Compliance Node Overview
MITRE ATT&CK T1481 (Web Service) is an ATT&CK for Mobile Command and Control technique. Adversaries may use an existing, legitimate external Web service as a means for relaying data to/from a compromised system. Popular websites and social media, acting as a mechanism for C2, may give a significant amount of cover. This is due to the likelihood that hosts within a network are already communicating with them prior to a compromise. Using common services, such as those offered by Google or Twitter, makes it easier for adversaries to hide in expected noise. ATT&CK documents 3 sub-techniques: T1481.001 Dead Drop Resolver; T1481.002 Bidirectional Communication; T1481.003 One-Way Communication. Affected platforms: Android, iOS. Mobile controls map to NIST SP 800-124 Rev 2 and OWASP MASVS.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1481/
SHA-256 integrity: bd485c98f232baf25cffe131d7dbc70c53e8ff8cab30d1caf22924e0cbe3aabd
Primary Citations — 5 traced to source
- MITRE ATT&CK for Mobile Technique T1481: Web Service (https://attack.mitre.org/techniques/T1481/) with 3 sub-techniques
- MITRE ATT&CK Mobile Tactic TA0037: Command and Control (https://attack.mitre.org/tactics/TA0037/)
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.