da_667 on Nostr: you wanna stop infostealers? Don't allow telegram on your networks if it doesn't have ...
you wanna stop infostealers? Don't allow telegram on your networks if it doesn't have a business justification. Don't let it run on company assets.
Don't allow Discord on your networks if it doesn't have a business justification.
Check for DNS and TLS hits to api/api64.ipify.org (or other IP address checking services) or just block access to them.
Check for DNS and TLS hits to gofile.io, or anon files or just block access to them.
You'll solve so many problems and get so much low-hanging fruit. I promise.
Don't allow Discord on your networks if it doesn't have a business justification.
Check for DNS and TLS hits to api/api64.ipify.org (or other IP address checking services) or just block access to them.
Check for DNS and TLS hits to gofile.io, or anon files or just block access to them.
You'll solve so many problems and get so much low-hanging fruit. I promise.