Skip to content

Tag index

Generated from page-level ## Tags sections. Each tag below links to the pages that currently use it.

All tags

.NET

.NET deserialization

.NET downloaders

.NET malware

.NET reflection

.pth

.vu TLD

/accessv2

/api/session/reset_password

/dev/kvm

/proc/1/environ

0-day

0.14.3

0x50594d

146.70.139.154

158.220.87.79

192.42.116.105

192.42.116.58

1H 2026 State of Exploitation

2FA bypass

2FA harvesting

2FA recovery codes

3CX

404 TDS

43.228.157.68

4sync

@gl_introduced

@marketfront

@tqm-mfe

.bin

<all_urls>

AA26-231A

AA26-237A

AAA virtual server

Ababil of Minab

ABRT

abuse response

academia

academic research

academic sector

Accellion

access as a service

access broker

access brokers

access control

access control bypass

access keys

access optionality

access token abuse

access token theft

Accessibility Service

account abuse

account hijacking

account lockout

account takeover

account-takeover

ACR Stealer

AcridRain

Acronis

Acronis TRU

act_pedit

ACTINIUM

Activator.CreateInstance

Active Directory

active exploitation

active probing

active threat

active-exploitation

ActiveCampaign

actively-exploited

ActiveX

activism

actor

actors

ad blocker

AD CS

ad fraud

adaptive identity management

adaptive identity phishing

Adaptix C2

AdaptixC2

ADB TCP/5555

Adblock for YouTube

add/add collision

addon domain

Adform

ADFS

Admin API key theft

admin takeover

administrator account creation

Adobe ColdFusion

Adobe Commerce

ADP vs vendor CVSS divergence

ADS

Adspect

Advanced IP Scanner

advanced persistent threat

Advanced Protection

Adversa

Adversa AI

adversary-in-the-middle

advertising technology

adware

adware history

aerospace

AES encrypted payload

AES-128-CBC

AES-256-CTR

AES-256-GCM

AES-CTR

AES-GCM

AES-GCM C2

Aeternum

AFD.sys

affiliate hijacking

Afghan telecom

Afghanistan

AFP

Africa

agent containment

agent frameworks

agent hooks

agent logs

agent memory

agent monitoring

agent platforms

agent polling protocol

agent skills

agent state

agent-to-agent

AgentBaiting

agentic AI

agentic botnets

agentic browser

agentic browsers

agentic evaluation

agentic execution

agentic IDE

agentic malware

agentic pipeline

agentic ransomware

agentic threat actor

Agentjacking

AGENTPSD

AgentWorm

agetty

AI

AI agent

AI agent security

AI agent tooling

AI agents

AI anti-analysis

AI application infrastructure

AI assistant credentials

AI assistants

AI benchmarks

AI brand impersonation

AI browsers

AI chatbot abuse

AI coding agents

AI credential theft

AI data exfiltration

AI developer tooling

AI framework

AI gateway

AI IDE

AI infrastructure

AI infrastructure hijacking

AI memory poisoning

AI model encryption

AI model evaluation

AI Now Institute

AI pentesting

AI search poisoning

AI security

AI services

AI supply chain

AI tooling

AI tools

AI trust boundary

AI vishing

AI vulnerability consumption

AI vulnerability discovery

AI website builder

AI workflow

ai-abuse

ai-agent

AI-assisted

AI-assisted C2

AI-assisted development

AI-assisted exploit

AI-assisted intrusion

AI-assisted malware

AI-assisted malware development

AI-assisted phishing

AI-assisted vulnerability discovery

AI-augmented operations

AI-enabled malware

AI-enhanced malware

AI-generated advisory

AI-generated exploit

AI-generated finding

AI-generated malware

AI-generated narrator

Aider

Aikido

AISURU

AiTM

AitM

Ajax.NET Professional

AjaxPro

Albania

alert fatigue

algorithm confusion

Alibaba

Alibaba OSS

Allen-Bradley

allowed_classes

Alternate Data Stream

Amadey

Amatera Stealer

Amazon Kiro

Amazon Q Developer

Amazon S3

Amazon SES

Amcache

AMOS

AMSI bypass

AMSI patch

AmsiScanBuffer

Ancillary Function Driver

Android

Android Accessibility Service

Android ADB

Android automotive

Android Debug Bridge

Android kernel

Android malware

Android RAT

Android spyware

Android TV

Anthropic

anthropickit

anti-analysis

anti-bot

anti-distillation

anti-forensics

anti-sandbox

Anubis ransomware

ANY.RUN

AnyDesk

AOL Mail

Aone

Apache Tomcat

Apache Zeppelin

APC EarlyBird

Apex One

API abuse

API enumeration

API exposure

API key exposure

API key theft

API keys

API-driven payloads

apintergrationpost

app-bound encryption

App-Bound Encryption bypass

AppDomainManager

AppDomainManager injection

Apple

Apple Sign-In

Apple threat notification

AppleJeus

AppleScript

AppleSeed

appliance

application database

application delivery controller

application token

AppRemover

APSB26-68

APT

APT simulation

APT-C-08

APT27

APT28

APT29

APT32

APT36

APT37

APT42

APT43

APT44

APT45

Aptos

Aquatic Panda

AquilaRAT

arbitrary code execution

arbitrary file deletion

arbitrary file disclosure

arbitrary file read

arbitrary file upload

arbitrary file write

arbitrary JavaScript

arbitrary SQL execution

ArcBridge

Arch Linux

Arctic Wolf

ardrv.sys

ArduPilot

Argo CD

ArgoCD

argocd-mcp

Arista

Arista EOS

ARL

Armageddon

ArmCorp

Armored Likho

arrayref

arrest

Artem Dinaburg

Artifact Signing

Artifactory

arXiv

AryStinger

AS32167

ASA

ASCII smuggling

ASHX

Asia targeting

ASLR bypass

ASNs

ASP.NET

ASP.NET machineKey

ASPX web shells

assume-breach

Astra

Astro

ASUS AiCloud routers

ASUS router

AsyncAPI

AsyncRAT

atd

Atlas RAT

Atlassian

Atomic Stealer

attack-rate

attribution

audio surveillance

AUDIOFIX

audit logging

audit telemetry

auditd disabling

AUR

Aura

Australia

authenticated RCE

authenticated remote code execution

authentication bypass

authentication coercion

authentication laundering

authentication stack

authentication-coercion

Authenticode impersonation

authorization

authorization bypass

auto-execution

AUTODYN

AutoGen Studio

AutoHotKey

AutoJack

automotive

automotive sector

autonomous agents

autonomous AI

autonomous attack

autonomous attacks

autonomous exploitation

autonomous scanning

autonomous vulnerability discovery

autorun=1

AV killer

Avada

Avalon

aviation

AVIF

AWS

AWS CloudTrail

AWS S3

AWS Secrets Manager

axios

Azure

Azure Active Directory

Azure CLI

Azure Cosmos DB

Azure DevOps

Azure Storage

Babuk

back-end

Backblaze

backdoor

Backdoor.Mistic

Backdoor.Turn

Backstage

backup disruption

backup recovery keys

backup targeting

backups

Bad Epoll

BadBlocker

BADBOX

Badbox 2.0

BadIIS

BadPotato

Baileys

balance-overflow

Balbooa Forms

Balochistan Police

Balonx

Balonx Sistema

Banana RAT

Banco de Infects

bandcampro

Bandook

banking

banking fraud

banking malware

banking trojan

Baron Samedit

Barracuda

Base64

BaseZipInstaller

Bash Uploader

batch loader

batch script

Bayesian scoring

BCS

BCSAllowedTypeNames

BCU key

BDC

BDCM

Bearlyfy

Beast ransomware

BeaverTail

Bedrock

behavioral detection

behavioral integrity verification

Behinder

Belarus

BELQI

benchmark integrity

Berlin

better-auth

Bexo Wallet

BeyondTrust

bin entry

Binance Smart Chain

binary execution

binary squatting

BinaryFormatter

BINDCLOAK

binding.gyp

biometric records

BIOPASS RAT

BioShocking

BIP-39

BirdCall

Bitbucket

Bitcoin

Bitcoin Libre

BitMiner

bitsadmin

Bitter

Bitwarden

BKA

Black Hat USA 2026

BlackFile

Blackpoint Cyber

Bleacher Report

blind prompt injection

blockchain

blockchain C2

blockchain dead drop

blockchain RPC

blockchain-dead-drop

Blogger abuse

blogspot staging

BLOODALCHEMY

BLUEBEAM

BlueDelta

bluemonday

Blueprints

Bluetooth LE

Boatnet

BOD 26-04

body hash

BOF

BookStack

Boot Bus Extender

Boot Time Removal Tool

botnet

botnet framework

BPFDoor

Braintree

branch-compromise

branch-name-injection

brand impersonation

brand-impersonation

BraZetsu

Brazil

Brazilian banking malware

BreachForums

Breeze Cache Cleaner

Brian Fox

BRICKSTORM

BridgeHead

Broadcom

browser assembly

browser automation

browser credential theft

browser data theft

browser extension

browser extension loader

browser extension malware

browser extension sideloading

browser fingerprint spoofing

browser fingerprinting

browser hijacking

browser malware

browser memory

browser security

browser session abuse

browser session hijacking

browser session risk

browser zero-day

browser-based attack

browser-credential-theft

browser-extensions

browser-resident malware

browser-security

browser-session risk

browsing history

brute-force credentials

BSC

BTMOB

BTR Reforged

BTR.sys

BTR_CLI

bucket hijacking

bucket squatting

buffer overflow

bug bounty

Bugcrowd

build pipeline

build server

build-time compromise

build-time execution

build.rs

building automation

builtin wildcard

bulletproof hosting

Bun

Bun runtime abuse

Burkina Faso

business email compromise

business intelligence

BusinessDataCatalog

BusySnake Stealer

Bybit

BYOVD

BYOVD alternative

bypass2fa

bytecode

C backdoor

C

C++

C++/CLI

C0XMO

C2

C2 fallback

C2 framework

C2 panel

C2 tasking

C2Looper

CageFS

Caixa Entradas

calendar dead drop

calendar invitation

Calendly abuse

call forwarding

callback URL

CallFlow

Cambodia

campaign

Canada

canary

CANFAIL

CanisterWorm

canonicalization

CAP_NET_ADMIN

CAPTCHA OCR

captive portal

CaptiveCrunch

capture the flag

cargo

Casbaneiro

CastleStealer

Catalyst SD-WAN Manager

Catcher

Cav3rn

Cavern

Cavern Manticore

CCleaner

CCTV

CDN

CDN abuse

cdn.jsdelivr.net

CDP

Cellebrite

cellular modem

census

Censys

Censys ARC

Central Asia

CERT Polska

CERT-In

CERT/CC

Certbot

certificate pinning

certificate template

certificate theft

Certighost

certutil

CFIDE

ChaCha20

chain-of-thought

ChainDrop

chainlit

ChainVeil

Chaos ransomware

Chaotic Eclipse

charging

Charming Kitten

chat-template poisoning

ChatGPT

chattr

Chatty Spider

CHAVECLOAK

Check Point

Check Point Research

Checkmarx

Checkmarx KICS

checkpointers

China

China nexus

China-linked

China-nexus

China-speaking ecosystem

Chinese-language cybercrime

Chinese-language fraud ecosystem

Chinese-speaking

Chinese-speaking cybercrime

Chinese-speaking operator

Chisel

ChocoPoC

ChocoShell

ChromaDB

Chrome

Chrome App-Bound Encryption

Chrome DevTools Protocol

Chrome extension

Chrome renderer sandbox

Chrome Web Store

chrome_settings_overrides

ChromElevator

Chromium

Chromium extension

chunked exfiltration

CI secrets

CI-CD

CI/CD

CI/CD abuse

CI/CD credential theft

CI/CD pipeline abuse

CircleCI

CIS

CISA

CISA ADP

CISA KEV

Cisco

Cisco IOS

Cisco IOS 12.4

Cisco Nexus

Cisco Talos

Cisco Unified CM

Cisco Unified Communications Manager

Citizen Lab

citizen portal compromise

Citrine Sleet

Citrix

Citrix NetScaler

CitrixBleed

CitrixBleed 2

City Forum

CKEditor file manager

CL-CRI-1089

CL-CRI-1131

CL-CRI-1147

CL-CRI-1163

CL-STA-1062

CL-STA-1114

Clash proxy

Claude

Claude Code

Claude for Chrome

Claude Mythos 5

Claude Opus 4.7

Clawdbot

ClawWorm

ClearFake

cleartext credentials

Clever Cloud

click interception

clicker

ClickFake

ClickFix

ClickFix social engineering

ClickOnce

ClickUp

client installer poisoning

client-side exploitation

Cline

clipboard hijacker

clipboard hijacking

clipboard injection

clipboard manipulation

clipboard stealer

clipboard theft

clipjacking

clipper

Cloaked Ursa

cloaking

ClOd-ViEw

cloud

cloud C2

cloud compromise

cloud credential hunting

cloud credential risk

cloud credential theft

cloud credentials

cloud exploitation

Cloud Files Mini Filter Driver

Cloud Filter driver

Cloud Foundation

cloud IAM

cloud identity

cloud identity abuse

cloud infrastructure

cloud keys exfiltration

cloud logging

cloud metadata

cloud metadata service

cloud secrets

cloud security

cloud service abuse

cloud storage

cloud storage exfiltration

cloud transcoding

Cloudflare

Cloudflare gate

Cloudflare R2

Cloudflare Tunnel

Cloudflare tunnels

Cloudflare Turnstile

Cloudflare Workers

cloudflared

CloudLinux

CloudSEK

cluster compromise

CMS

CMS exploitation

CNAB

CNABHunter

CNCERT

Cobalt Strike

code execution

code generation

code injection

Code Mode

code sandbox scraping

code signing

code signing abuse

Codecov

codegen injection

codemado

CodeQL

Codex

Codex CLI

coding agents

coding challenge

Coinbase

Coinkite

COLDCARD

ColdFusion

collaboration platforms

collaboration-tool phishing

COM-hijacking

ComfyUI

command and control

command execution

command injection

command-execution

command-injection

commercial LLM abuse

commercial messaging applications

commit farming

communications infrastructure

Composer

compromised accounts

compromised credentials

compromised infrastructure

compromised websites

compromised WordPress

computer name

computer vision

Conditional Access

configuration exposure

configuration tampering

configuration theft

Confluence

confused deputy

ConfuserEx

conhost

connected apps

ConnectWise

ConnectWise advisory

ConnectWise ScreenConnect

construction

consumer devices

consumer IoT

consumer software

Contagious Interview

container

container escape

container escape pre-check

content compliance rules

contentPolicy

context flooding

Continue

continuous visibility

control flow flattening

control panel compromise

control plane

control-flow hijacking

conversation theft

CookiETagRAT

Copilot

Copilot CLI

Copy-on-Write

copycat

Corepack

CornFlake

CORS

CORS bypass

Cortex XDR

Coruna

cosign

Cosmos

Cosmos EVM

Cosmos SDK

CosmosEscape

CoSnitch

counterfeit software

COW

COWARDDUCK

CPaaS

cPanel

CPUID

CRA

cracked software

CrackMapExec

CrashFix

CrashStealer

crates.io

Crates.io

credential attack

credential attacks

credential cracking

credential dumping

credential exfiltration

credential exposure

credential harvesting

credential interception

credential leakage

credential rotation

credential spraying

credential stealer

credential stuffing

credential theft

credential-theft

credit card theft

criminal infrastructure

critical

Critical cyber capability

critical framing

critical infrastructure

critical vulnerability

critical-infrastructure

CRM data theft

cron

cron persistence

crond

cross-ecosystem

cross-origin requests

cross-platform

cross-platform malware

cross-project access

cross-session

cross-site request forgery

cross-tenant

cross-tenant access

cross-tenant isolation

cross-tenant leakage

Crossplane

crossplane-runtime

Crosswork

Crosswork Data Gateway

Crosswork Network Controller

Crosswork Planning

CrowdStrike

CrowdStrike Counter Adversary Operations

CrowdStrike Falcon

CrownX

Crucio

crypto

crypto clipboard theft

crypto clipper

crypto draining

crypto wallets

crypto-js

crypto-wallets

cryptocurrency

cryptocurrency miner

cryptocurrency mining

cryptocurrency scam

cryptocurrency theft

cryptocurrency wallet theft

cryptocurrency wallets

cryptographic context injection

cryptojacking

CryptoJS

cryptominer

cryptomining

CSCwt95997

CSI token theft

CSP stripping

CSRF

CSRF token theft

CSS

CSS sanitization

CSSOM

ctfmon.exe

Curious Serpens

CurlRAT

CURP

Cursor

Curve25519

Curve25519-XSalsa20-Poly1305

custody APIs

custom instruction set

custom map

CVE

CVE-2008-4128

CVE-2013-3307

CVE-2015-3246

CVE-2015-5287

CVE-2016-5681

CVE-2019-1068

CVE-2020-17103

CVE-2020-22653

CVE-2020-22658

CVE-2021-23758

CVE-2021-27137

CVE-2021-29441

CVE-2021-33044

CVE-2021-33045

CVE-2022-0492

CVE-2022-0995

CVE-2023-24932

CVE-2023-25717

CVE-2023-2868

CVE-2023-4346

CVE-2023-49105

CVE-2023-4966

CVE-2024-1708

CVE-2024-1709

CVE-2024-20399

CVE-2024-21182

CVE-2024-28000

CVE-2024-3094

CVE-2024-37014

CVE-2024-42009

CVE-2025-11371

CVE-2025-11837

CVE-2025-24054

CVE-2025-2492

CVE-2025-3248

CVE-2025-32975

CVE-2025-33053

CVE-2025-34291

CVE-2025-40947

CVE-2025-40948

CVE-2025-40949

CVE-2025-48595

CVE-2025-49113

CVE-2025-49704

CVE-2025-49706

CVE-2025-5777

CVE-2025-62593

CVE-2025-66376

CVE-2025-67038

CVE-2025-68613

CVE-2025-68686

CVE-2025-8088

CVE-2026-0257

CVE-2026-0300

CVE-2026-0769

CVE-2026-0770

CVE-2026-10520

CVE-2026-10523

CVE-2026-11405

CVE-2026-11645

CVE-2026-12569

CVE-2026-12957

CVE-2026-12958

CVE-2026-14494

CVE-2026-14894

CVE-2026-15409

CVE-2026-15410

CVE-2026-15583

CVE-2026-15981

CVE-2026-16232

CVE-2026-16723

CVE-2026-16812

CVE-2026-18431

CVE-2026-18556

CVE-2026-18577

CVE-2026-18885

CVE-2026-18886

CVE-2026-18963

CVE-2026-19478

CVE-2026-19489

CVE-2026-19490

CVE-2026-19516

CVE-2026-19598

CVE-2026-19632

CVE-2026-19650

CVE-2026-19912

CVE-2026-19913

CVE-2026-20127

CVE-2026-20182

CVE-2026-20212

CVE-2026-20230

CVE-2026-20245

CVE-2026-20253

CVE-2026-20262

CVE-2026-20274

CVE-2026-20279

CVE-2026-20316

CVE-2026-20349

CVE-2026-20896

CVE-2026-21445

CVE-2026-21513

CVE-2026-21858

CVE-2026-21962

CVE-2026-23111

CVE-2026-24301

CVE-2026-25895

CVE-2026-26980

CVE-2026-2699

CVE-2026-2701

CVE-2026-28318

CVE-2026-29059

CVE-2026-3055

CVE-2026-32475

CVE-2026-3300

CVE-2026-33017

CVE-2026-33497

CVE-2026-33691

CVE-2026-33824

CVE-2026-34486

CVE-2026-34908

CVE-2026-34909

CVE-2026-34910

CVE-2026-34926

CVE-2026-35273

CVE-2026-35616

CVE-2026-36425

CVE-2026-39987

CVE-2026-40138

CVE-2026-40139

CVE-2026-40140

CVE-2026-40141

CVE-2026-4020

CVE-2026-41091

CVE-2026-41703

CVE-2026-41709

CVE-2026-41940

CVE-2026-42271

CVE-2026-42533

CVE-2026-42897

CVE-2026-43074

CVE-2026-43284

CVE-2026-43499

CVE-2026-43500

CVE-2026-43503

CVE-2026-44338

CVE-2026-44613

CVE-2026-45018

CVE-2026-45019

CVE-2026-45247

CVE-2026-45498

CVE-2026-45659

CVE-2026-46242

CVE-2026-46300

CVE-2026-46331

CVE-2026-46817

CVE-2026-47876

CVE-2026-47884

CVE-2026-47890

CVE-2026-47891

CVE-2026-47892

CVE-2026-48172

CVE-2026-48276

CVE-2026-48277

CVE-2026-48281

CVE-2026-48282

CVE-2026-48283

CVE-2026-48285

CVE-2026-48307

CVE-2026-48313

CVE-2026-48314

CVE-2026-48315

CVE-2026-48316

CVE-2026-48558

CVE-2026-48710

CVE-2026-48907

CVE-2026-48908

CVE-2026-48939

CVE-2026-49869

CVE-2026-5027

CVE-2026-50522

CVE-2026-50656

CVE-2026-50751

CVE-2026-50752

CVE-2026-51296

CVE-2026-51297

CVE-2026-51300

CVE-2026-51302

CVE-2026-51303

CVE-2026-51304

CVE-2026-52810

CVE-2026-52813

CVE-2026-53359

CVE-2026-53362

CVE-2026-5426

CVE-2026-54420

CVE-2026-54718

CVE-2026-54720

CVE-2026-54721

CVE-2026-55040

CVE-2026-55207

CVE-2026-55208

CVE-2026-55212

CVE-2026-55220

CVE-2026-55255

CVE-2026-55450

CVE-2026-55634

CVE-2026-56290

CVE-2026-56291

CVE-2026-59283

CVE-2026-59285

CVE-2026-59309

CVE-2026-59310

CVE-2026-59313

CVE-2026-59318

CVE-2026-59726

CVE-2026-59822

CVE-2026-60004

CVE-2026-60137

CVE-2026-61539

CVE-2026-61979

CVE-2026-62144

CVE-2026-62145

CVE-2026-63030

CVE-2026-63077

CVE-2026-63520

CVE-2026-6471

CVE-2026-64849

CVE-2026-65400

CVE-2026-65640

CVE-2026-65643

CVE-2026-66384

CVE-2026-66747

CVE-2026-6682

CVE-2026-6683

CVE-2026-6684

CVE-2026-6685

CVE-2026-6686

CVE-2026-6687

CVE-2026-6688

CVE-2026-67426

CVE-2026-6875

CVE-2026-6876

CVE-2026-68820

CVE-2026-69414

CVE-2026-69836

CVE-2026-72529

CVE-2026-72530

CVE-2026-72898

CVE-2026-73570

CVE-2026-7473

CVE-2026-74820

CVE-2026-75149

CVE-2026-75604

CVE-2026-76581

CVE-2026-76639

CVE-2026-76640

CVE-2026-77413

CVE-2026-77414

CVE-2026-77415

CVE-2026-80192

CVE-2026-8037

CVE-2026-81578

CVE-2026-82078

CVE-2026-82222

CVE-2026-82329

CVE-2026-82447

CVE-2026-82448

CVE-2026-82450

CVE-2026-82452

CVE-2026-82454

CVE-2026-82456

CVE-2026-83548

CVE-2026-83549

CVE-2026-8451

CVE-2026-8452

CVE-2026-8461

CVE-2026-85046

CVE-2026-8732

CVE-2026-9082

CVE-2026-9198

CVE-2026-9539

CVE-2026-9586

CVSS

CVSS 10.0

CVSS 9.0

cvvform

CWE-22

CWE-259

CWE-284

CWE-287

CWE-306

CWE-352

CWE-470

CWE-502

CWE-640

CWE-77

CWE-78

CWE-829

CWE-94

Cybench

cyber AI

cyber evaluation

cyber sanctions

cyber-espionage

CyberAv3ngers

cybercrime

cybercrime ecosystem

cyberespionage

Cyera

Cython

Czech Republic

D2IP

Dahua

dangling resources

Dark Caracal

DARKLANTERN

DarkSword

data analytics

data breach

data center

data contamination

data exfiltration

data exposure

data extortion

data leak site

data scraping

data theft

data-exfiltration

database

database extortion

Datadog Security Labs

DataObject

dataset dead drop

dataset processing

DAYLIGHT

DCIS

DCloud

DCloud Uni-App

DcRAT

DCSync

DD-WRT

DDNS

DDoS

DDoS botnet

DDoS-for-hire

DDR

DDS

dead drop

dead drop resolver

dead-drop

dead-drop resolver

DeadLock

Debian

debugger evasion

debugging detection

DEBULL

declarativeNetRequest

Deed

DeepAudit

DeepSeek

Defender Advanced Hunting

Defender evasion

Defender exclusion

defense

defense evasion

defense impairment

defense sector

defense targeting

defense-evasion

DeFi

delayed execution

denial of service

Deno

Denys Pakizh

Dependabot

dependency confusion

deployment_status

deserialization

destructive actions

destructive malware

destructive operations

detached execution

detached process

detection

detection engineering

detection failure

DEV#POPPER

DEV-0206

developer credential theft

developer credentials

developer endpoints

Developer ID abuse

developer identity

developer infrastructure

developer machines

developer mode

developer platform

developer targeting

developer tooling

developer workstations

developer-machine-fleet

developer-targeting

developer-tools

developer-workstations

device identity

device linking

device lockout

device registration

device-code phishing

DevOps

DevTools

DEWMODE

DGA

DIAMONDBACK

diffpatch

digital forensics

Digital Knowledge

digital wallets

DigitalOcean

DigitalOcean Spaces

Dindoor

DingTalk

diplomatic

diplomatic targeting

direct-to-IP

directory traversal

Dirty Pipe

DirtyClone

DirtyFrag

DISCLOSURE

Discord

Discord masquerade

discovery

disk wiping

disposable infrastructure

disruption

distributed malware infrastructure

distributed scanning

Djinn Stealer

DLL search-order hijacking

DLL side-loading

DLL sideloading

dlopen

DMTP

DNS

DNS C2

DNS callback

DNS dead drop

DNS exfiltration

DNS hijack

DNS hijacking

DNS rebinding

DNS resolution

DNS threat intelligence

DNS tunneling

DNS-over-HTTPS

Docker

Docker cache

Docker Compose

Docker credentials

Docker Hub

Docker images

Docker socket

document collection

document exfiltration

document theft

document-share lure

Docusign

DOE

DoFun

DOGLEASH

DOJ

domain squatting

domain verification

DomainTools

domestic espionage

dormant accounts

DotNetNuke

DotnetTool

double extortion

double free

downgrade risk

downloader

downstream blast radius

DPAPI

dpapi.dll

DPAPILoader

DPRK

DPRK APT

DragonForce

drive serial number

driver loading

DriveSilkRAT

Dropbear

Dropbox

dropper

Drupal

dual-function malware

dual-use

dual-use tooling

duckdns

Durable Objects

Dutch Police

DWAgent

dynamic DNS

dynamic obfuscation

Dynu

DyPrIs

Dysphoria

e-commerce

E.O. 13224

E.O. 13382

E.O. 13694

E.O. 13902

E4del

Eagle Werewolf

Early Bird APC injection

Earth Lusca

East Asia

East Asia-linked

Easy4IP

eBPF

Eclipse

Economic D-Day

Ecuador

Ed25519

edge appliance

edge appliances

edge application server

edge device

edge devices

edge exploitation

Edge extension

edge service

edge services

edge-service denial of service

editor profile import

EDR

EDR bypass

EDR evasion

EDR killer

EDR/AV bypass

EDR/AV tampering

EDS5000

education

EfsPotato

EggJagger

Egnyte

Egypt

EKZ Infostealer

Elastic Agent

Elastic Security Labs

Elasticsearch

elections

electric power sector

Electron

Elementor Pro

email

email exfiltration

email gateway

email infrastructure abuse

email normalization

email security

email subject

email template

email theft

EmailEvents

embedded configuration

embedded Linux

embedded systems

Emerald Sleet

emergency patch

ENCFORGE

encrypted C2

encrypted reasoning

EncryptInterceptor

ENDLESSDOORS

Endor Labs

endpoint compromise

endpoint detection

endpoint management

endpoint management abuse

endpoint response

endpoint security

endpoint-detection

endpoint-security

EndpointDlp.dll

energy

energy sector

energy-sector

engineering

engineering software

enterprise AI

enterprise application

enterprise application exploitation

enterprise applications

enterprise identity

enterprise intrusion

enterprise proxy

enterprise security

Entra ID

Environment Management Hub

environment variable theft

environment variables

environmental keying

EPA

EPFL

epoll

Epsilon Stealer

ERAAgent

ERP

error-message disclosure

ESC1

Escalate with Certify

escrow

eSentire TRU

ESET

ESG

espionage

Espressif ESP-IDF

ESX

ESXi

ES|QL

eth_getStorageAt

Ethereum

Ethereum C2

Ethereum Name Service

EtherHiding

Ethiopia

ETW

ETW bypass

ETW patching

ETW tampering

Eurojust

Europe

Europe targeting

European Union

Europol

eval injection

evaluation cheating

evaluation containment

evasion

event log clearing

eventpoll

Everest Forms Pro

EveryoneIncludesAnonymous

evidence quality

Evil Corp

EvilAI

Evilginx

EVM

evolutionary optimization

EWS

excessive agency

exec_globals

execution guardrails

exFAT

exfiltration

Exilware

Experience Cloud

exploit chain

exploit kit

exploit noise

exploit-development

exploit-kit

Exploit.in

exploitation

exploitation attempts

exploitation telemetry

ExploitBench

ExploitGym

exposed applications

exposed attacker infrastructure

exposed debug page

exposed staging

exposure window

extconf.rb

extension supply-chain

extension takeover

external federation

extortion

F5

F5 BIG-IP

Factory-v3

fail-closed

fake app store

fake CAPTCHA

fake certificate

fake Cloudflare

fake crypto exchange

fake dating lures

fake documents

fake gambling

fake graduation invite

fake installers

fake lock screen

fake login

fake login screen

fake Microsoft Store

fake Minecraft client

fake plugin

fake PoC

fake ransomware

fake recruiting

fake reputation

fake update

fake VPN

FakeCaptcha

FakeGit

Fakeset

faketivism

FakeUpdates

FALCON

Falcon Sensor

FallSpy

false positive

false positives

FAMOUS CHOLLIMA

Famous Chollima

Fancy Bear

Fast16

FastAPI

FastCGI

Fastjson

Fastmail

fat JAR

FAT32

FatFs

FBI

FBI indictment

fbot

FDMTP

Feiying

FFmpeg

FIDO2

field-level security

FIFA

file encryption

file exfiltration

file infector

file inflation

file operations

file sharing

file theft

File Transmission

file upload

file upload path traversal

file-system filter

FileFiend

FILEIO

fileless execution

fileless malware

filemanager

filename-injection

filestream

filesystem parser

filter API

FilteredObjectInputStream

finance

finance phishing

financial

financial fraud

financial institutions

financial motivation

financial sector

financial services

financial theft

financially motivated

FireAnt MetaKit

Firebase

Firecracker

Firefox

Firefox Add-ons

Firefox WebDriver BiDi

Firepower Management Center

firewall

firewall management

firmware

firmware backdoor

firmware supply chain

firmware update

FishMonger

FlatBuffers

FlexPLM

flight recorder

FlockWiper

Flooding Dropper

flow execution

Flowerbed

Flowise

FLUIDLEECH

Flutter

FlutterShell

Flying Eagle

Flyto2 Core

FMC

FOFA

FofaMap

folderOpen

font1.woff2

forced channel follow

fordmotbvmorcompany.vu

foreign affairs targeting

foreign policy targeting

Forest Blizzard

ForestTiger

Forg365

ForgCookie

Forgejo

forgot password

FormDigestValue

Forms Authentication

FortiClient EMS

FortiGate

Fortinet

FortiOS

FortiSandbox

Fox Tempest

fraud

FREAKYPOLL

FreeBSD

Freedom365

freeware impersonation

Friendly Fire

frontier AI

FruitStone

FSB

FSB Center 16

fscan

Fscan

FTA

FTD

FTP banner

ftp.exe

ftrace

FudModule

Full Disk Access social engineering

Funnull

Fusion Builder

futex PI

FUXA

G1 EDU

gadget chain

Gafgyt

GaiaOS WebUI

GalaxyGato

Gamaredon

Gamaredon collaboration

gambling

gambling industry targeting

game cheats

game exploitation

gaming malware

GammaLoad

GammaPhish

GammaSteel

GammaWorm

Garble

Gardener

GateKeeper

Gatekeeper bypass

GCP

GCS

Gemini CLI

Gen Digital

generative AI

GenieLocker

GentleKiller

Germany

GHETTOVIBE

Ghost

ghost accounts

Ghost Calls

Ghost CMS

Ghost Networks

GHOSTBLADE

GhostLock

GHSA-2679-6mx9-h9xc

GHSA-2943-5xfg-gq5f

GHSA-2xp9-vwfh-vxw4

GHSA-66mm-25pp-rfff

GHSA-6rmh-7xcm-cpxj

GHSA-6v3r-4p5c-mrp5

GHSA-6vxv-wg6j-5qwp

GHSA-6whr-xjjm-6pf8

GHSA-78mw-f4q2-924q

GHSA-7g4w-cg88-2cq2

GHSA-864f-rcv7-6rh4

GHSA-8gq3-vp5j-2grp

GHSA-c39w-43gm-34h5

GHSA-c4hm-4h84-2cf3

GHSA-g89c-p67h-r497

GHSA-hvfh-5mj3-5f3j

GHSA-m5w8-4gq2-6f8x

GHSA-mf7q-r4rv-jv94

GHSA-p293-qw3h-jr36

GHSA-qrpv-q767-xqq2

GHSA-rcr6-4jqh-j84m

GHSA-rg76-677x-56q9

GHSA-vwf4-m7j8-wcjf

GHSA-w3fx-mc44-mf6j

GHSA-x2rj-828p-hx9m

GHSA-xhcr-j4j9-3gh7

GIFTEDCROOK

Git

Git hook

Git hosting

git.exe

Gitea

GitHub

GitHub abuse

GitHub Actions

GitHub Advisory Database

GitHub API

GitHub App

GitHub CLI

GitHub dead drop

GitHub issue spam

GitHub OAuth

GitHub Pages

GitHub Pages abuse

GitHub PAT abuse

GitHub payload delivery

GitHub release assets

GitHub Security Advisories

GitHub tokens

GitHub-hosted runners

GitLab

gitleaks

gitnow

GitOps

GiveWP

Gleaming Pisces

gleeze.com

GlobalProtect

Gmail

Go

Go backdoor

Go loader

Go malware

Go modules

Go net/http user agent

Go stealer

Go2Tunnel

GoCaracal

GoDaddy federation

GodDamn ransomware

GodPotato

Godzilla

GoEdge

GoFile

GoginRAT

Gogs

Golang

Golang malware

GOLD PRELUDE

Golden Pass-ta-key

gomod

Goodhart's law

Google

Google account

Google Analytics telemetry

Google API

Google Calendar

Google Chrome

Google Cloud

Google Cloud Authenticator

Google Cloud Logging

Google Cloud Storage

Google credential theft

Google Docs

Google Drive

Google Notes

Google OAuth

Google Password Manager

Google Play

Google Play Protect

Google redirect abuse

Google Sheets

Google Sheets C2

Google Stitch

Google Threat Intelligence Group

Google Workspace

Goose

GoSerpent

government

government impersonation

government offices

government services and facilities

government targeting

government-impersonation

GPT

GPT-5.6 Sol

GPT-5.6-Cyber

GPT-6

Gradio

Grafana MCP Server

Grandoreiro

granular access tokens

Graph API

GraphQL

GraphQL Composite Data API

GraphSpy

Gravity SMTP

gray market

GRE

Gremlin API

GREYVIBE

Grok

group

Group-IB

groups

gRPC

gRPC C2

GRU

gs-netcat

GS-Netcat

Gshell

GTIG

GUE

guest access abuse

guest-to-host escape

Guildma

Gunra

hack-and-leak

hacked WordPress sites

HackerOne

HackIndex

hacktivist persona

Hades

Hajime

half-click exploit

hallucination

HalluSquatting

Halo's Gate

Handala

HappyDoor

HAProxy

HAR files

hard-coded password

hard-coded secrets

HardBreacher

hardcoded key

hardening gap

hardware wallet

HarmonyLib

HashiCorp Vault

HavocKiller

HDF5

Head Mare

head unit

HEADLACE

headless browser

headless Edge

HEADRUSH

healthcare

heap buffer overflow

heap overflow

heap pointer disclosure

HEIC

HEIF

HELIX

HelloBackdoor

HelloCleaner

HelloDoor

HelloExecutor

HelloInjector

HelloNet

HelloProxy

HellsGate

Helm

help desk impersonation

Hermes

Hermes Agent

Hetzner

HexKiller

hidden backdoor

hidden instructions

hidden service

high explosives

higher education

HMI

holiday calendar lure

HOLLOWGRAPH

homoglyph

Honduras

HONESTCUE

honeypot

Hong Kong

Hong Kong infrastructure

HOOKEDGE

hospitality

hospitality targeting

host DNS hijacking

Host Radar

host RCE

host surveillance

hosting control plane

hosting provider

hosting providers

Hostwinds

hotel targeting

Howling Scorpius

HPC

HR lures

HS256

HTA

HTML comments

HTML email

HTML sanitization

HTML smuggling

html5lib

HTTP C2

HTTP/2

HttpMalice

HTTPS C2

HTTPS exfiltration

HTTPSpy

Hugging Face

HUMAN Satori

humanoid robot

Hunt.io

Huntress

Huorong

Hyadina

hybrid threat actor

hydropower

Hydropower Cooperation Project Proposal.zip

hypervisor escape

Hyunwoo Kim

I-SOON

IAB

iACL

IAM

Iberian

IBM

iCagenda

ICE

Ice Relic

iCloud theft

ICONICSTEALER

ICS

IDE extension

IDE plugins

IDE trust boundary

ide.cfm

identity

identity attack

identity attacks

identity compromise

identity infrastructure

identity phishing

identity security

identity theft

identity-first intrusion

IDEs

IFEO persistence

IIOP

IIS

IKE

IKEv1

Ill Bloom

image optimization

image proxy bypass

image recognition

ImageMagick

iMessage

Impacket

Imperial Kitten

impersonation

implant

import-time execution

improper access control

improper authentication

improper authorization

improper privilege management

in-memory

in-memory DLL loading

in-memory ELF execution

in-memory malware

in-memory plugins

incident response

incident-response

incomplete patch

IndexedDB

India

India-nexus

Indian government

indirect prompt injection

indirect syscalls

Indonesia

industrial control

industrial control systems

industrial espionage

industrial targeting

infect[.]online

Infected Marketplace

inference server

INFINITE NIGHTMARE

INFINITERED

Infoblox Threat Intel

information disclosure

information stealer

infostealer

infotainment

InfoTeCS

infrastructure

infrastructure churn

infrastructure disruption

infrastructure seizure

initial access

initial access broker

initial-access

Injective Labs

Inno Setup

input capture

insider threat

install-time execution

install-time-execution

install.res.1033.dll

integer-overflow

Integration Broker

inter-agent communication

Intercolo

internal secret exfiltration

internal security review

internet exposure

internet-facing admin surface

internet-facing appliance

internet-facing applications

investment scam

invisible prompt injection

InvisibleFerret

invocation logging

iOS

IOS XR

IoT

IoT botnet

IP cameras

IP-in-IP

IPFS

iPhone

IPMODIFY

IPsec

IPv6

ipynbdiff

Iran

Iran-nexus

IRC C2

IRGC

IronWorm

Irregular

ischhfd83

Island Security

Island Security Research

ISO image

isolated-vm

Israel

IT providers

Italian foreign-policy targeting

Italy targeting

ITCSD

ITRES Labs

Ivanti Sentry

JackSkid

Jackson

JADEPUFFER

Jamf Threat Labs

Januscape

Japan

JAR payload

JARLEASH

JarService

Java

Java deserialization

Java malware

java.rmi.MarshalledObject

JavaScript

JavaScript bridge

JavaScript execution

JavaScript implant

JavaScript injection

JavaScript loader

JavaScript malware

JavaScript masquerading

JavaScript runtime

JavaScript tampering

JavaScriptCore

JBoss

JCE

JDY

Jellyfin

Jenkins

JetBrains

JetBrains Marketplace

JetStream

JFrog

JFrog Artifactory

JFrog Security Research

Jinja

Jinja2

JINX-0164

Jira

Jiří Vinopal

job-offer phishing

job-themed phishing

joblib

Joomla

Joomla Content Editor

Joomla JCE

Joomlack

JoomShaper

Jordan

journalism

journalists

JPMorgan Chase

JSCEAL

JSCoreRunner

jscrambler

Jscrambler

JScript

JSON

JSON Web Token

JSON-RPC

JSON:API

jsonata

JSONKeeper

JSONL

JSONPing

JSP web shell

JuicyPotato

Jupyter

Jupyter Notebook

JustWatch

JWT

JWT alg none

JXA downloader

K1MORPHER

Kairos

Kaitori

Kali365

Kaltura

Kaspersky

Kaspersky detection bypass

Kaspersky GERT

Kaspersky GReAT

Kaspersky Securelist

Kazakhstan

KAZUAR

KAZUAR overlap

KB5002893

KeePassXC

Keitaro

Keksec

Kemp LoadMaster

kernel driver

kernel instrumentation

kernel R/W

kernel rootkit

kernelCTF

Kestra

KEV

keychain

Keychain theft

keychain theft

Keycloak

KeyHunter

keylogger

keylogging

keyval.org

keyword splitting

Kimi K2.5

Kimsuky

Kimwolf

Kimwolf v7

Kiro Powers

KLCERT-26-057

KLCERT-26-058

Klue

knaithe

knowledge base

KnowledgeDeliver

known exploited vulnerability

KNUCKLEBALL

KNX

KNX Association

KNX Protocol

KnYuan

KongTuke

KORKERDS

Kratos

krbtgt

Kubernetes

KV-botnet

KVM

KVM escape

kvmCTF

Kyrgyzstan

L2TP/IPSec

LA Metro

Laboo.boo

LabubaPanel

LabubaRAT

Labubu

LangChain

Langflow

LangFlow

LangGraph

Language Servers for AWS

Lantronix

LapDogs

Laravel

Laravel deserialization

LATAM

lateral movement

lateral-movement

Latin America

LaunchAgent

launchctl

LAUNDRY BEAR

law enforcement

law enforcement targeting

law-enforcement-disruption

LayerX

Lazarus

LD_PRELOAD

LDAP

leak site

leaked credentials

leaked exploit

leaked repository

leaked source code

learning cycles

LEASHTEST

least privilege

Ledger

legacy botnet hijacking

legacy infrastructure

legacy pattern

legacy software

legacy systems

LegionRelay

Leo Platform

Level RMM

LevelBlue

Lexfo

libcurl

libheif

liblzma

libmupdf.dll

libp2p

libpeconv

libsignal-node

libslirp

libsodium

libuser

lifecycle hooks

lifecycle-hooks

lighthouse beacon

Lightning Shared Scooter Co.

Lightning Web Runtime

LinkedIn

Linksys

Linux

Linux backdoor

Linux kernel

Linux malware

Linux networking devices

Linux rootkit

LiteLLM

LiteSpeed

LiteSpeed Cache

live chat

Live Protect

living off the land

living-off-the-land

living-off-the-land binaries

LLM

LLM command execution

LLM gateway

LLM security

LLM slop

LLM-assisted malware

LLM-driven intrusion

LLMjacking

LMS

LNK

LNK files

LNK Startup persistence

load balancer

loader

loadlib2

LoadLibrary

LOADLOOP

local exploit

local inference

local LLMs

local privilege escalation

local subprocess

local-file-inclusion

localhost

localhost trust bypass

localhost.run

localStorage

LockBit

LockBit 3.0

Lockdown Mode

LockScreen

LockScreenContentServer

log poisoning

log sanitization

Log4j

Log4j 2

Log4j 2.26.1

logging

logging impairment

logical decoding

login item persistence

LOLBAS

LOLBins

long-horizon autonomy

long-lived tokens

long-term access

long-term surveillance

LONGLEASH

LONGSTREAM

LOOKVALJS

LOOKVALPS

loopback

loopback login

Loophole

loose boolean check

LosFormatter

Lovable

low-confidence attribution

LPE

LS-DYNA

LSASS

LSHIY

LSN

LSSC

Lua

LuaJIT

Lumen

Lumen Black Lotus Labs

Lumma Stealer

Luna Moth

Luno

LurkProxy

Lyceum

M-RED-TEAM

M365

MaaS

Mabna Institute

MAC address

MacCMS

Maccy impersonation

Machine Account Quota

machine-learning

machine-speed attack chain

macOS

macOS malware

macro

macro-enabled Word

MacSync

MaDoO Blaster

Magento

magic packet

MagicYUV

mail server compromise

mail-argenta

mailbox compromise

mailbox permission abuse

mailbox theft

MAIN world injection

maintainer compromise

maintainer persona

maintainer-account-compromise

maintainer-compromise

malformed signature

malicious dataset

malicious GPO

malicious package

malicious packages

malicious plugin

malicious releases

malicious signed driver

malvertising

malware

malware analysis

malware delivery

malware framework

malware scanning

Malware-as-a-Service

malware-as-a-service

malware-signing-as-a-service

MALXMR

man-in-the-middle

managed database

managed file transfer

managed service provider

ManageEngine Endpoint Central

management plane

Manifest V3

Manifold Security

manufacturing

Mapbox

marimo

Markdown image rendering

marker

MARKETMAKER

marketplace abuse

marketplace trust

MarkiRAT

MarlboroMan

mass disclosure

mass repository cloning

mass scanning

Maven Central

mawesome

Mbed

McAfee Labs

McMx

MCP

MCP configuration

MCP credentials

MCP gateway

MCP stdio command execution

mcp-grafana

MECCHA CHAMELEON

media embed

media processing

media sector

MediaFire

medical research

Mekotio

memfd

memory corruption

memory disclosure

memory implant

memory overflow

memory overread

memory poisoning

memory protection unit

memory-only malware

MEMORY.md

merchant credential theft

mesh VPN

MeshAgent

MeshCentral

Meta Ads

meta-hacking

Metabase

MetaMask

Metasploit

METR

MEV bot lure

Mexican banking fraud

Mexico

MFA

MFA bypass

MFA fatigue

MFA-bypass

MFT

Miasma

MicroLogix 1100

MicroLogix 1400

MicroPython

Microsoft

Microsoft .NET

Microsoft 365

Microsoft 365 Copilot

Microsoft Authentication Broker

Microsoft Azure

Microsoft Copilot Personal

Microsoft Defender

Microsoft Defender exclusion

Microsoft Defender Experts

Microsoft Defender Security Research

Microsoft dev tunnels

Microsoft Digital Crimes Unit

Microsoft Edge

Microsoft Edge Add-ons

Microsoft Edge Extensions Security Team

Microsoft Edge masquerade

Microsoft Entra ID

Microsoft Exchange Server

Microsoft Graph

Microsoft Identity Platform

Microsoft Office SharePoint

Microsoft Security Blog

Microsoft Security Research

Microsoft SQL Server

Microsoft Teams

Microsoft Threat Intelligence

Microsoft typosquat

Microsoft Windows Hardware Compatibility Publisher

Microsoft-signed binary abuse

MicrosoftSystem64

Middle East

middleware

Midnight Blizzard

military logistics

military research

Milo Wallet

Mimikatz

mind virus

Mindgard

Minecraft

Minecraft DDoS

miner dropper

Mini Shai-Hulud

MiniJunk

miniOrange

MiniPlasma

MINIRAT

MINIRECON

Ministry of Finance

Ministry of State Security

Ministry of Transport and Communications

MiniUpdate

mint

MIPS embedded devices

Mirage Kitten

Mirage2FA

Mirai

Mirai-derived botnet

missile procurement

missing authentication

Mistic

MISTPEN

MITRE ATLAS

MITRE ATT&CK

MITRE ATT&CK T1005

Mitre ATT&CK T1110

MITRE ATT&CK T1562

mixed boolean arithmetic

MIXEDKEY

MLflow

MLTBackdoor

mnemonic theft

mobile

Mobile Access

mobile banking fraud

mobile device management

mobile devices

mobile exploitation

mobile malware

mobile spyware

MobileIron Sentry

MODAFL

MODBEACON

Model Context Protocol

model poisoning

model registry webhooks

model weights

model-level persistence

model-provider abuse

ModeloRAT

modem firmware

ModHeader

modular malware

module-proxy

MOIS

Moltbook

Moltbot

Monero

Monero mining

MongoDB

Monster ransomware

monthly security release

MoreQuick

Motorola E13

MoYu

Mozi

MpClient.dll

mpengine

MpEngine.dll

MpExtMs.exe

MPK

MPR network provider

Mr_Rot13

MS-ISAC

Ms36-AcCeSs

msaRAT

MSBuild

msgpack

mshta

MSI

msiexec

MSNightmare

MSP

MSSQL

MSXML2.XMLHTTP

mTLS

MU plugin

Muck and Load

MuddyWater

Mullvad VPN

multi-agent

Multi-Domain Security Management

multi-model ensemble

multi-organization PAT campaign

multi-SAN certificate

multi-tenant cloud

multi-tenant isolation

multiplex queries

Multiply-With-Carry

Mustang Panda

Mustard Tempest

mutable tags

mutation attacks

mutex

mwEmbed

mwEmbedLoader.php

Myanmar

MYRA

MySQL

Mysterious Elephant

Mythos

N-able

N-central

n8n

Nacos

NadMesh

named pipes

Named Pipes

namespace recycling

namespace squatting

NanChat

Nanjing Xinjiuwei

NAS targeting

nation-state

national identity records

native addon

native extension

NativeAOT

NATO

NATS

NCSC-NL

Nebo

Nebula Security

Negotiate

negotiation

NemoClaw

Neo-reGeorg

neocloud

nested virtualization

Neteller

Netherlands

NetKeyboard

Netlify

Netlify abuse

NetNut

NetScaler

NetScaler ADC

NetScaler Gateway

NetSetup.log

network access

network detection

network infrastructure

network infrastructure exploitation

network isolation bypass

network policies

network switch

network-share exfiltration

NexShield

Next.js

NextChat

Nextcloud

Nextcloud Flow

Nexus 9000

nf_tables

NFS

nftables

NGINX

Nginx

Nginx module

ngrok

Ngrok C2

NIC impersonation

Nigeria-nexus

Night Dragon

NightLedger

Nightmare-Eclipse

Nim

Nimbus Manticore

NirSoft

no active exploitation

no attribution

no C2

no credential theft

no vendor response

no-install-hook delivery

No-IP

node-gyp

node-ipc

node-pty

Node-RED

node.exe

Node.js

Node.js implant

Node.js malware

node:zlib

NodeEdgeRAT

NomadRAT

non-standard protocol abuse

North Korea

notarized malware

notebook security

notebookjs

notification interception

NOVA

NovaCookies

NoviSpy

Now Platform

npm

npm lifecycle hook

npm mirrors

npm supply-chain

npm token theft

npm tokens

npm v12

npmmirror

npx

npx confusion

NSA

NSecKrnl.sys

NSO Group

nsppe

NTDS.dit

NTFS ADS

NTLM

NTLM relay

nuclear procurement

nuclear research

nuclear weapons

NuGet

Nuitka

null byte truncation

null-byte padding

NullReceiver

NullSessionPipes

NVD

NVD scoring

NVGRE

NVIDIA

NVIDIA impersonation

NX-OS

O-UNC-066

OAST

OAuth

OAuth 2.1

OAuth abuse

OAuth client credentials

OAuth device authorization grant

OAuth error redirect

OAuth phishing

OAuth redirect

OAuth token abuse

OAuth token exposure

OAuth token theft

OAuth tokens

OBF networks

obfuscation

obfuscator.io

ObjectInputStream

Oblivion

obsolete software

OCI registry

OCR content analysis

OctLurk

Octopi365

OFAC

Office macros

official store compromise

Offshore LC

OIDC

OilRig

Oj

OkoBot

Okta

Okta Threat Intelligence

OKX

Ollama

OLLAMA_HOST

Oman

Omnibox

OmniStealer

Omnivore

one-click

OneDrive

OneDrive access

OneDrive C2

onion routing

Ontinue

opaque predicates

open directory

Open Interpreter

open registration

Open VSX

Open WebUI

open-source

open-source supply chain

open-source-malware

OpenAI

OpenAI API keys

OpenAI Codex

OpenAI Daybreak

OpenClaw

opencode

OpenConnect

OpenHands

OpenSearch

OpenShell

OpenShield

OpenSourceMalware

OpenSSF

OpenSSH

openssl_verify

OpenVPN

OpenVPN-shaped UDP

OpenVSX

OpenWebUI

OpenWrt

operation

Operation BlueDash

Operation CameraSwarm

Operation DangerousPassword

Operation Dream Job

Operation Economic Outcast

Operation Endgame

Operation Escaneo

Operation Highland

operational relay box

Operational Relay Box

operational resilience

operational security

operational technology

operations

operator lockout

OpFauxSign

opportunistic exploitation

opportunistic scanning

ops

OPSEC failure

opsec failure

OpSec failure

OPSWAT

Oracle

Oracle E-Business Suite

Oracle Fusion Middleware

Oracle HTTP Server

Oracle Payments

Oracle PeopleSoft

Oracle WebLogic Server

ORANGETAIL

ORB network

organization username

OS command injection

OT

OT switches

OTA update

OTP interception

OtterCookie

Ousaban

out-of-bounds read

out-of-bounds write

outbound C2

Outlook

Outlook Web Access

Outsider Enterprise

overfitting

overlay attacks

OWA

OWAReaper

ownCloud

OX Security

OxideHarvest

OYSTERBLUES

OYSTERFRESH

OYSTERSHUCK

P2P

P2P botnet

P2P C2

P2P relay

P2P sinkhole

p2pwn

package fork

package hijacking

package masquerading

package name reuse

package registry

package registry abuse

package registry credentials

package registry proxy

package republishing

package scanning

package takedown

package-cooldowns

package-manager-hardening

package-splitting

package-takeover

Packagist

packet injection

PAExec

Page Builder CK

page cache

page poisoning

paired session

Pakistan

Pakistan-aligned

Pakistan-linked

Palo Alto Networks

PAM

PAM credential validation

PamStealer

PAN-OS

Pandora RC

PaperCut

PaperCut MF

PaperCut NG

parallel agent orchestration

parallel-intrusion

parameter-to-prompt

parked domain

partial encryption

Pass-ta-key

passive backdoor

passkeys

password manager theft

password reset

password spray

password spraying

password-protected archive

passwordless authentication

Pastebin

pastebin C2

PAT theft

patch bypass

patch management

Patch the Planet

patch window

patch-now

PATCHCORD

patching

patchstack

Patchstack

path hijacking

path traversal

Patriot Bait

patterns

Paweł Płatek

payload loader

payload staging

payload storage

payload-as-a-service

payment fraud

payment SDK

payment skimmer

payment workflow exposure

payment-card theft

payment-card-theft

PayPal

payroll lures

Paysafe

pc-app.exe

PCM

pe_to_shellcode

pearl-miner

PEB hash

PebbleDash

pedit

peer list

Pegasus

pentesting

people

people and process

PeopleTools

PEP 723

PerfWatson2.exe

Perplexity AI

persistence

persistent root access

persona operations

personal access tokens

PetitPotam

pfSense

pg_hba.conf

PhaaS

Phantom Gyp

PhantomClick

PhantomCore

PhantomGraph

PhantomMail

PhantomRelay

Philippines

phishing

phishing evasion

phishing overlays

phishing-as-a-service

Phorpiex

PHP

PHP code execution

PHP code injection

PHP object injection

PHP upload

PHP web shell

physical systems

physics

PicassoLoader

pickle

pig butchering

pig-butchering

PII

PII exposure

PII theft

Pimcore

Pimcore Studio

PINHOLE

PINK

Pink

Pipedream

pipelines

piracy

Piriform

pitboss

Pix

Pixeldrain

PixelSmash

PKGBUILD

PLA

plaintext HTTP

Plandex

PLC

PLENET

plugin architecture

plugin framework

plugin RCE

PlugX

PNG shellcode

PoC available

PoC exploit refusal

PocSuite3

Pods

poisoned-branch

PoisonX

police digital services

policy-setting abuse

PolinRider

polkitd

Poly1305

polyfill

Polygon

Polygon blockchain dead drop

Polymarket

polymorphic

polymorphic loader

polymorphic payloads

Popa

portmap

PortSwigger Research

Portugal

Portuguese-speaking

post-authentication RCE

post-exploitation

post-exploitation framework

post-index-change

post-mortem

postal-impersonation

PostCSS

PostgreSQL

postinstall

Potato

POWER.md

PowerCloud

PowerShell

PowerShell AMSI bypass

PowerShell execution

PowerShell malware

PowerShell RAT

PowerShower

PPPoE credential theft

PPtP

PRA

PraisonAI

PRC

PRC-aligned

PRC-nexus

pre-auth RCE

pre-authentication

pre-authentication RCE

pre-signed URL

Prefetch

preinstall

PreppHint

presigned URLs

primary keys

Primary Refresh Token

Primitive Bear

PrincessClub

priority inheritance

privacy

privacy exposure

private key theft

private packages

private registry fallback

private-key theft

privilege escalation

privileged proxy

Privileged Remote Access

PRNG

proc-macro1

proc-macro2

process discovery

process doppelgänging

process environment scraping

process hollowing

process injection

process lineage

process termination

procurement

product lifecycle management

professional services

profile.d

Program Compatibility Assistant

Progress Kemp LoadMaster

Progress Software

Project Lightwell

Project Proposal.exe

prompt infection

prompt injection

prompt-injection

prompt-injection guardrail bypass

PromptArmor

PROMPTFLUX

PROMPTSPY

promptware

proof of deletion

Proofpoint

protestware

Protobuf

Proton Mail

prototype pollution

provenance

Provenance

proxy

proxy botnet

proxy infrastructure

proxy network

proxy obfuscation

ProxyChains

proxyjacking

proxyware

prt-scan

PSEMHUB

pseudorandom number generator

PsExec

PSIGW

psychological operations

PTC

PteroBox

PteroPaste

PteroPSDoor

PteroSetup

PteroVDoor

public exploit

public file-transfer exfiltration

public proof of concept

public sector

Public Security Bureau impersonation

public service abuse

public-service C2

publication bias

publish mode

publish-time scanning

publishing credentials

pull requests

PUP

PureLogs Stealer

PureRAT

pushd

pwn-request

PwPt-sHaRe

PyArmor

PyInstaller

PyPI

Python

Python extension modules

Python implant

Python malware

Python stealer

python-snap7

pythonw

QEMU

Qianxin Threat Intelligence Center

QiAnXin XLab

Qihoo 360

Qilin

QNAP

QR code

QR code interception

QScan

QTBotnet

QTFY

QTRouter

quantum computing

Quasar

query injection

Quest KACE SMA

QUIC

QUICAgent

Quick Assist

QuickFox

QUICSILVER

QuimaRAT

RaaS

RabbitMQ

race condition

RAGFlow

RainbowEx

RakNet flood

RAM disk

random number generator

ransom

Ransom-ISAC

ransomware

ransomware access

ransomware enablement

ransomware-access

rapid exploitation

Rapid7

RAR archives

RAR staging

RAT

raw packet

Ray

RC4

RC4 C2

RC4 encryption

RCE

Rclone

rclone

RCS

RDP

RDP phishing

RDS

reachability

Reactor Core

Reactor Netty

readonly proxy

real-time operator control

Reality

Realme C33

Reaper

reasoning replay

Reco

reconnaissance

recovery denial

recovery disruption

recovery flow

recovery phrase

recruitment lures

Red Agent

Red Dev 10

Red Hat

Red Menshen

Red Offsec

Red Raindrop Team

red team

red teaming

REDACT

RedAlert

RedC2

RedC2 4.0

REDCap

Redis

Redis backdoor

RediSearch

RedShell

reduced cyber refusals

RedWing

REF6045

REF9403

reflective .NET loading

reflective loading

refresh token theft

refresh tokens

RegAsm process hollowing

registry controls

registry manipulation

registry metadata

registry persistence

registry Run key

registry storage

registry-controls

RelayShell

release automation

release tampering

Remcos

Remcos RAT

remote access

remote access software

remote access trojan

Remote Access VPN

remote code execution

remote debugging

remote desktop

remote MCP

remote monitoring and management

remote script injection

remote shell

Remote Support

remote support

Remote Utilities

remote-access

Remotely

RemotePE

RemotePELoader

removable media

Rentry

replication

REPLICATION attribute

repo-server

repository compromise

repository exfiltration

repository poisoning

request smuggling

research sector

reset-credentials

residential proxies

residential proxy

residential proxy abuse

responsible disclosure

REST API

REST C2

restart-triggered execution

retail

retail trading

reverse proxy

reverse SOCKS5

reverse SSH tunnel

reverse SSH tunneling

reverse tunnel

reverse tunneling

reverse tunnels

REVERSE_PROXY_TRUSTED_PROXIES

ReverseSocks

reviewdog

reward hacking

Rewards for Justice

RHBK

Rhysida

Rilide

Ring 0

RingH23

RMM

RMM abuse

ROADrecon

ROADtools

roadtx

Robbe Van Roey

Rockwell Automation

RoguePlanet

Rokarolla

RokRAT

rolling deploy

Rollup

Romania

RomulusLoader

Roo-Code

root

root access

root code execution

root escalation

root execution

root RCE

root shell

rootkit

ROOTRUN

Rootstock

ROPC

Rouki obfuscation

Roundcube

router

router compromise

router malware

Rovo

RovoBlast

ROX II

RRWallet

RSA

RSA public key

RSA-2048

RSA-OAEP

RT-Thread

RTL819X

RTLO

rtmutex

RubyGems

Ruckus routers

Ruflo

RUGGEDCOM

Run key

Run key persistence

rundll32

Runner.Worker

Runspace

runtime execution

runtime mutation

runtime patching

runZero

Russia

Russia targeting

Russia-affiliated

Russia-linked

Russia-linked cybercrime

Russia-nexus

Russia-speaking operator

Russian Intelligence Services

Russian intelligence services

Russian state-supported

Russian-speaking ecosystem

Russian-speaking forums

Rust

Rust loader

Rust malware

S3 Browser

S3-compatible storage

s5cmd

S7comm

SaaS

SaaS abuse

SaaS connectors

SaaS data access

SaaS exposure

sabotage

Safari

SafeDep

Salesforce

Sality

SAML

SAML IdP

Samsung TizenRT

sanctions

sandbox escape

sandbox evasion

sandboxing

Sandworm

Sangoma

Sapphire Sleet

saroula01

SBA phishing

SCADA

scam infrastructure

scambling

scanner evasion

ScarCruft

SCCM

scheduled task

scheduled task persistence

scheduled tasks

SCMBANKER

scope squatting

scoped package impersonation

scorer manipulation

SCOUTCURL

screen capture

Screen Sharing

ScreenConnect

Screening Serpens

screenshot capture

screenshot theft

script injection

script-injection

SD-WAN

search hijacking

search poisoning

search result poisoning

search-ms

Seashell Blizzard

second-order injection

secondary sanctions

Secret Blizzard

secret exfiltration

secret exposure

secrets

secrets harvesting

secrets management

secrets manager compromise

SectopRAT

Secure Annex

Secure Firewall

Secure Firewall Management Center

Secure Preferences

Secure Workload

secure.html

Security Management Server

security operations

security platform

security tool abuse

security-tool discovery

SecurityPDF

seed phrase

seed phrase theft

seed recovery

SeedHunter

Seedworm

segmented networks

Sekoia

self-delete

self-DoS

self-hosted AI services

self-hosted applications

self-hosted Git

self-hosted media

self-hosted runner

self-managed

self-propagating payload

self-propagation

semantic-release

sendit.sh

sensitive information exposure

Sentinel

SentinelOne

Sentry

Sentry abuse

SEO fraud

SEO poisoning

Seqrite

Seqrite Labs

Serbia

serial-number relay

Serialize::unserialize

Serv-U

service accounts

service binding

service DLL persistence

service impairment

service persistence

Service Portal

service providers

service stop

service-agent

ServiceNow

ServiceNow AI Platform

ServiceUrl

ServiceWorker

Session

session hijacking

session secret exposure

session theft

session token theft

setuid

setup.py

shadow AI

shadow copy

shadow copy deletion

shadow fleet

shadow MMU

SHADOW-AETHER

SHADOW-AETHER-040

SHADOW-AETHER-064

SHADOW-EARTH-066

SHADOW-WATER-063

ShadowPad

Shadowserver Foundation

Shai-Hulud

SHARDLOADER

SHARE Foundation

share propagation

shared accounts

shared hosting

shared memory

shared secrets

shared-module

shared_preload_libraries

SharedWorker

ShareFile

SharePoint

SharePoint Server

SharkLoader

sharp

Shattering the Dream

SHEETCORD

shell injection

shellcode

Shenzhen Zhibotong Electronics

ShieldBreak

Shinobi

ShinyHunters

ShinyHunters-adjacent

shipping lures

Shodan

ShortLeash

Shuckworm

side channel

side-loading

SideCopy

sideloading

Siemens

Siemens S7

Sigma Forms Pro

Signal

Signal interception

signature evasion

signature verification

signed binary abuse

signed executable

signed malware

signed updates

signed-binary

signed-binary abuse

SignedInfo

Silent Ransom Group

Silent Swap

silent-patch

SilentCryptoMiner

SilentRunLoader

Silicon One

SiliconFlow

SilkLurk

SilkParasite

Silver Fox

Silver Pass-ta-key

Silverstripe

SimpleHelp

SimpleHelp RAT

SimpleHTTPServer exposure

simulation tampering

sinkhole

sinkholing

SIP

SIP ALG

Site Member permissions

SiYuan

skb

SkillCloak

SkillDetonate

Skrill

Skyvern

Slack webhook

sleep agent

sleeper packages

SLEEPWALKER

Sliver

SLSA

SLSA provenance

SMA1000

smart building

smart contract

smart contracts

smart TVs

SMARTAXE

SmartConsole

SmartLoader

SmartScreen

SMB

SMB brute force

SMB egress

SMB/USB worm

smishing

SMM

Smoke Sandstorm

SMS interception

SMS phishing

SMS theft

sms-phishing

SMTP

SMTP abuse

Snake

snap7

Sneaky 2FA

Sneaky2FA

SNMP

Snowflake

SNOWLIGHT

SNWLID-2026-0016

SOAP API abuse

SOC

SoC

SocGholish

social abuse

social engineering

Social Security Administration

social-engineering

Socket

Socket Security

Socket Security Research

Socket.IO

SOCKS tunneling

SOCKS5

SOCKS5 proxy

SOCKS5 tunneling

SockTz

SOCRadar

SoftEther VPN

SoftPerfect Network Scanner

software impersonation

software supply chain

software-deployment

SOHO router

SOHO routers

Solana

Solana Name Service

SolarWinds

Solid PDF Creator

SolidPDFCreator.dll

SolidPDFPcl2Bmp

Sonatype

Sonatype Guide

sonatype-2026-005660

sonatype-2026-005899

sonatype-2026-005901

sonatype-2026-006746

SonicWall

Sophos

SOUL.md

source code

source control

source repository compromise

source-code compromise

source-control token theft

source-package drift

source-package mismatch

source-repository abuse

source-repository poisoning

source-repository reconnaissance

SourceForge abuse

SourTrade

South Africa

South Asia

South Korea

Southeast Asia

SP Page Builder

Spain

spam

Spark RAT

SPEAKINGSTONE

spear phishing

spear-phishing

spearphishing

Specter

SPECTRALVIPER

SPECTRE

Spectre

Sphinx ransomware

SpiceRAT

SpiderLabs

Spikey Scorpius

Splunk

Spreadtrum

Spring

Spring AI

Spring AMQP

Spring Batch

Spring Boot

Spring Cloud Config

Spring Data REST

Spring Framework

Spring Integration

Spring Security

SprySOCKS

Spyroid

spyware

SQL injection

SQL Server

SQLite

SQLite state

SQLRCE0

SquareShell

SSD Secure Disclosure

SSDP

SSH

SSH backdoor

SSH bastion

SSH brute force

SSH key exposure

SSH key persistence

SSH keylogger

SSH keys

SSH lateral movement

SSH persistence

SSH pivot

SSH tunnel

SSH tunneling

SSH tunnels

sshd

SSL VPN

SSO

SSRF

SSRF allow-list

STAC4749

stack use-after-free

staged malicious update

staged publishing

staking-precompile

stale access

stale credentials

stale state

Starland RAT

Starlette

Startup folder

Startup folder persistence

state desynchronization

state divergence

state-linked

state-owned enterprise

static AWS keys

static credentials

Static Kitten

stdio

StealC

stealer

Steam profile dead drop

Steam Workshop

steering file

steganographic PNG

steganography

StegoAd

StepSecurity

Still Audio

Still Sync

Still Toolkit

STM32Cube

stock exchange

STOCKSTAY

StopAndProtect

storage deletion

Storage Zone Controller

stored XSS

Storm-2603

Storm-2697

Storm-2945

Storm-3075

Stowaway

STRD

streaming boxes

Stripe OLT

structured Markdown

StubMaker

student targeting

STUN

Stuxnet lineage

subject claim

subscription fraud platform

subscription PhaaS

Subtle Snail

SuccessKey

summarization

SUMMIT

Suo5

Supabase

Super Forms

super peer

SUPERADMIN_SECRET

superuser escalation

supply chain

supply chain compromise

supply-chain

supply-chain attack

supply-chain attribution

supply-chain integrity

supply-chain risk

supply-chain-adjacent

surveillance

surveillance abuse

suspected China-aligned

suspected China-linked

SVG

SWE-agent

SweetPotato

Switchvox

SWUpdate

Symantec

Symantec Threat Hunter Team

Synacktiv

Synacor

SynkLoader

Synology

synthetic commits

synthetic voice

Syria

Sysdig

SYSTEM

system prompt

SystemBC

systemd

systemd-userdbd

T1059

T1078

T1102.001

T1190

T1204.004

T1552

T1555

T1566

T1578

T3

T606

T612

T7250

TA427

TA488

TA569

Tactical RMM

tag characters

tag rewrite

tag tampering

TAG-124

TAG-179

TAG-182

TAG-22

tag-based install

Taiwan

Tajikistan

Take Control

takedown

TamperedChef

Tanzania

targeted attack

targeted malware

targeted operations

TartarusGate

task queue

task scheduler abuse

TaskWeaver

Tauri

tax forms

tax-season phishing

tc

TCP 43210

TCP 43211

TCP traffic diversion

tdata

TDS

Team PCP

TeamCity

TeamPCP

TeamPCP-adjacent

Teams access

Teams TURN relay

TeamViewer

TEASOUP

Tebi

tech support scam

technician session

technique crossover

technology sector

ted backdoor

telecom

telecom-impersonation

telecommunications

Telegra.ph

Telegram

telegram

Telegram bot

Telegram C2

Telegram dead drop

Telegram exfiltration

Telegram notification

Telegram session theft

telemetry

TELEPUZ

Telerik

TELESHIM

Teletype

Telnet

Telnet brute force

Telnyx

Temp Zagros

template injection

tenant isolation

tenant-project

Tencent

TencShell

Tenda

Tenet Security

TerminalFix

Tesseract

Tetrade

TetrisPhantom

TeviRAT

text/plain request body

Thailand

The Gentlemen

The Hacker News

The Outsider

The Quarry

ThemeREX Addons

third-party integrations

third-party JavaScript

third-party risk

thought virus

threat hunting

threat intelligence

threat landscape

threat measurement

threat research

threat telemetry

ThrottleBlood

ThumbcacheService

thumbnail generation

time-of-check time-of-use

timestomping

timing attack

timing check

TinyGo

TinyRCT

tj-actions

TLS certificates

TLS interception

TmcLoader

TmcPayload

TOCTOU

ToddyCat

token forgery

token jacking

token replay

token revocation

token theft

token-theft

TONESHELL

TookPS

tool

tool calling

tool execution

tool output injection

tool poisoning

tool use

tool-call logging

tooling

tools

Tor

Tortoiseshell

Total Software Deployment

TouchSocket

Toy Ghouls

TPM

Trading Technologies

TradingView

traffic broker

traffic control

traffic hijacking

traffic manipulation

traffic-distribution-system

traffic-fraud

Trail of Bits

training data

transaction authority

transcript spoofing

transfer stations

transitive dependency

TranslatePress

translation software

transnational repression

transparent proxy

Transparent Tribe

transport

transportation

transportation sector

Trend Micro

TrendAI

Trezor

triage

TrickBot

Trident Ursa

Trinitite

Trivy

TRM Labs

trojanized daemons

trojanized installers

trojanized npm

trojanized PDF viewer

Tron

Troy

TrueConf

trust boundary

trusted extension risk

trusted publishing

trusted relationship abuse

trusted runtime

trusted-component weaponization

trusted-domain abuse

trusted-publishing

tunnel decapsulation

tunnel services

tunneling

Turkey

Turla

Turla collaboration

TuxBot

TuxBot v3 Evolution

TWCore

Twilio

Twilio SendGrid

Twill Typhoon

TWINLOOT

two-factor authentication

Tycoon2FA

type confusion

TypeConfuseDelegate

TypeScript

typosquat

typosquatting

U+E0000

U.S. critical infrastructure

UAC

UAC bypass

UAC-0002

UAC-0010

UAC-0098

UAC-0145

UAC-0194

UAC-0226

UAT-10147

UAT-11795

UAT-5918

UAT-7237

UAT-7810

Ubiquiti

Ubuntu

Udev persistence

UDP C2

UDP/1900

UI redressing

UI-API

Ukraine

Ukraine targeting

Ulej

UltraViewer

UltraVNC

Umbrij

unattributed

unauthenticated

unauthenticated access

unauthenticated admin access

unauthenticated API

unauthenticated HTTP exploitation

unauthenticated RCE

unauthenticated-publish

unauthorized pentest framing

UNC1069

UNC1543

UNC1549

UNC2814

UNC3753

UNC4221

UNC4736

UNC5792

UNC5976

UNC6240

UNC6293

UNC6508

UNC6671

UNC6692

UNC6780

UNC7005

unchecked-subtraction

unclaimed names

unfiltered_upload

unguarded plugin load

Uni-App

UniBLEed

Unicode

UniFi OS

Unified CM SME

uninitialized heap memory

unintended internet access

Unisoc

Unit 42

United States

Unitree

university targeting

UNK_MassTraction

UNK_PitStop

unpatched

unpatched transitive library

unpatched vulnerability

unpkg

Unreal Engine

unrestricted file upload

unsafe deserialization

unsafe reflection

unsanctioned message board

unsigned installer

Unyielding Wasp

UpdateFactory

UPnP

UPS

upstream dependency

UPX

uranium compression

URL pack

URL parameter

URL retrieval

URLPattern

USB exfiltration

USB propagation

USB weaponizer

USB worm

use-after-free

user execution

user namespaces

user verification

UserAssist

username environmental keying

UserPath

USN Journal

UTA0355

UTA0533

UTG-Q-1000

uTLS

Uzbekistan

V2Ray

V4bel

V8

V8 isolate

V8 isolates

valid accounts

ValleyRAT

Varonis

Varonis Threat Labs

VBCloud

VBE

VBS

VBS loader

VBS spreader

VBScript

VBScript loader

vCenter

vector databases

VEIL#DROP

Velociraptor

VeloCloud

VeloCloud Orchestrator

Velvet Ant

VELVETSHELL

vendor compromise

vendor credentials

Venezuela

VENOMOUS BEAR

Vercel

Vertex AI

vesting-account

VHD

victim-owned relay infrastructure

Vidar

VIDAR

Vidar Stealer

video conferencing

video platform

Vietnam

Vietnam-aligned

Views

ViewState

ViewState deserialization

ViPNet

virtual machine escape

virtual patching

virtualization

virtualization targeting

VirusTotal sentiment abuse

vishing

Visual Studio

Visual Studio Code Remote SSH

Vite

Vitest

ViteVenom

VLESS

VM escape

vm2

vManage

VMCI

VMSA-2026-0006

VMware

VMware ESXi

VMXNET3

VNC

VNT

VOD

voice phishing

Void Blizzard

Void Manticore

Volt Typhoon

VoLTE

volume serial number

VPN

VPN credentials

VPN gateway

VPN Go

VPN session hijacking

VS Code

VS Code tunnels

Vshell

VShell

VSIX

vSphere

vSphere Foundation

vssvc.exe

VU#213560

VulnCheck

vulnerability

vulnerability database pollution

vulnerability disclosure

vulnerability exploitation

vulnerability management

vulnerability research

vulnerability-research

vulnerable appliances

VXLAN

w3wp.exe

wallet address replacement

wallet drainer

wallet infrastructure

wallet replacement

wallet theft

wallet-drainer

wallet-theft

WAPF

Wasabi

wastewater

watch_queue

watchdog

watchTowr

watchTowr Labs

water and wastewater

water sector

watering hole

watering-hole

WAV

weak authentication

weak credentials

weak entropy

weak passwords

weak RNG

weapons shipments

web application

web application compromise

web hosting

web IDE

web injection

web injector

web management interface

web page

web player

web proxy

web RCE

web server

web shell

web shell hunting

web shells

web supply chain

web-shells

WebAssembly

WebAuthn

WebDAV

webhook.site

WebHost Manager

WebKit

WebLogic

Weblogic Server Proxy Plug-in

webmail

WebRTC

webshell

webshells

website-compromise

WebSocket

WebSocket C2

WebSocket session hijacking

websocket-sharp

WebView

WebView2 C2

Webworm

Weedhack

WEEVILPROXY

Werkbit

WhatsApp

WhatsApp phishing

white-label

WHM

Wi-Fi credential theft

Widget Factory

Wiflyer

wiki

WILDDAY

WildFire

Windchill

WinDirStat

Windmill

Windows

Windows 11 25H2

Windows Defender

Windows Defender exclusions

Windows Defender impairment

Windows filesystem

Windows Forms

Windows Installer

Windows malware

Windows persistence

Windows Run dialog

Windows Script Host

Windows Server 2025

Windows servers

Windows service

Windows service persistence

Windows Terminal

Windows Update

Winnti Group

WinOS

Winos 4.0

Winos4.0

WinPython

WinRAR

WinRing0

WinRM

WinSock

wiper

wiper-adjacent

WireGuard

Wiz

Wiz Research

WLDR agent

WM_COPYDATA IPC

WMI

Woodgnat

WordlistLoader

WordPress

WordPress 7.0.4

WordPress credential theft

workerd

workflow backdoor

workflow injection

workflow orchestration

workflow-abuse

working-directory hijacking

workspace trust

World Cup

worm

worm-like propagation

WP Maps Pro

WP Squared

WP-SHELLSTORM

wp2shell

WPMU DEV Dashboard

write-what-where

WScript

WSS

X-Grafana-URL

X-Secret

X-WEBAUTH-USER

X25519

X3D MINER

X_TRADER

xAI

XChaCha20

XChaCha20-Poly1305

Xcode

XCSSET

XCSSET v40

Xecurify

XenoRAT

XFRM

Xiaomi Redmi A5

xinference

xlabs_v1

XML-RPC brute force

XMLDecoder

XMRig

XOR

XOR obfuscation

xorshift32

XPIA

Xray

XSLT SSRF

XSS

XSS injection

XSS.is

XWorm

XXE

xz

Yahoo Mail

Yanbian

YARA

Yasmarang

YesWeHack

Yinhu

YouTube

YouTube abuse

ysoserial

Yuechi Shared Technology

yuze

Yx Technology

ZAPiXDESK

ZBT

ZCS

Zendesk

Zephyr RTOS

Zero Trust

zero-balance

zero-click

zero-day

zero-day exploitation

zero-reputation infrastructure

zero-width

ZeroBEC

Zerologon

Zimbra

Zimbra Collaboration Suite

Zimperium

ZimReaper

ZIP import

zLabs

zlib

Zoho Assist

Zoho WorkDrive

ZOHOMURK

Zoom

ZoomEye

Zscaler ThreatLabz