← Back to Labs
DNS Tunneling & Data Exfiltration
Step through DNS recursive lookup delegation, Base32 subdomain payload encoding, TXT record tunnels, and Shannon entropy detection
STEP 1 OF 6
Standard Egress Firewall Restrictions
Corporate firewalls block direct outbound HTTP and TCP connections (ports 80, 443) from internal workstations, but routinely allow UDP port 53 traffic to internal corporate DNS resolvers to preserve domain name resolution.
Arrow keys to navigate · R to reset
Tap dots to jump to any step