Secure Configuration
Odbrana u centru, pretnje koje suzbija levo, tehnike koje neutrališe desno. Ispod kartice — profil odbrane: šta presreće i koliko košta.
← Threats it reduces38
Threats it reduces. Klik vodi na stranicu pojma.
- Supply Chain Attack→
- Backdoor→
- Remote Code Execution→
- Accidental Data Leak→
- Privilege Escalation→
- Cloud IAM misconfiguration→
- Shadow IT→
- Authentication Bypass→
- Fileless malware→
- Rootkit→
- SQL Injection→
- Token Theft→
- Brute-force attack→
- Cryptominer→
- IoT Device Compromise→
- Session Hijacking→
- API Abuse→
- Password spraying→
- Cloud storage exposure→
- SSRF→
- Shared Account Abuse→
- Cross-Site Scripting→
- Insecure Deserialization→
- Model theft / extraction→
- Prompt injection→
- DNS Amplification→
- Denial of Service / DoS→
- Service Abuse→
- Resource Exhaustion→
- SCADA/OT Attack→
- Kerberoasting→
- Physical Access Attack→
- BGP Hijacking→
- Cross-Site Request Forgery→
- DNS Poisoning→
- Dependency Confusion→
- Path Traversal→
- USB Drop Attack→
Secure Configuration
Secure configuration involves applying established security baselines to all systems, services, and applications in an organization. The goal is to reduce the attack surface by eliminating unnecessary functions, default passwords, and insecure settings.
← Techniques it neutralizes22
Techniques it neutralizes. Klik vodi na stranicu pojma.
- Exploitation→
- Malware Delivery→
- Configuration Abuse→
- Privilege Escalation→
- Persistence→
- Automation & Scripting→
- Resource Exhaustion→
- Brute Force→
- Container Escape→
- Living off the Land→
- OSINT→
- Service Abuse→
- Website Defacement→
- In-Memory Execution→
- DLL Sideloading→
- Supply Chain Compromise→
- Domain Account Discovery→
- Log Tampering→
- Physical Access→
- Forge Kerberos Tickets→
- Access Token Manipulation→
- Rootkit Installation→