Delivering predictive risk assessments with DNS threat intelligence
CHALLENGE
Current network visibility and breach detection technologies can provide a wealth of information about suspicious or malicious activities within an organization and can identify the domains or IP addresses associated with attacks or data exfiltration. But because threat actors rapidly “burn” infrastructure, a reactive approach leaves an organization open to new attacks.
SOLUTION
Fortunately, it is possible to take a more proactive approach by profiling adversaries and their infrastructure and orienting detection and blocking around domains and IP addresses that may be in the process of being weaponized. Iris from DomainTools provides predictive risk assessments and DNS intelligence within the CrowdStrike Falcon® platform to enable rapid in-context profiling of domain observables.
Discover More at our
Resource Center
TECHNICAL CENTER
For technical information on installation, policy configuration and more, please visit the CrowdStrike Tech Center.
Visit the Tech Center