Tag: DNS Tunneling

Low-and-Slow Data Exfiltration Detection — Isolation Forest + LSTM autoencoder on VPC Flow Logs — HACKFORLAB cover image
0 21
Posted in Cyber Threat

Detecting Low-and-Slow Data Exfiltration with Isolation Forest + LSTM

Hunt DNS tunnels, ICMP tunnels, and HTTPS covert channels using Isolation Forest + LSTM autoencoder on AWS VPC Flow Logs.