Pretnje
18 direktnih pogodaka-
№ 063
Contractor Abuse … utside the same regime of training, oversight, HR process and discipline. When the contract ends, the account sometimes stays open.pretnja · trust
-
№ 037
Crypto-wallet drainer … that move crypto assets. Draining a wallet is the process in which the user, believing they are doing something legitimate, signs a transaction or an approval t …pretnja · social eng.
-
№ 013
Cryptominer … nd our electricity. In the background it uses our processors and graphics cards to mine cryptocurrency for the attacker while we pay the bill. It has no interes …pretnja · malware
-
№ 050
Denial of Service / DoS … n, so a small number of requests consumes all the processing capacity.pretnja · availability
-
№ 048
Dependency Confusion Dependency confusion is an attack on the process by which software build platforms find and deliver software dependencies. An attacker can publish a package on …pretnja · applications
-
№ 011
Fileless malware A scheduled task starts a process in memory every morning, through which the attacker connects and widens their presence.pretnja · malware
-
№ 031
Pretexting … department, a supplier, a project or an internal process, the conversation no longer sounds like an attack. It sounds like work. The victim does not give thing …pretnja · social eng.
-
№ 072
Prompt injection … ng an instruction apart from the content they are processing. When a model reads an email, a document, a page, a ticket or a message, the attacker can put text …pretnja · AI / ML
-
№ 038
Remote Code Execution A vulnerable image-processing library on the server lets an attacker run remote commands through a specially prepared file.pretnja · applications
-
№ 052
Resource Exhaustion … ustion targets what a system cannot work without: processor, memory, disk, network connections, threads, the database or processing queues. The aim is not neces …pretnja · availability
-
№ 010
Rootkit … cker privileged access while concealing malicious processes, files and connections from security tools. The deeper it sits, the harder it is to remove: a rootki …pretnja · malware
-
№ 070
SCADA/OT Attack … attack on SCADA and OT systems targets industrial processes, not only data. These are the systems that run manufacturing, energy, water, transport, buildings, s …pretnja · physical / IoT
-
№ 054
Service Abuse … s used for automated cryptocurrency mining or for processing somebody else's workloads.pretnja · availability
-
№ 064
Shadow IT … nce stays the same: data, identities and business processes move into a space with no control, no contract, no records and no recovery plan.pretnja · trust
-
№ 027
Spear Phishing … e weight therefore falls on the person and on the process: checking unusual requests through another channel (a call, in person), two-factor authentication, and …pretnja · social eng.
-
№ 003
Spyware … — the only trace is how the device behaves, which processes are running, and what traffic leaves it.pretnja · malware
-
№ 060
Supply Chain Attack … mpromises software, hardware, a supplier, a build process or an update mechanism before the product or service reaches the user. The victim then carries the pro …pretnja · trust
-
№ 009
Virus … file, and often attaches itself to other running processes and applications. That is what separates it from a worm: a virus needs a host and a user, while a wo …pretnja · malware
Tehnike
6 direktnih pogodaka-
№ 045
Process Injection … cious code into the address space of a legitimate process.tehnika · evasion
-
№ 023
Container Escape … ontainer escape is when an attacker controlling a process inside a container breaks that isolation and reaches the host (or other containers). From an applicati …tehnika · privileges
-
№ 012
Impair Defenses … are, clearing activity logs, disguising malicious processes with legitimate names, using encryption, and exploiting legitimate system tools.tehnika · execution
-
№ 014
In-Memory Execution Requires EDR with process behavior monitoring for detection.tehnika · execution
-
№ 021
Pass-the-Hash … tracted from memory of compromised systems (LSASS process).tehnika · privileges
-
№ 017
Rootkit Installation … el rootkits modify system calls to hide files and processes.tehnika · execution
Odbrane
12 direktnih pogodaka-
№ 020
Incident Response A planned process of identifying, containing, eradicating, and recovering from cyber incidents.odbrana · monitoring / response
-
№ 024
Backup & Recovery Backup and recovery encompasses the processes and technologies for regularly creating copies of data and systems, storing them securely, and enabling reliable r …odbrana · resilience
-
№ 033
CSPM … keeps reopening the bucket, the problem is in the process, not the tool.odbrana · resilience
-
№ 003
EDR … e capability. It records detailed telemetry about processes, network connections, file changes, and registry activity.odbrana · endpoints
-
№ 001
Endpoint Protection … filtering, and the ability to isolate suspicious processes. They often serve as the foundation upon which more advanced tools like EDR systems are built.odbrana · endpoints
-
№ 009
Identity & Access Management … y and access management encompasses the policies, processes, and technologies for creating, managing, and revoking digital identities and their access rights. T …odbrana · identity / access
-
№ 032
Microsegmentation … nication policies between individual services and processes.odbrana · resilience
-
№ 023
Patch Management Patch management is the process of identifying, testing, and applying software updates that fix known vulnerabilities. The goal is to reduce the time window in …odbrana · resilience
-
№ 041
Risk Assessment Systematic process of identifying, analyzing, and prioritizing cyber risks.odbrana · governance
-
№ 015
SIEM … n of correlation rules, and the team's ability to process and investigate generated alerts.odbrana · monitoring / response
-
№ 026
Secure Configuration The process includes defining configuration baselines for each system type, automated enforcement, and regular compliance checking. Deviations from the standard …odbrana · resilience
-
№ 044
Vulnerability Management Continuous process of discovering, classifying, prioritizing, and remediating vulnerabilities.odbrana · governance