Pretnje
6 direktnih pogodaka-
№ 042
API Abuse … see somebody else's invoice, if they can call an endpoint the frontend never displays, or if there is no limit on the number of requests, the API becomes open …pretnja · applications
-
№ 043
Authentication Bypass … a flaw in the logic is enough, or an unprotected endpoint, a predictable token, a misconfigured proxy, or a gap between two steps of the login.pretnja · applications
-
№ 050
Denial of Service / DoS One endpoint triggers a heavy database operation, so a small number of requests consumes all the processing capacity.pretnja · availability
-
№ 049
Distributed Denial of Service / DDoS … its the network layer and the application's login endpoint at the same time, so protection at one layer is not enough.pretnja · availability
-
№ 052
Resource Exhaustion … atabase, on memory, on the thread pool, or on one endpoint that costs too much.pretnja · availability
-
№ 045
SSRF … nvironments. If the server can reach the metadata endpoint, the attacker can try to extract temporary credentials and move from one hole in an application to a …pretnja · applications
Tehnike
1 direktan pogodakOdbrane
12 direktnih pogodaka-
№ 001
Endpoint Protection Endpoint protection encompasses software solutions that protect computers, servers, and mobile devices from malicious software and unauthorized activities. It c …odbrana · endpoints
-
№ 003
EDR EDR (Endpoint Detection and Response) is a technology that continuously monitors endpoint activity, records events, and enables detection, investigation, and re …odbrana · endpoints
-
№ 005
Mobile Device Security Managing and protecting mobile devices through MDM and MAM solutions.odbrana · endpoints
-
№ 006
Browser Isolation … oit kits, and web-based malware from reaching the endpoint.odbrana · endpoints
-
№ 034
DLP … ents) and applying rules per channel — mail, web, endpoint, cloud.odbrana · resilience
-
№ 031
Deception Technology Deploying decoy resources (honeypots, honeytokens) to detect attackers.odbrana · resilience
-
№ 022
IDS/IPS IDS/IPS are systems that monitor network traffic (or host activity) for patterns indicating an attack. An IDS (Intrusion Detection System) only reports suspicious activity; an IPS (Intrusion Prevention System) sits inline and can block it immediately.odbrana · monitoring / response
-
№ 017
MDR The service typically includes monitoring endpoint and network telemetry, alert triage, investigation of suspicious activity, and coordinated response to confir …odbrana · monitoring / response
-
№ 032
Microsegmentation Finer network division at workload or application level, not just VLANs.odbrana · resilience
-
№ 010
Privileged Access Management Privileged access management controls, monitors, and records the use of accounts with elevated permissions such as administrator accounts, service accounts, and root access. These accounts are the most valuable targets for attackers as they provide broad access to critical systems.odbrana · identity / access
-
№ 015
SIEM SIEM (Security Information and Event Management) is a system that collects logs and events from diverse sources across the entire infrastructure, centralizes them, and applies correlation rules to detect suspicious patterns and security incidents.odbrana · monitoring / response
-
№ 004
XDR … xtended Detection and Response) unifies data from endpoints, network, email, and cloud.odbrana · endpoints