Skip to content

DET0685 Detection of Application Layer Protocol

Item Value
ID DET0685
Version 1.0
Created 21 October 2025
Last Modified 21 October 2025

Technique Detected: T1437 (Application Layer Protocol)

Analytics

Android

AN1793

Abuse of standard application protocols can be difficult to detect as many legitimate mobile applications leverage such protocols for language-specific APIs. Enterprises may be better served focusing on detection at other stages of adversarial behavior.

Log Sources
Data Component Name Channel
Mutable Elements
Field Description

iOS

AN1794

Abuse of standard application protocols can be difficult to detect as many legitimate mobile applications leverage such protocols for language-specific APIs. Enterprises may be better served focusing on detection at other stages of adversarial behavior.

Log Sources
Data Component Name Channel
Mutable Elements
Field Description