Alternate Network Mediums

Adversaries can communicate using cellular networks rather than enterprise Wi-Fi in order to bypass enterprise network monitoring systems. Adversaries may also communicate using other non-Internet Protocol mediums such as SMS, NFC, or Bluetooth to bypass network monitoring systems.

ID: T1438

Tactic Type:  Post-Adversary Device Access

Tactic: Command And Control, Exfiltration

Platform:  Android, iOS

MTC ID:  APP-30

Version: 1.0

Examples

NameDescription
Android/Chuli.A

Android/Chuli.A used SMS to receive command and control messages.[1]

Pegasus for Android

Pegasus for Android uses SMS for command and control.[2]

Pegasus for iOS

Pegasus for iOS uses SMS for command and control.[3]

RCSAndroid

RCSAndroid can use SMS for command and control.[4]

Skygofree

Skygofree can be controlled via binary SMS.[5]

SpyDealer

SpyDealer enables remote control of the victim through SMS channels.[6]

Stealth Mango

Stealth Mango uses commands received from text messages for C2.[7]

References