CAPEC 578 Disable Security Software

Usable Standard Medium Risk
Severity Medium

Description

An adversary exploits a weakness in access control to disable security tools so that detection does not occur. This can take the form of killing processes, deleting registry keys so that tools do not start at run time, deleting log files, or other methods.

Mitigations

1

Consequences

Relationships

Related ATT&CK Techniques

7

Resources Required

1