Vulnerabilities
Named vulnerabilities, weakness classes, and exploit categories
- EternalRocks659 words
EternalRocks is a network worm that exploits multiple vulnerabilities in the Microsoft Windows operating system. Discovered in May 2017, it uses seven
- DispenserXFS692 words
**DispenserXFS** is a type of malware specifically designed to target Automated Teller Machines (ATMs). It is known for its ability to manipulate the
- DramNudge558 words
**DramNudge** is a sophisticated malware strain identified in recent cybersecurity investigations. It is known for its ability to exploit vulnerabilit
- CMSBrute651 words
**CMSBrute** is a type of malware designed to exploit vulnerabilities in Content Management Systems (CMS) through brute force attacks. These attacks t
- Zero Day Attack674 words
**Zero Day Attack** A **Zero Day Attack** refers to a cyber attack that exploits a previously unknown vulnerability in software or hardware. These vu
- FREAK486 words
**FREAK** (Factoring RSA Export Keys) is a security vulnerability that affected SSL/TLS protocols, allowing attackers to intercept and decrypt secure
- BEAST (security exploit)963 words
**Browser Exploit Against SSL/TLS (BEAST)** is a security exploit that targets vulnerabilities in the Secure Sockets Layer (SSL) and Transport Layer S
- Certificate authority compromise576 words
A **certificate authority compromise** occurs when an unauthorized entity gains access to the systems or processes of a certificate authority (CA). A
- CCleaner Backdoor577 words
**CCleaner Backdoor** The **CCleaner Backdoor** refers to a cyber incident involving the popular system optimization tool CCleaner. In 2017, maliciou
- Beapy558 words
**Beapy** is a type of malware primarily known for its cryptojacking capabilities, which involve unauthorized use of a victim's computer resources to
- BADAUDIO676 words
**BADAUDIO** is a malware strain identified for its unique approach to exploiting vulnerabilities in audio processing components of target systems. As
- Server Side Request Forgery708 words
**Server Side Request Forgery (SSRF)** is a web security vulnerability that allows an attacker to induce a server-side application to make HTTP reques
- Oracle WebLogic Server, Injection538 words
**Oracle WebLogic Server, Injection** Oracle WebLogic Server is a Java EE application server used for building and deploying enterprise applications.
- Spectre (security vulnerability)722 words
**Spectre (security vulnerability)** is a class of vulnerabilities that exploit speculative execution, a feature in modern microprocessors used to imp
- Pacman (security vulnerability)509 words
**Pacman (security vulnerability)** is a security vulnerability identified in certain computer systems, primarily affecting hardware architectures tha
- Sony BMG copy protection rootkit scandal813 words
The **Sony BMG copy protection rootkit scandal** refers to a significant controversy that emerged in 2005 when it was discovered that Sony BMG Music E
- Vulnerability of nuclear plants to attack494 words
**Vulnerability of Nuclear Plants to Attack** Nuclear plants are critical infrastructure facilities that generate electricity through nuclear reactio
- Cross-site leaks765 words
**Cross-site leaks (XS-Leaks)** are a class of web security vulnerabilities that exploit the way web browsers handle cross-origin requests. Unlike tra
- Speculative Store Bypass639 words
**Speculative Store Bypass** Speculative Store Bypass (SSB) is a vulnerability affecting modern processors that exploit speculative execution, a tech
- File inclusion vulnerability712 words
**File inclusion vulnerability** is a security flaw found in web applications that allows an attacker to include files on a server through the web bro