Index / Techniques / Indicator Removal
Technique Record · T1070

Indicator Removal

Publicly-reported instances of Indicator Removal bypassing endpoint security products. Maintained on the same basis for every technique in the Index.

8
recorded bypasses
6
products affected

Products recorded as bypassed by Indicator Removal

ProductEntriesHigh-confidenceMost recent
Kaspersky 222024-04-22
Microsoft 222024-04-22
Avast 112023-08-11
AVG 112023-08-11
Palo Alto Networks 112026-03-17
Trend Micro 112023-08-11

All entries

ProductConfidenceDisclosedSource
Palo Alto Networks high 2026-03-17gbhackers.com record →
Kaspersky high 2024-04-22winbuzzer.com record →
Microsoft high 2024-04-22winbuzzer.com record →
Kaspersky high 2023-08-11www.safebreach.com record →
AVG high 2023-08-11www.safebreach.com record →
Avast high 2023-08-11www.safebreach.com record →
Trend Micro high 2023-08-11www.safebreach.com record →
Microsoft high 2023-08-11www.safebreach.com record →

Counts reflect distinct publicly-reported events on record; absence of an entry means no confirmed public report is on file.