Knowledge Base
Threat Encyclopedia
99 researched entries covering vulnerabilities, attack techniques, malware, tools and glossary terms — written so you can understand a finding, not just see a red flag.
- Entries
- 99
- Threat guides
- 70
- Attack flows
- 7
- Categories
- 5
How to read an entry
-
1
Start with the summary
The card and severity badge tell you what it is and how badly it ends when it lands.
-
2
Follow the attack steps
Each entry walks the chain in order — foothold, escalation, objective — so you can see where you sit.
-
3
Work the fix list
The green checklist is ordered: complete it top to bottom and the exposure is closed.
Vulnerabilities
Weaknesses an attacker can exploit — 19 entries.
Outdated or Vulnerable Components
Known-CVE frameworks, plugins and libraries ship with the application.
Read entry →Security Misconfiguration
Default credentials, verbose errors, open cloud buckets and unnecessary services widen the attack surface.
Read entry →Sensitive Data Exposure
Passwords, keys or personal records travel unencrypted or sit in readable backups and logs.
Read entry →Server-Side Request Forgery (SSRF)
The server is made to fetch a URL of the attacker's choosing, reaching internal services and cloud metadata.
Read entry →SQL Injection
User input is concatenated into a database query, letting an attacker read, modify or delete data.
Read entry →Unrestricted File Upload
Uploads that are not type-checked or stored outside the web root become instant web shells.
Read entry →Weak Password and Credential Policy
Short passwords, no breach checks and absent lockout make credential attacks trivial.
Read entry →