Cybercriminals became highly sophisticated in how they attack networks. This session will explore the fundamentals of modern attacks and discuss the early detection and defensive tactics needed to stop them using DNS-layer security. From tagging domains with specific features to exploring post-exploitation frameworks that use DNS as covert channel for C&C, the talk will cover every important angle.