Threat Level: green Handler on Duty: Didier Stevens

SANS ISC: InfoSec Handlers Diary Blog - Internet Storm Center Diary 2013-02-15 InfoSec Handlers Diary Blog


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!

Looking for some packets going to tcp/8520

Published: 2013-02-15
Last Updated: 2013-02-15 13:03:07 UTC
by Mark Hofman (Version: 1)
6 comment(s)

One of our readers has come across traffic leaving the network with a destination of CN and a destination port of tcp 8520.  

If you are seeing the same I'd like to know, even better if you have a capture of the traffic including the payload that would be great. 

Cheers

Mark H 

Keywords:
6 comment(s)
ISC StormCast for Friday, February 15th 2013 http://isc.sans.edu/podcastdetail.html?id=3127
Diary Archives