Knowledge Base
Threat Encyclopedia
99 researched entries covering vulnerabilities, attack techniques, malware, tools and glossary terms — written so you can understand a finding, not just see a red flag.
- Entries
- 99
- Threat guides
- 70
- Attack flows
- 7
- Categories
- 5
How to read an entry
-
1
Start with the summary
The card and severity badge tell you what it is and how badly it ends when it lands.
-
2
Follow the attack steps
Each entry walks the chain in order — foothold, escalation, objective — so you can see where you sit.
-
3
Work the fix list
The green checklist is ordered: complete it top to bottom and the exposure is closed.
Metasploit
Exploitation framework with a large module library for payloads, scanners and post-exploitation.
Read entry →Mirai
A 2016 IoT botnet that weaponised default credentials to build a terabit-scale DDoS engine.
Read entry →Missing Security Headers
Absent CSP, HSTS, X-Frame-Options and Referrer-Policy leave the browser with no guard rails.
Read entry →Mobile Malware
Targets phones and tablets to intercept SMS codes, spy on users or premium-rate subscribe.
Read entry →Nessus
Vulnerability scanner that checks hosts against a large plugin library of known issues.
Read entry →Nikto
Web server scanner that checks for dangerous files, outdated software and misconfigurations.
Read entry →Nmap
Network mapper and port scanner that fingerprints services and operating systems.
Read entry →NotPetya
A 2017 wiper disguised as ransomware that caused over ten billion dollars of global damage.
Read entry →Outdated or Vulnerable Components
Known-CVE frameworks, plugins and libraries ship with the application.
Read entry →Phishing
Fraudulent messages push victims to a fake login page or a malicious attachment.
Read entry →Privilege Escalation
A low-privilege foothold is converted into administrative or root control.
Read entry →Race Condition Exploitation
Requests fired simultaneously slip past checks that assume operations run one at a time.
Read entry →