Detect VMware Aria Operations for Logs exploitation with Dynatrace and DQL
Dynatrace
OCTOBER 25, 2023
In this blog post, we show how to discover the original attacks toward the Aria Operations for Logs vulnerability using Dynatrace and DQL by finding the IoC-s from the log records. Sending logs to Dynatrace at runtime safeguards the log files for later analysis in a remote and secure location. Spoof the IP address of the known worker.
Let's personalize your content