Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

Persistence

Real-world malware families using Boot or Logon Autostart Execution

  • Persistence
CyberDefenderDecember 21, 2025December 21, 20256 mins0
Below is an operational, SOC-ready expansion of Boot or Logon Autostart Execution (T1547), mapping it to real-world…
continue reading..

Boot or Logon Autostart Execution (MITRE ATT&CK T1547)

  • Persistence
CyberDefenderDecember 21, 2025December 21, 20256 mins0
Boot or Logon Autostart Execution is a persistence technique where an adversary configures malware or malicious scripts…
continue reading..

Image File Execution Options (IFEO) in Windows

  • Persistence
CyberDefenderDecember 20, 2025December 20, 20257 mins0
1. What IFEO Really Is Image File Execution Options (IFEO) is a Windows kernel-supported execution redirection mechanism…
continue reading..

Sticky Keys Binary Hijacking: A Deep Technical Walkthrough

  • Persistence
CyberDefenderDecember 20, 2025December 20, 20257 mins0
Sticky Keys binary hijacking is a classic Windows privilege escalation and persistence technique that abuses accessibility features…
continue reading..

Malware Obfuscation Techniques(T1027) in Cyber Security

  • Cyber Kill Chain
CyberDefenderDecember 16, 2025December 16, 20258 mins0
Attackers hide or disguise malware, commands, or data so that security tools and analysts cannot easily detect…
continue reading..

Scheduled Task In Cyber Attack

  • Cyber Kill Chain
CyberDefenderDecember 16, 2025December 16, 20256 mins0
1. What Are Scheduled Tasks (Windows Internals Perspective) Windows Scheduled Tasks are implemented via the Task Scheduler…
continue reading..

ClickFix Attacks: How One Click Turns Users into the Malware Installer

  • Credential Access
AegironDecember 13, 2025December 13, 202510 mins0
1. What Is ClickFix? ClickFix is a social engineering scam technique, not a virus by itself. It…
continue reading..

REvil/Sodinokibi – Ransomware a Detailed Explanation, IOCs

  • Cyber Kill Chain
CyberDefenderDecember 13, 2025December 13, 20258 mins0
REvil (also known as Sodinokibi) is a financially motivated ransomware-as-a-service (RaaS) operation that emerged in 2019 and…
continue reading..

AiTM and the Future of MFA Bypass: How Attackers Are Exploiting Weaknesses in Authentication Systems

  • Command and Control
AegironDecember 12, 2025December 12, 202516 mins0
In December 2025, a new phishing and MFA bypass attack, called Adversary-in-the-Middle (AiTM), started targeting Microsoft 365…
continue reading..

Golden Tickets: Full Access to the Domain

  • Cyber Kill Chain
AegironDecember 12, 2025December 12, 202511 mins0
What is a Golden Ticket? A Golden Ticket is a forged Kerberos Ticket Granting Ticket (TGT). This…
continue reading..
  • 1
  • …
  • 3
  • 4
  • 5
  • 6

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026

Find Me On

© 2026 CyberP1. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service