There are many different ways a threat actor can target a victim, the more you know about these attacks and how they are designed to work, the better you can protect the systems you own, and the data that resides within them.
Here you will find links about various types of cyber attacks, what they are, how they work, and what can be done to protect against them
-
Buffer overflowsHow overflowing a memory buffer lets an attacker run their own code.
-
Denial of Service (DoS)Flooding a system so legitimate users can’t get through.
-
Distributed Denial of Service (DDoS)Overwhelming a system with massive amounts of data.
-
BotnetsArmies of hijacked devices working together on an attacker’s orders.
-
RansomwareFiles locked, data held hostage, and a payment demand attached.
-
MalwareThe umbrella term for software built to damage or exploit a system.
-
PhishingTricking someone into handing over credentials or clicking something they shouldn’t.
-
Password attacksGuessing, cracking, or stealing the keys to an account.
-
Injection AttacksSlipping malicious input into a system that trusted it too much.
-
SQL Injection AttacksAttacking databases through malicious input
-
Insider threatsWhen the risk to a system comes from inside the organisation.
-
Man in the Middle (MiTM)An attacker quietly sitting between two parties who think they’re talking directly.
-
DLL Injection & Hijacking AttacksExecuting malicious code inside legitimate processes
-
DNS tunnellingAbusing DNS to hide communications and move data.
-
DNS poisoning & injectionForcing DNS to store fake data.
-
DNS amplificationAbusing DNS services as a DDoS tactic.
-
Cross Site Scripts (XSS)Getting a browser to run script it should never have trusted.
-
Cross-Site Request Forgery (CSRF)Tricking authenticated users into performing unwanted actions.
-
Server-Side Request Forgery (SSRF)Abusing a vulnerable server to make requests to systems that should not be directly accessible.
-
ARP poisoningManipulating network traffic to intercept, redirect, or disrupt communications.
-
Container escapeAttacking virtual systems to access the underlying host or other applications.
-
LLMNR / NBT-NS PoisoningAbusing legacy Windows name-resolution protocols.
-
KerberoastingStealing service account credentials from Active Directory.
-
AS-REP roastingStealing Active Directory credentials by abusing Kerberos pre-authentication.
-
DCSyncUsing directory replication to steal secrets.
-
LDAP abuseAbusing directory protocols to manipulate AD databases.
-
Supply Chain AttacksCompromising trusted suppliers, software, and services
-
DHCP AttacksDisrupting network configuration and redirecting traffic by abusing DHCP
-
Evil Twin Wi-FiTricking users to connect to a malicious network
-
Wi-Fi Deauthentication attacksHow attackers can deliberately disconnect devices from wireless networks
-
Web Application AttacksWeb app vulnerabilities can lead to data exposure, command execution, malware, and more
-
OAuth AttacksUsing a common authentication mechanism to compromise users
-
Living Off the Land (LotL)Using legitimate tools to further an attack capability
-
Cloud Storage MisconfigurationsAccidentally exposing data to the entire Internet
-
CryptojackingUtilising a victims infrastructure to generate illicit crypto-funds
-
Zero-click attacksCompromising accounts without any user interaction
-
Firmware attacksCompromising accounts without any user interaction
-
SIM swappingCompromising accounts without any user interaction
-
Malicious phone appsTargeting users via games, utilities, updates, ads, and more
-
SS7 attacks
Attacking the mobile network to target users
-
Bluetooth attacks
Targeting users via their wireless connections
-
NFC attacks
Tap & Steal? Targeting users with short-range wireless attacks
-
Juice JackingThe hidden dangers of public USB charging
-
MFA fatigueFaking authentication requests to trick users into granting access