Glossary

Command and Control (C2)

When malware infects your computer, it needs to phone home to the hackers for instructions. Command and control (C2) is how hackers talk to their malware - telling it what to steal, when to attack, or how to spread. Blocking C2 traffic can stop an attack in its tracks.

What is Command and Control (C2)?

The infrastructure and communication channels that attackers use to maintain contact with compromised systems, send commands, and exfiltrate stolen data.

Why Should You Care?

Understanding command and control is essential for building a strong security posture. This knowledge helps organizations identify threats early and respond appropriately.

Is your business exposed?

Real-World Example

Security teams regularly encounter command and control in their day-to-day operations. Recognizing and responding to these scenarios is a core security competency.

How to Protect Against Command and Control (C2)

  1. 1.

    Block known C2 domains and IPs at firewall

  2. 2.

    Monitor outbound traffic for suspicious patterns

  3. 3.

    Use DNS filtering to block malicious domains

Related Terms

Botnet, Malware, Firewall

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required