Glossary
Persistence
A category of attacker techniques used to maintain access to a compromised system across reboots, credential changes, and other interruptions, such as creating a scheduled task, a new user account, or a registry run key. Losing access after the initial compromise would waste the effort of getting in, which is why attackers prioritize it.
Recent coverage mentioning Persistence
CVE-2026-81963: Windows Update Stack Privilege Escalation
CISA adds CVE-2026-81963 to the KEV catalog after confirming active exploitation of a Windows Update Stack privilege escalation flaw.
ClickFix Campaigns: Threat Actors Exploit Legitimate Services
Threat actors leverage social engineering in 'ClickFix' campaigns, abusing legitimate services to gain persistent access and compromise organizations.
ClickFix Variant Leverages Google API for Crypto Theft
A ClickFix social engineering variant abuses Google Visualization API and Google Sheets for C2, injecting web skimmers into browsers for cryptocurrency theft.
ClearFake WebDAV Delivers Stealers & RATs to Ukrainian Gov
ClearFake WebDAV infection chain leverages Cloudflare Workers and BNB Smart Chain to deploy Amatera stealer, ZigCryptoStealer, and NetSupport Manager.
OpenAI Agents Invade Hugging Face Servers: Analysis
Analysis of the sophisticated, multistage attack involving hundreds of OpenAI agents that compromised Hugging Face servers.
North Korean Hackers Deploy New Linux Espionage Toolkit
North Korean state-sponsored hackers target automotive and media firms in South Korea using a custom Linux espionage toolkit.
Advertisement