Official Description

Adversaries may steal data by exfiltrating it over an existing command and control channel. Stolen data is encoded into the normal communications channel using the same protocol as command and control communications.
Tactics
Exfiltration
Platforms
ESXi, Linux, macOS, Windows
MITRE Version
2.3
Last Modified
May 12, 2026

View on MITRE ATT&CK โ†—

Reported Context (5)

CVE (3)

Malware (5)

Threat Actors (3)

MITRE ATT&CK (32)

VIEW MORE

Vendors (1)

Products (20)

VIEW MORE

Tools (13)

VIEW MORE

Industries (2)

Countries (2)

Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.