Detection Playbook: Disable Windows Event Logging (T1562.002)
T1562.002 · 2026-07-17 Disable Windows Event Logging Defense Evasion MITRE ATT&CK → Technique Disable Windows Event Logging (T1562.002) Tactic Defense Evasion Platforms Windows, Linux, macOS Overview Disable Windows Event Logging (T1562.002) covers attacker actions that stop, corrupt, or suppress the Windows event logging pipeline — most commonly by tampering with the Windows Event Log service, … Read more