Knowledge Base
Threat Encyclopedia
99 researched entries covering vulnerabilities, attack techniques, malware, tools and glossary terms — written so you can understand a finding, not just see a red flag.
- Entries
- 99
- Threat guides
- 70
- Attack flows
- 7
- Categories
- 5
How to read an entry
-
1
Start with the summary
The card and severity badge tell you what it is and how badly it ends when it lands.
-
2
Follow the attack steps
Each entry walks the chain in order — foothold, escalation, objective — so you can see where you sit.
-
3
Work the fix list
The green checklist is ordered: complete it top to bottom and the exposure is closed.
Tools
Software used by defenders and attackers — 9 entries.
Burp Suite
Intercepting proxy for testing web applications, with repeater, intruder and scanner modules.
Read entry →Hydra
Fast online password brute-forcer supporting dozens of protocols and services.
Read entry →John the Ripper
Offline password cracker for testing hash strength from leaked or captured databases.
Read entry →Metasploit
Exploitation framework with a large module library for payloads, scanners and post-exploitation.
Read entry →Nessus
Vulnerability scanner that checks hosts against a large plugin library of known issues.
Read entry →Nikto
Web server scanner that checks for dangerous files, outdated software and misconfigurations.
Read entry →Nmap
Network mapper and port scanner that fingerprints services and operating systems.
Read entry →sqlmap
Automates detection and exploitation of SQL injection, including database dumping.
Read entry →Wireshark
Graphical packet analyser for capturing and dissecting network traffic.
Read entry →