Malicious URL’s Using DWORD Formatted IP Addresses
ID: d8e942c9-8d66-5aba-b59a-f88f995cfdbc
STIX ID: report--d8e942c9-8d66-5aba-b59a-f88f995cfdbc
Feed Name: Zscaler Security Research Blog
Threat Score
The report describes attackers using DWORD-formatted IP addresses (decimal representation of IPv4) in URLs to obfuscate malicious hosts, provides step-by-step conversion instructions and examples of observed malicious URLs, and links these URLs to exploitation of Java vulnerability CVE-2010-4452 used to download malware.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
