Standard Encoding - T1132.001 (04fd5427-79c7-44ea-ae13-11b24778ff1c)
Adversaries may encode data with a standard data encoding system to make the content of command and control traffic more difficult to detect. Command and control (C2) information can be encoded using a standard data encoding system that adheres to existing protocol specifications. Common data encoding schemes include ASCII, Unicode, hexadecimal, Base64, and MIME.(Citation: Wikipedia Binary-to-text Encoding)(Citation: Wikipedia Character Encoding) Some data encoding systems may also result in data compression, such as gzip.
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Standard Encoding - T1132.001 (04fd5427-79c7-44ea-ae13-11b24778ff1c) | Attack Pattern | Data Encoding - T1132 (cc7b8c4e-9be0-47ca-b0bb-83915ec3ee2f) | Attack Pattern | 1 |