Bitdefender is one of just six vendors to pass the AV-Comparatives Anti-Tampering Certification Test for 2025. Bitdefender earned the coveted Anti-Tampering Certification by demonstrating it consistently thwarted key defense-evasion techniques used by cybercriminals and spoiled an attacker’s ability to bypass security controls. This certification reflects our ongoing commitment to keep organizations protected against evolving cyberattack techniques. 
Modern cybercriminal playbooks include gaining access to your environment and then disabling security controls on your systems, so their attacks have a greater chance of succeeding.
These defense-evasion techniques help threat actors extend the dwell time of their presence on your network and impede remediation attempts. The longer an attacker remains undetected on systems, the higher the potential damage from an attack.
One of the most common defense evasion techniques threat actors use is targeting security products themselves. To accomplish this, the threat actor typically obtains privileged access in a system.
They achieve this level of access through a variety of techniques including credential stuffing or harvesting, authentication keys exploits or supply-chain attacks. Even with elevated privileges, most endpoint security solutions are an annoyance so attackers attempt to disrupt and disable the processes of the security products, so their tactics can bypass detection. There are a few customary ways that attackers achieve this:
If your security software can be tampered with, it opens the door for the attacker to move laterally across networks, infecting other systems while remaining undetected. This allows threat actors to plant ransomware, exfiltrate sensitive data, and more. This is why it is crucial to ensure your security vendors achieve the AV-Comparatives Anti-Tampering Certification.
AV-Comparatives performed its evaluations on systems running Windows 11 with the imaginary threat actors elevated to “a high integrity or system integrity privileged user.” This is important as privileged-user access is common in modern security breaches. The purpose of the AV-Comparatives test was to evaluate the anti-tampering properties of various AV/EPP/EDR solutions. The testing process involved two simple steps:
AV Comparatives tested numerous security solutions, each from different vendors, during its Anti-Tampering Certification Test.
The evaluation included Bitdefender GravityZone Business Security Enterprise, with mostly default settings, and with the “uninstall password” feature enabled.
One-in-three security solutions failed the certification test. However, Bitdefender GravityZone passed all of the anti-tampering tests and achieved the certification of “AV-Comparatives Approved.” Bitdefender GravityZone successfully resisted eight different approaches to disrupt or disable it:
If you are a Bitdefender customer, then the 2025 AV-Comparatives Anti-Tampering Certification means you can expect steadfast security even when directly targeted by cybercriminal tactics. Our ability to prevent defense evasion tactics is an assurance that our solution will stand its ground when others may falter.  
Read the complete 2025 AV- Comparatives Anti-Tampering Report.