logo

Malicious URL’s Using DWORD Formatted IP Addresses

ID: d8e942c9-8d66-5aba-b59a-f88f995cfdbc

STIX ID: report--d8e942c9-8d66-5aba-b59a-f88f995cfdbc

Feed Name: Zscaler Security Research Blog

Threat Score
50/100

Date Published: 2025-08-27

Date Updated: 2026-05-01

...
...

The report describes attackers using DWORD-formatted IP addresses (decimal representation of IPv4) in URLs to obfuscate malicious hosts, provides step-by-step conversion instructions and examples of observed malicious URLs, and links these URLs to exploitation of Java vulnerability CVE-2010-4452 used to download malware.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.