Hacker News new | ask | show | jobs
by ThePhysicist 1768 days ago
This technique has been a standard exfiltration & C2 (command & control) channel for malware for a long time. Typically malware will make a DNS request for a subdomain where the domain name encodes data or a request, and the response contains e.g. commands.