MITRE ATT&CK technique
T1094
Custom Command and Control Protocol
About this technique
Adversaries may communicate using a custom command and control protocol instead of encapsulating commands/data in an existing Application Layer Protocol. Implementations include mimicking well-known protocols or developing custom protocols (including raw sockets) on top of fundamental protocols provided by TCP/IP/another standard network stack.
TA0011
Curated mapping
Curated incident relationships
These associations come from maintained incident records. The recorded confidence is shown when the source record provides it.
0 items
No curated incident mappings yet.
Heuristic association
Daily items linked through predicted CVEs
A Daily item appears here when it mentions a CVE whose triage artifact predicts this technique. This is not a verified ATT&CK mapping.
0 items
No heuristic Daily associations yet.
Heuristic association
Predicted CVE associations
These backfilled or model-produced candidates come from the current triage artifact. They are informational, not official MITRE mappings.
0 items
No predicted associations yet for this technique.