Getting into an organisation is only the first objective for many attackers. Once they have established access, they may try to weaken or disable the security product intended to stop them. This leaves the attacker free to continue with far less risk of detection or interruption.
Tampering can take many forms, from modifying registry settings and interfering with se...