhostPenguin Out of the Shadows

6mon 9d ago by infosec.pub/u/digicat in blueteamsec@infosec.pub from www.trendmicro.com

I'm finding very little about the initial infection vector. How does it infect a machine?

Also port 53/udp is an interesting choice for communicating. Many enterprises redirect that to their internal dns.