T1070 - Indicator Removal - MITRE ATT&CK

Threat entity extracted from intelligence sources

Frequency
29
occurrences
First Seen
February 9, 2026
Last Seen
July 9, 2026

T1070 - Indicator Removal is a mitre_attack tracked across 27 threat clusters and 29 intelligence report mentions on ThreatCluster. First observed February 9, 2026; most recent activity July 9, 2026.

Related Threat Clusters

Recent Intelligence Reports

  • Microsoft details GigaWiper destructive backdoor assembled from older tools — Feeds.Feedburner · July 9, 2026
  • AnyDesk Phishing Attack Uses Scheduled Task Persistence and Artifact Deletion to Evade Detection — Cybersecuritynews · July 7, 2026
  • Mistic Malware Blends Into Microsoft Endpoint Components Using Malicious EndpointDlp.dll — Gbhackers · June 30, 2026
  • G0129 — attack.mitre.org · June 29, 2026
  • 'Jackpotting' thieves get ATMs to spit out stacks of cash in WA and OR - Tri — Tri-Cityherald · June 28, 2026
  • Exploitation Of Sonicwall Vpn — www.huntress.com · June 23, 2026
  • Salesloft Drift Breach Recap — www.anomali.com · June 21, 2026
  • Hackers Exploit AWS CloudTrail and Google Cloud Logging to Hide Attacks and Steal Logs — Gbhackers · June 11, 2026

CVSS v3.1 Breakdown