news.mlab.sh
1 result
threat-intel

Almost Half of Malware Samples Communicate Direct to IP

Almost half (45.32%) of malware samples with Command & Control (C2) activity bypass DNS entirely, communicating directly to IP addresses. This behavior, known as D2IP, is prevalent across various threat types, including ransomware droppers, P2P botnets, and data exfiltration campaigns. Researchers at Palo Alto Unit 42…

Palo Alto Unit 42 · Aug 4, 2026 High