Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

This is not "always dns", sorry! #1

Open
thau0x01 opened this issue Apr 15, 2021 · 3 comments
Open

This is not "always dns", sorry! #1

thau0x01 opened this issue Apr 15, 2021 · 3 comments
Labels
someday you know how it goes

Comments

@thau0x01
Copy link

thau0x01 commented Apr 15, 2021

This tool works by opening a socket directly to the IP of the "DNS" server. In most networks, openning an UDP socket and connecting directly to a random IP address is not allowed. That's why we use DNS queries to perform exfiltration, because you don't need to connect directly to your server.

Always DNS means that data is transfered by the query resolution, don't matter what server perform this such query.

@thau0x01 thau0x01 changed the title Essa porra não é DNS! Essa porra não é full DNS! Apr 15, 2021
@c3l3si4n
Copy link

I agree, Caralho.

@thau0x01 thau0x01 changed the title Essa porra não é full DNS! This is not "always dns", sorry! Apr 15, 2021
@scall0p
Copy link

scall0p commented Apr 15, 2021

I agree. fix this bro, what a shame!

@cpl
Copy link
Owner

cpl commented Apr 15, 2021

I see, fair enough. This was more of a PoC/toy project. But I'll consider adding more stuff to it. Even had more ideas integrating with DNS services that offer APIs to do some things.

@cpl cpl added the someday you know how it goes label Apr 15, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
someday you know how it goes
Projects
None yet
Development

No branches or pull requests

4 participants