Attack Ent T1685 005 Clear Windows Event Logs

Analyze MITRE ATT&CK T1685.005 Clear Windows Event Logs in the enterprise matrix. Use for TTP triage, detection engineering, hunting, defensive emulation planning, mitigations, incident response mapping, ATT&CK coverage, or questions mentioning T1685.005, Clear Windows Event Logs, or enterprise ATT&CK. Adversaries may clear Windows Event Logs to hide the activity of an intrusion.

santosomar Updated

File contents

santosomar/mitre-attack-agent-skills/tree/main/enterprise/attack-ent-t1685-005-clear-windows-event-logs commit 27e0104792

Frequently asked questions

npx skillmds@latest add santosomar/attack-ent-t1685-005-clear-windows-event-logs