Detection of Encrypted Channel

Technique Detected:  Encrypted Channel | T1521

ID: DET0641
Domains: Mobile
Analytics: AN1716, AN1717
Version: 1.0
Created: 21 October 2025
Last Modified: 21 October 2025

Analytics

AN1716

Since data encryption is a common practice in many legitimate applications and uses standard programming language-specific APIs, encrypting data for command and control communication is regarded as undetectable to the user.

AN1717

Since data encryption is a common practice in many legitimate applications and uses standard programming language-specific APIs, encrypting data for command and control communication is regarded as undetectable to the user.