Vulnerabilities
Named vulnerabilities, weakness classes, and exploit categories
- Authentication Bypass570 words
**Authentication Bypass** **Authentication Bypass** is a security vulnerability that allows an attacker to gain unauthorized access to a system by ci
- Market for zero-day exploits616 words
The **market for zero-day exploits** refers to the buying and selling of undisclosed software vulnerabilities that can be exploited by attackers befor
- Hardware backdoor639 words
**Hardware Backdoor** A **hardware backdoor** is a hidden method of bypassing normal authentication or security controls within a hardware device. Un
- DNS Cache Poisoning603 words
**DNS Cache Poisoning** **DNS Cache Poisoning** is a cyber attack technique that manipulates the Domain Name System (DNS) cache to redirect users fro
- Blackhole exploit kit849 words
**Blackhole Exploit Kit** The **Blackhole exploit kit** was a widely used toolkit designed to automate the exploitation of vulnerabilities in web bro
- Path Traversal675 words
**Path Traversal** is a security vulnerability that allows an attacker to access directories and files stored outside the web root folder. By manipula
- DHCP Spoofing681 words
**DHCP Spoofing** **Overview**
- Session Fixation800 words
**Session Fixation** Session Fixation is a web security vulnerability that allows an attacker to hijack a valid user session. This technique involves
- Web Shell745 words
**Web Shell** A **web shell** is a malicious script or program installed on a web server to enable remote administration and control. It allows attac
- Blind SQL Injection742 words
**Blind SQL Injection** is a type of cybersecurity vulnerability that occurs when an attacker can execute SQL (Structured Query Language) code on a da
- Reflected XSS806 words
**Reflected Cross-Site Scripting (XSS)** is a type of security vulnerability that occurs in web applications. It allows attackers to inject malicious
- XML Injection536 words
**XML Injection** XML Injection is a type of attack that targets applications using XML (Extensible Markup Language) for data exchange. Attackers exp
- Email Injection627 words
**Email Injection** is a security vulnerability that occurs when an attacker is able to manipulate an email server by injecting malicious input into e
- LDAP Injection704 words
**LDAP Injection** **LDAP Injection** is a code injection technique used to exploit web applications that construct Lightweight Directory Access Prot