Exploitation
In this collection 131
- Additive Group Diffie-Hellman Break (Trivial Discrete Log in Additive Groups)
- AES CBC Bit-Flipping
- AES-GCM Forbidden Attack (Nonce Reuse Tag Forgery)
- AES-IGE Padding Oracle Attack (CBC-Equivalence)
- Arbitrary Read via Pointer Overwrite
- Backdoor-Assisted Info Leak (Recursive Self-Leak)
- Bad Character Filtering Bypass
- Batch GCD Attack (Shared RSA Prime Across Keys)
- Birthday Attack
- Bloatware
- Boneh-Durfee Attack (Lattice Attack on Small RSA Private Exponent)
- Brute Force (Password Attack)
- Buffer Overflow
- Business Email Compromise
- CBC Decryption via ECB Oracle
- CBC IV=Key Recovery Attack
- CBC Padding Oracle Attack (Vaudenay)
- Complex Multiplication (CM) Prime Factorization Backdoor
- Composite-Modulus Key Exchange Break (CRT Projection Attack)
- Conic-Non-Elliptic Curve DLP Reduction (Fake ECC)
- Coppersmith's Method for Stereotyped-Partially-Known Messages
- CRIME Attack (Compression Oracle Side-Channel)
- Cross-Frame Buffer Over-Read via Recursion (Nested Frame Leak)
- Cross-site Request Forgery (CSRF)
- Cross-site Scripting (XSS)
- DDoS Reflection and Amplification
- Denial of Service (DoS)
- DES-3DES Weak Keys
- Diffie-Hellman Downgrade Attack (Export-Grade - Weak Group Negotiation)
- Diffie-Hellman Parameter-Public-Value Injection (MITM)
- Directory Traversal
- Discrete Log Reduction via Chosen Composite Modulus n=q² (Paillier's Trick)
- Discrete Log Signature Forgery via Smooth-Order Modulus Lifting (n=p², Pohlig-Hellman + Hensel Lift)
- Distributed Denial of Service (DDoS)
- DLL Injection
- DNS Poisoning
- Domain Hijacking
- Downgrade Attack
- Duplicate Signature Key Selection (DSKS) Attack
- ECB Byte-at-a-Time Decryption Attack
- Eliciting Information
- Environmental Attack
- Exit Guard Bypass (Magic Value on Stack)
- Factoring Products of Mersenne-Form Numbers (2^a-1)(2^b-1)
- Fermat's Factorization Method (Close Primes)
- Fileless Malware
- Fooling Fixed-Basis Miller-Rabin (Arnault Strong Pseudoprimes)
- Franklin-Reiter Related Message Attack
- Hastad's Broadcast Attack
- Header Manipulation
- Hidden Subset Sum - Knapsack Recovery via Lattice Reduction (LLL)
- Identity Fraud
- Impersonation
- Integer Overflow (Signedness Bypass)
- Invertible Permutation via Missing Feed-Forward (ARX Stream Ciphers)
- Keylogger
- Known-Plaintext Keystream Recovery (Many-Time Pad)
- Known-Plaintext XOR Key Recovery (Crib Dragging)
- Linear S-Box Cryptanalysis (Affine Cipher Break)
- Logic Bomb
- Low-Exponent Cube-Root Attack (Unpadded RSA)
- Malicious Code
- Malicious Updates
- Malware
- Many-Time Pad (Multi-Message Keystream Reuse)
- Matrix Groups & Textbook-RSA-Style Attacks over Matrices
- Memory Disclosure (Info Leak)
- Memory Injection
- Misinformation-Disinformation
- Modular Binomial Equation Attack
- Noisy Padding Oracle Attack (Statistical Amplification)
- OFB Mode Encryption-Decryption Symmetry
- On-path Attack
- On-path Browser Attack
- Operating System Vulnerabilities
- Out-of-Bounds Array Access (Index Manipulation)
- Partial-Match RSA Verification Exploit (Suffix Forgery via Small Modulus)
- Pass the Hash
- Penetration Test
- Phishing
- Physical Attack (Brute Force)
- Plaintext Recovery via Rejection-Sampling Oracle (Process of Elimination)
- Pretexting
- Privilege Escalation
- Race Condition
- Ransomware
- RC4 Weak-IV Key Recovery (FMS Attack)
- Read-Counter Manipulation (Canary Skip)
- Recursive RSA-Style Factorization via Known φ(N) (Multi-Prime Moduli)
- Replay Attack
- Resource Reuse
- ret2win Technique
- RF Jamming
- RFID Cloning
- ROCA Vulnerability (Infineon RSA Key Generation Weakness)
- Rootkit
- RSA Blinding Attack (Signature Malleability)
- RSA Factorization from Known (N, e, d)
- RSA Fixed-Point Leakage (Unconcealed Messages) → Factorization
- RSA Sign = Decrypt When Keys Are Shared (Unrestricted Signing Oracle)
- RSA with Non-Coprime Exponent (e Shares a Factor with φ(N))
- RSA with p = q (Repeated Prime Factor)
- Self-Modifying Shellcode
- Self-Referential GOT Overwrite (Target Depends on Corrupted Slot)
- Session Hijacking
- Shellcode
- Shellcode Chunking (Short Jumps)
- Signed Loop Counter Steering (Branch Selection via Negative Modulo)
- Small-Subgroup - Smooth-Prime Static-Key Extraction Attack (Diffie-Hellman)
- Smishing
- Spraying Attack
- Spyware
- SQL Injection
- SSL Stripping
- Stale Stack Data Leak (Frame Reuse)
- Static-Key Generator Substitution Attack (Diffie-Hellman)
- Symlink Path Shortening
- Time-Seeded Encryption Key Weakness (Coarse Timestamp-Derived Keys)
- Timing Side-Channel Attack (Computational Cost as an Oracle)
- Trojan Horse
- Two-Time Pad (XOR Key Reuse)
- Typosquatting
- Virus
- Vishing
- VM Escape
- Watering Hole Attack
- Wiener's Attack (Continued Fractions, Small Private Exponent)
- Wireless Deauthentication Attack
- Worm
- XOR-Instead-of-Exponentiation Notation Bug (Diffie-Hellman)
- Zerologon (AES-CFB8 Zero-State Keystream Collision)