Esc
Disable or Modify Tools - T1562.001
(ATT&CK® Technique)
Definition
Adversaries may modify and/or disable security tools to avoid possible detection of their malware/tools and activities. This may take many forms, such as killing security software processes or services, modifying / deleting Registry keys or configuration files so that tools do not operate properly, or other methods to interfere with security tools scanning or reporting information. Adversaries may also disable updates to prevent the latest security patches from reaching tools on victim systems.
D3FEND Inferred Relationships
Browse the D3FEND knowledge graph by clicking on the nodes below.