Hope you'll doing great!!
We have received dns query using JSON & content type: application/dns-query or dns-message. Anyone could explain this what kind of traffic, whether it's normal DNS check or kind of DNS based attack.
Disposition: none (whether need to report this kind of pattern)
I appreciate your post on the community.
1. DNS-over-HTTP (DoH) Inquiry:
2. Missing Payload Info:
3. Malicious or Not?:
Feel free to share more details, and we'll keep this conversation going.