SIEM

DNS Request Use Cases

Grouped by Detection Method

Aggregate Count

Blacklist Alert

Whitelist Alert

Levenshtein Score Alert

Rolling Whitelist Alert

Shannon Entropy Score Alert

Threshold Alert

Deviation from Baseline Alarm

Log Source Examples

Possible False Positives

References