Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. Made a new BS List for ZTNA / Mesh / Overlay domains and URLs to block and hunt.

Made a new BS List for ZTNA / Mesh / Overlay domains and URLs to block and hunt.

Scheduled Pinned Locked Moved Uncategorized
ztnalotslottblueteam
3 Posts 2 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • badsamurai@infosec.exchangeB This user is from outside of this forum
    badsamurai@infosec.exchangeB This user is from outside of this forum
    badsamurai@infosec.exchange
    wrote last edited by
    #1

    Made a new BS List for ZTNA / Mesh / Overlay domains and URLs to block and hunt. Many are poorly categorized by firewall and proxy vendors. Most have a free tier. For the self hosting you’ll need to dig further into the project docs.


    .enclave.io/
    .firezone.dev/
    .headscale.net/
    .husarnet.com/
    .netbird.io/
    .netmaker.io/
    .openziti.io/
    .tailscale.com/
    .twingate.com/
    .zerotier.com/
    .github.com/easytier/
    .github.com/slackhq/nebula/
    .github.com/juanfont/headscale/
    .github.com/webmeshproj/

    https://github.com/BadSamuraiDev/bs-lists/blob/main/ztna-mesh-overlay.txt

    #ztna #LOTS #LOTT #blueTeam

    X 1 Reply Last reply
    0
    • badsamurai@infosec.exchangeB badsamurai@infosec.exchange

      Made a new BS List for ZTNA / Mesh / Overlay domains and URLs to block and hunt. Many are poorly categorized by firewall and proxy vendors. Most have a free tier. For the self hosting you’ll need to dig further into the project docs.


      .enclave.io/
      .firezone.dev/
      .headscale.net/
      .husarnet.com/
      .netbird.io/
      .netmaker.io/
      .openziti.io/
      .tailscale.com/
      .twingate.com/
      .zerotier.com/
      .github.com/easytier/
      .github.com/slackhq/nebula/
      .github.com/juanfont/headscale/
      .github.com/webmeshproj/

      https://github.com/BadSamuraiDev/bs-lists/blob/main/ztna-mesh-overlay.txt

      #ztna #LOTS #LOTT #blueTeam

      X This user is from outside of this forum
      X This user is from outside of this forum
      xinayder@fosstodon.org
      wrote last edited by
      #2

      @badsamurai what's the idea behind blocking/warning on these domains? server can be compromised and use the services' mesh VPN to connect to attacker servers or what?

      badsamurai@infosec.exchangeB 1 Reply Last reply
      0
      • X xinayder@fosstodon.org

        @badsamurai what's the idea behind blocking/warning on these domains? server can be compromised and use the services' mesh VPN to connect to attacker servers or what?

        badsamurai@infosec.exchangeB This user is from outside of this forum
        badsamurai@infosec.exchangeB This user is from outside of this forum
        badsamurai@infosec.exchange
        wrote last edited by
        #3

        @xinayder yep. And inside threat of the negligence variety.

        Of course I’m speaking to enterprises and organizations. if this is your own home or small business there are super valid reasons using this software.

        1 Reply Last reply
        1
        0
        • R relay@relay.infosec.exchange shared this topic
        Reply
        • Reply as topic
        Log in to reply
        • Oldest to Newest
        • Newest to Oldest
        • Most Votes


        • Login

        • Login or register to search.
        • First post
          Last post
        0
        • Categories
        • Recent
        • Tags
        • Popular
        • World
        • Users
        • Groups