A look on APT operations and using F5 BIG-IP features for mitigation
Published Mar 27, 2023
Version 1.0Was this article helpful?
Nice! If you add an icall that triggered a python script it can auto update the Data Group by pulling data from athreat intelligence site. I have seen this with older versions of the SSLO where the icall pulled the Microsoft urls as to dissable decryption for them with a data group.