Skip to main content
nflnetwork29
Explorer III
February 26, 2025
Question

FAZ-Cloud report Botnet C&C

  • February 26, 2025
  • 1 reply
  • 398 views

I am looking thru our security report and see an instance of botnet detected under the threats category.  does this mean it was detected and cleaned? does this mean we have an infected machine? what is the best course of action here?

1 reply

AEK
SuperUser
SuperUser
February 26, 2025

If you have configured security fabric then FGT should quarantine the host as soon as FAZ detects the bad traffic. Otherwise if you don't have security fabric then the traffic will not be blocked, unless you have a rule on your FGT that blocks such traffic.

AEK