Vulnerabilities

Named vulnerabilities, weakness classes, and exploit categories

  • EternalRocks659 words

    EternalRocks is a network worm that exploits multiple vulnerabilities in the Microsoft Windows operating system. Discovered in May 2017, it uses seven

  • DispenserXFS692 words

    **DispenserXFS** is a type of malware specifically designed to target Automated Teller Machines (ATMs). It is known for its ability to manipulate the

  • DramNudge558 words

    **DramNudge** is a sophisticated malware strain identified in recent cybersecurity investigations. It is known for its ability to exploit vulnerabilit

  • CMSBrute651 words

    **CMSBrute** is a type of malware designed to exploit vulnerabilities in Content Management Systems (CMS) through brute force attacks. These attacks t

  • Zero Day Attack674 words

    **Zero Day Attack** A **Zero Day Attack** refers to a cyber attack that exploits a previously unknown vulnerability in software or hardware. These vu

  • FREAK486 words

    **FREAK** (Factoring RSA Export Keys) is a security vulnerability that affected SSL/TLS protocols, allowing attackers to intercept and decrypt secure

  • BEAST (security exploit)963 words

    **Browser Exploit Against SSL/TLS (BEAST)** is a security exploit that targets vulnerabilities in the Secure Sockets Layer (SSL) and Transport Layer S

  • Certificate authority compromise576 words

    A **certificate authority compromise** occurs when an unauthorized entity gains access to the systems or processes of a certificate authority (CA). A

  • CCleaner Backdoor577 words

    **CCleaner Backdoor** The **CCleaner Backdoor** refers to a cyber incident involving the popular system optimization tool CCleaner. In 2017, maliciou

  • Beapy558 words

    **Beapy** is a type of malware primarily known for its cryptojacking capabilities, which involve unauthorized use of a victim's computer resources to

  • BADAUDIO676 words

    **BADAUDIO** is a malware strain identified for its unique approach to exploiting vulnerabilities in audio processing components of target systems. As

  • Server Side Request Forgery708 words

    **Server Side Request Forgery (SSRF)** is a web security vulnerability that allows an attacker to induce a server-side application to make HTTP reques

  • Oracle WebLogic Server, Injection538 words

    **Oracle WebLogic Server, Injection** Oracle WebLogic Server is a Java EE application server used for building and deploying enterprise applications.

  • Spectre (security vulnerability)722 words

    **Spectre (security vulnerability)** is a class of vulnerabilities that exploit speculative execution, a feature in modern microprocessors used to imp

  • Pacman (security vulnerability)509 words

    **Pacman (security vulnerability)** is a security vulnerability identified in certain computer systems, primarily affecting hardware architectures tha

  • Sony BMG copy protection rootkit scandal813 words

    The **Sony BMG copy protection rootkit scandal** refers to a significant controversy that emerged in 2005 when it was discovered that Sony BMG Music E

  • Vulnerability of nuclear plants to attack494 words

    **Vulnerability of Nuclear Plants to Attack** Nuclear plants are critical infrastructure facilities that generate electricity through nuclear reactio

  • Cross-site leaks765 words

    **Cross-site leaks (XS-Leaks)** are a class of web security vulnerabilities that exploit the way web browsers handle cross-origin requests. Unlike tra

  • Speculative Store Bypass639 words

    **Speculative Store Bypass** Speculative Store Bypass (SSB) is a vulnerability affecting modern processors that exploit speculative execution, a tech

  • File inclusion vulnerability712 words

    **File inclusion vulnerability** is a security flaw found in web applications that allows an attacker to include files on a server through the web bro

Page 1Next →