Skip to main content

Getting Started with Illumio Insights

Port 5353 - mDNS (UDP)

Severity: Medium | Category: Legacy

  • T1498 - Network Denial of Service [Impact] mDNS reflection DDoS amplification (CISA VU#550620)

  • T1557.001 - AitM: LLMNR/NBT-NS Poisoning [Credential Access] mDNS spoofing redirects service discovery for credential capture

  • T1046 - Network Service Discovery [Discovery] Multicast DNS reveals all local devices and services