Knowledge Base

Threat Encyclopedia

99 researched entries covering vulnerabilities, attack techniques, malware, tools and glossary terms — written so you can understand a finding, not just see a red flag.

Entries
99
Threat guides
70
Attack flows
7
Categories
5

How to read an entry

  1. 1

    Start with the summary

    The card and severity badge tell you what it is and how badly it ends when it lands.

  2. 2

    Follow the attack steps

    Each entry walks the chain in order — foothold, escalation, objective — so you can see where you sit.

  3. 3

    Work the fix list

    The green checklist is ordered: complete it top to bottom and the exposure is closed.

Attack Techniques

How attacks are actually carried out — 12 entries.

Attack Technique High

Brute Force

Every candidate password is tried systematically until one works.

Read entry →
Attack Technique Critical

Command Injection

Shell metacharacters in user input reach an OS command, giving direct code execution.

Read entry →
Attack Technique Critical

Credential Dumping

Stored or cached credentials are extracted from a host so they can be replayed elsewhere.

Read entry →
Attack Technique High

Credential Stuffing

Username and password pairs leaked from one breach are replayed against other services.

Read entry →
Attack Technique Medium

DNS Tunneling

Data is smuggled through DNS queries and responses, bypassing egress filters.

Read entry →
Attack Technique High

Lateral Movement

Once inside, the attacker pivots from the compromised host to neighbouring systems.

Read entry →
Attack Technique High

Man-in-the-Middle (MitM)

The attacker silently relays and alters traffic between two parties who think they are alone.

Read entry →
Attack Technique High

Phishing

Fraudulent messages push victims to a fake login page or a malicious attachment.

Read entry →
Attack Technique Critical

Privilege Escalation

A low-privilege foothold is converted into administrative or root control.

Read entry →
Attack Technique Medium

Race Condition Exploitation

Requests fired simultaneously slip past checks that assume operations run one at a time.

Read entry →
Attack Technique High

Session Hijacking

A live session token is stolen or predicted, giving the attacker the victim's logged-in identity.

Read entry →
Attack Technique High

Spear Phishing

A researched, personalised message targets one specific person inside an organisation.

Read entry →

We use only the cookies needed to run this site — your session, your sign-in state and CSRF protection. There are no advertising or analytics trackers. How cookies are used