Update zeek_dns_suspicious_zbit_flag.yml

This commit is contained in:
Nate Guagenti
2022-02-24 20:03:56 -05:00
committed by GitHub
parent 878df636e2
commit 7dc0facf05
@@ -38,7 +38,7 @@ detection:
- 'NS'
- 'ns'
- 'MX'
- 'MX'
- 'mx'
exclude_responses:
answers|endswith: '\\x00'
exclude_netbios: