SIGNAL//DESK
AI securitysrc: MITRE ATLAS

Exploitation for Defense Evasion

Exploitation for defense evasion is when a hacker finds a mistake in a computer program's code and uses it like a secret back door to turn off or sneak past security tools, similar to finding a loose window latch to bypass a home alarm system.

This refers to the tactical use of software vulnerabilities—such as buffer overflows or logic errors—within security controls or the underlying OS to disable, blind, or bypass defensive mechanisms, allowing an adversary to maintain persistence or execute unauthorized code without detection.

Adversaries may exploit a system or application vulnerability to bypass security features. Exploitation of a vulnerability occurs when an adversary takes advantage of a programming error in a program, service, or within the operating system software or kernel itself to execute adversary-controlled code. Vulnerabilities may exist in defensive security software that can be used to disable or circumvent them, effectively neutralizing the security posture of the target environment.


← all terms