Pretnje
32 direktna pogotka-
№ 015
Brute-force attack A brute-force attack breaks into an account by trying to log in over and over: automated tools work through password after password until one takes. It succeeds …pretnja · identity
-
№ 052
Resource Exhaustion Resource exhaustion targets what a system cannot work without: processor, memory, disk, network connections, threads, the database or processing queues. The aim …pretnja · availability
-
№ 056
BGP Hijacking The consequence can be loss of availability, interception of traffic, or its diversion through a network that should never have been on that path. Sometimes it …pretnja · availability
-
№ 013
Cryptominer … It has no interest in our data, only in our resources and how much of them there is.pretnja · malware
-
№ 068
Evil Twin A fake Wi-Fi network, known as an evil twin, imitates a legitimate wireless network so that users connect to an access point the attacker controls. The network name looks familiar, the signal can be stronger, and the device often suggests or restores the connection by itself.pretnja · physical / IoT
-
№ 046
Insecure Deserialization … pplication accepts an object from an untrusted source and handles it as though it were safe. At that point the attacker is not sending mere data but a specially …pretnja · applications
-
№ 054
Service Abuse … accounts in bulk and consumes the platform's resources.pretnja · availability
-
№ 053
Botnet Attacks … ng messages from compromised devices, changing sources to make blocking harder.pretnja · availability
-
№ 075
Cloud IAM misconfiguration … identity is permission to read data, spin up resources, change networks, assume roles and delete backups.pretnja · cloud
-
№ 063
Contractor Abuse An external developer copies the project's source code and uses it later on another engagement.pretnja · trust
-
№ 017
Credential stuffing … ating perfectly ordinary users, so blocking by source address helps little. It only takes a small share of people reusing a password for the attack to pay. The …pretnja · identity
-
№ 051
DNS Amplification … queries but forges the victim's address as the source.pretnja · availability
-
№ 057
DNS Poisoning … That way they can steer users to a fake page, intercept communication, or distribute malware from somewhere that resembles the legitimate source.pretnja · availability
-
№ 050
Denial of Service / DoS … network of compromised devices. Sometimes one source and a well-chosen vulnerability are enough.pretnja · availability
-
№ 048
Dependency Confusion … build system has no clearly configured package source, no namespace check, no locked versions and no integrity check, it can pull the malicious package by itsel …pretnja · applications
-
№ 049
Distributed Denial of Service / DDoS DDoS is not always a technical show of force. It can be a method of extortion, political pressure, disruption of a competitor, or a smokescreen while something …pretnja · availability
-
№ 016
Password spraying Password spraying is brute force turned around. Instead of trying many passwords on one account, the attacker tries common passwords across many accounts. That …pretnja · identity
-
№ 047
Path Traversal … ker can try to read configurations, passwords, source code and system files.pretnja · applications
-
№ 026
Phishing … eates pressure — your account is suspended, the parcel could not be delivered, the invoice is overdue — so a person reacts before they have time to think. Mass …pretnja · social eng.
-
№ 020
Privilege Escalation … l, moving from one account to another user's resources at the same level of rights.pretnja · identity
-
№ 055
Ransom DDoS … tied to revenue, trust or public pressure: e-commerce, finance, online services, gaming, media, government services. The threat often arrives at the moment when …pretnja · availability
-
№ 038
Remote Code Execution RCE rarely stays an isolated technical event. After the first execution come a web shell, further tools, data theft, lateral movement and an attempt to keep the …pretnja · applications
-
№ 025
SIM Swapping … the attacker's card, the mail reset codes are intercepted, the account is taken.pretnja · identity
-
№ 030
SMS phishing - Smishing … he message offers a simple reason to click: the parcel cannot be delivered, the account is blocked, a transaction looks suspicious, a package is waiting on a sm …pretnja · social eng.
-
№ 045
SSRF … generates a link preview or checks a remote resource. If the application accepts a user-supplied address without strict control, the attacker can force the ser …pretnja · applications
-
№ 019
Session Hijacking … st common is theft of the session cookie — by intercepting traffic on an unprotected connection, through a flaw on the site that allows the cookie to be read, o …pretnja · identity
-
№ 064
Shadow IT … that ended up in a private cloud, and cannot enforce rules over a tool that is not part of the system.pretnja · trust
-
№ 060
Supply Chain Attack … their own environment, because it comes from a source they trust.pretnja · trust
-
№ 018
Token Theft … oment the service issues it. The third way is intercepting the traffic between you and the service you are reaching. Once it is taken, the attacker no longer ne …pretnja · identity
-
№ 002
Trojan … r taken from somewhere other than the official source does everything it should — while in the background it has brought along a keylogger that records every ke …pretnja · malware
-
№ 036
Watering Hole Attack … tion, a forum, an industry association, or a resource used by one specific group of people.pretnja · social eng.
-
№ 008
Worm … what connects computers: the network, shared resources, unpatched vulnerabilities. It can carry extra cargo — ransomware, a backdoor, a remote access tool — so …pretnja · malware
Tehnike
11 direktnih pogodaka-
№ 004
Brute Force Brute force as a technique involves the systematic testing of a large number of credential combinations to gain unauthorized access. It includes classic exhaust …tehnika · initial access
-
№ 032
Resource Exhaustion Resource exhaustion as a technique involves deliberately overloading target systems to make them unavailable to legitimate users. The attacker targets CPU, memo …tehnika · exfiltration / impact
-
№ 009
AiTM AiTM sits between the user and the real service. Classic phishing steals a password; AiTM steals the live session. The victim gets a link, lands on a proxy that looks exactly like the real login (because it forwards everything to the real site), enters credentials and even the MFA code — the proxy passes them through, the real service issues a session token, and the attacker captures that token.tehnika · initial access
-
№ 020
Access Token Manipulation … nments where one token grants access to many resources.tehnika · privileges
-
№ 019
Lateral Movement Accessing shared resources using a stolen authentication tokentehnika · privileges
-
№ 043
Log Tampering … s Event Log, syslog, web server logs, and SIEM sources.tehnika · evasion
-
№ 028
Network Sniffing Passively intercepting network traffic to collect sensitive data.tehnika · discovery
-
№ 030
OSINT … ormation about targets from publicly available sources before an attack.tehnika · discovery
-
№ 018
Privilege Escalation … al escalation means accessing another user's resources at the same privilege level.tehnika · privileges
-
№ 025
Reconnaissance … ping, user and group enumeration, and shared resource discovery.tehnika · discovery
-
№ 033
Service Abuse … reation of fake accounts to exhaust platform resourcestehnika · exfiltration / impact
Odbrane
16 direktnih pogodaka-
№ 028
DDoS Protection DDoS protection encompasses technologies and services that detect and mitigate distributed denial-of-service attacks before malicious traffic reaches or overwhelms the target infrastructure.odbrana · resilience
-
№ 031
Deception Technology Deploying decoy resources (honeypots, honeytokens) to detect attackers.odbrana · resilience
-
№ 035
Firewall Traditional firewalls inspect source and destination address, port, and connection state. Next-generation firewalls (NGFW) add application awareness and user id …odbrana · resilience
-
№ 009
Identity & Access Management … ght users have the right access to the right resources at the right time.odbrana · identity / access
-
№ 016
Logging & Monitoring Logging and monitoring involves the systematic recording of activities and events on systems, networks, and applications, along with regular analysis of those records to detect anomalies and security incidents.odbrana · monitoring / response
-
№ 017
MDR … ills the gap for organizations that lack the resources or expertise to run their own security operations center. The service provider leverages advanced tools a …odbrana · monitoring / response
-
№ 008
Multi-Factor Authentication Multi-factor authentication requires two or more independent proofs of identity at login. It typically combines something the user knows (password), something they possess (phone, hardware key), and something they are (biometrics).odbrana · identity / access
-
№ 025
Network Segmentation … efore the attacker reaches the most valuable resources.odbrana · resilience
-
№ 038
Phishing Simulations Tools: KnowBe4, Proofpoint, GoPhish (open-source).odbrana · people
-
№ 015
SIEM … tem that collects logs and events from diverse sources across the entire infrastructure, centralizes them, and applies correlation rules to detect suspicious pa …odbrana · monitoring / response
-
№ 026
Secure Configuration … ion baselines for each system type, automated enforcement, and regular compliance checking. Deviations from the standard are logged and remediated.odbrana · resilience
-
№ 042
Security Policies Formal documents defining an organization's cybersecurity rules and standards.odbrana · governance
-
№ 019
Threat Intelligence Sources include OSINT, commercial feeds, ISACs, and dark web monitoring.odbrana · monitoring / response
-
№ 036
Virtual Private Network … y means controlled remote access to internal resources — from home, on the road, in the field. Traffic inside the tunnel cannot be read in transit, even on hote …odbrana · resilience
-
№ 004
XDR … abilities by correlating signals from multiple sources into one platform.odbrana · endpoints
-
№ 011
Zero Trust Zero Trust is a security concept that assumes no user, device, or network segment should be automatically trusted, regardless of whether it is inside or outside the corporate network. Every access request is verified before approval.odbrana · identity / access