Skip to content

Conversation

@patel-bhavin
Copy link
Contributor

@patel-bhavin patel-bhavin commented Jan 22, 2026

updated - DNS Query Length With High Standard Deviation

Based on testing various combinations of threshold values, the current SPL gives the best results!
Also removed"SOA", "SRV") DNS.query != *. queries which also resulted in reducing result count from 1.9k to 41 events

@patel-bhavin patel-bhavin self-assigned this Jan 23, 2026
@patel-bhavin patel-bhavin changed the title Updating query based on xswords Updating query based Jan 23, 2026
@nasbench nasbench added this to the v5.21.0 milestone Jan 23, 2026
Copy link
Contributor

@nasbench nasbench left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@nasbench nasbench merged commit 060feb0 into develop Jan 23, 2026
5 checks passed
@nasbench nasbench deleted the tr_3750 branch January 23, 2026 14:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants