Monday, October 14, 2013

ZeroMQ: Helping us Block Malicious Domains in Real Time


Every day, we process terabytes of data in order to spot malicious domains based on their network features and how they are accessed.

Our live dataset comes from two major sources:

– The log files of queries sent by users to our resolvers
– The log files of queries sent by our resolvers to authoritative servers.

In this blog post, we will focus on the latter, highlighting how we use it to block suspicious domains immediately after they show up in our log files.

Read more here

Leave a Reply

All Tech News IN © 2011 & Main Blogger .