Knowledge Base

Threat Encyclopedia

99 researched entries covering vulnerabilities, attack techniques, malware, tools and glossary terms — written so you can understand a finding, not just see a red flag.

Entries
99
Threat guides
70
Attack flows
7
Categories
5

How to read an entry

  1. 1

    Start with the summary

    The card and severity badge tell you what it is and how badly it ends when it lands.

  2. 2

    Follow the attack steps

    Each entry walks the chain in order — foothold, escalation, objective — so you can see where you sit.

  3. 3

    Work the fix list

    The green checklist is ordered: complete it top to bottom and the exposure is closed.

Vulnerability High

Apple Multiple Products Out-of-Bounds Write Vulnerability

Apple iOS, macOS, and iPadOS contain an out-of-bounds write vulnerability in CoreGraphics that may lead to arbitrary code execution.

Read entry →
Malware Critical

Banking Malware

Intercepts online banking sessions and adds fake fields to steal credentials and transfer funds.

Read entry →
Malware High

Botnet Client

An infected machine that takes orders from a command-and-control server and joins a wider swarm.

Read entry →
Vulnerability Critical

Broken Access Control

Users can reach records, routes or functions that belong to someone else.

Read entry →
Malware Medium

Browser Hijacker

Rewrites the homepage, search engine and new-tab behaviour, then tracks everything typed.

Read entry →
Attack Technique High

Brute Force

Every candidate password is tried systematically until one works.

Read entry →
Tool Info

Burp Suite

Intercepting proxy for testing web applications, with repeater, intruder and scanner modules.

Read entry →
Vulnerability High

Cisco Catalyst SD-WAN Manager Hex Encoding Vulnerability

Cisco Catalyst SD-WAN Manager contains a hex encoding vulnerability that could allow an unauthenticated, remote attacker to access an affected system with privileges of the admin user due to improper handling of URI encoding in an HTTP request.

Read entry →
Vulnerability High

Citrix NetScaler Improper Input Validation Vulnerability

Citrix NetScaler ADC and NetScaler Gateway contain an improper input validation vulnerability that could allow an unauthenticated attacker to execute arbitrary commands.

Read entry →
Vulnerability High

Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability

Citrix NetScaler ADC and NetScaler Gateway contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow for remote code execution or denial of service

Read entry →
Famous Malware Critical

Cobalt Strike

A legitimate penetration-testing tool that became the most common post-exploitation framework in crime.

Read entry →
Attack Technique Critical

Command Injection

Shell metacharacters in user input reach an OS command, giving direct code execution.

Read entry →

Attack Flows

Step-by-step chains showing how individual weaknesses connect into a full breach.

  1. API Abuse Chain

    1. An API is discovered whose endpoints are documented in a public JavaScript bundle.
    2. A GraphQL introspection query or a verbose error message reveals the full schema.
    3. Object-level authorization is tested by substituting another user's identifier in the request.

    8 steps

    View the full chain →
  2. Credential Stuffing Campaign

    1. A breach dump from an unrelated service is obtained, containing hundreds of millions of pairs.
    2. Known-invalid entries are filtered out so only plausible credentials remain.
    3. Those pairs are sprayed against the target login endpoint at low volume to evade rate limits.

    8 steps

    View the full chain →
  3. Exposed Endpoint to Web Shell

    1. An exposed admin endpoint or file-upload feature is discovered during enumeration.
    2. Weak validation is tested and found to accept a file with a server-side extension.
    3. The uploaded file is requested directly, returning execution output and confirming code execution.

    8 steps

    View the full chain →
  4. Man-in-the-Middle Session Theft

    1. The attacker joins the same wireless network as the target, or poisons the local gateway.
    2. Unencrypted traffic is observed, revealing which sites the victim visits without TLS.
    3. SSL stripping is applied to downgrade the first visit from HTTPS to HTTP.

    8 steps

    View the full chain →
  5. Phishing to Ransomware

    1. A spear-phishing email arrives referencing a real invoice, with a link to a convincing document portal.
    2. The victim enters their password on the look-alike page, handing over a valid credential.
    3. The credential is replayed against VPN or webmail that has no MFA, giving the attacker a legitimate foothold.

    8 steps

    View the full chain →
  6. SQL Injection to Full Breach

    1. Reconnaissance finds a search page that echoes a URL parameter back into the response.
    2. A single quote produces a database error, confirming that input reaches the query unparameterised.
    3. Boolean-based probing determines the injection point and the backend DBMS flavour.

    8 steps

    View the full chain →
  7. Supply Chain Compromise

    1. The attacker identifies a widely trusted software vendor with a large customer base.
    2. Access to the vendor's build environment or update server is obtained, often via a phishing email.
    3. The build process is modified so the injected code runs during normal compilation.

    8 steps

    View the full chain →

We use only the cookies needed to run this site — your session, your sign-in state and CSRF protection. There are no advertising or analytics trackers. How cookies are used