Threat actors are using DNS tunneling to track victims’ interaction with spam and to scan network infrastructures.

