Question 10 of 10Pro Only

What is command and control communication in the context of malware, and what network patterns should a SOC analyst look for to identify C2 activity in logs and traffic?

Sample answer preview

Command and control, commonly abbreviated as C2 or C&C, refers to the communication channel that malware establishes between an infected system and an attacker-controlled server.

command and controlC2beaconingDNS tunnelingJA3 fingerprintTLS inspection

Unlock the full answer

Get the complete model answer, key points, common pitfalls, and access to 9+ more SOC Analyst interview questions.

Upgrade to Pro

Starting at $19/month • Cancel anytime