Compliance Node Overview
MITRE ATT&CK T1573.001 (Symmetric Cryptography) is an Enterprise Command and Control sub-technique of T1573 (Encrypted Channel). Adversaries may employ a known symmetric encryption algorithm to conceal command and control traffic rather than relying on any inherent protections provided by a communication protocol. Symmetric encryption algorithms use the same key for plaintext encryption and ciphertext decryption. Common symmetric encryption algorithms include AES, DES, 3DES, Blowfish, and RC4. Affected platforms: Linux, Windows, macOS, Network. MITRE-documented mitigations include M1031 Network Intrusion Prevention. The Center for Threat-Informed Defense maps this technique to NIST SP 800-53 Rev 5 controls AC-04, CA-07, CM-02, CM-06, CM-07, SC-07, SC-12, SC-16.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1573/001/
SHA-256 integrity: 0d5e060aa16f0b10449a2ec82b870e2ed96a580d0392e278c86180a13039f690
Primary Citations — 7 traced to source
- MITRE ATT&CK Technique T1573.001: Symmetric Cryptography (https://attack.mitre.org/techniques/T1573/001/)
- MITRE ATT&CK Tactic TA0011: Command and Control (https://attack.mitre.org/tactics/TA0011/)
+ 5 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access