Ports & Services
Threat Intel
Security Acronyms
Malware
3 letter extensions
100

Official IANA port for the HyperText Transer Protocol

80

100

This framework for adversary tactics and techniques is used for developing threat models

MITRE ATT&CK

100

TLS

Transport Layer Security

100

One of the largest botnets to date which debuted in 2016 taking down several high profile web sites

Mirai Botnet

100

EXE

Executable

200

The sum of the SSH and FTP ports

43

200

This color system is used to determine the sensitivity level for intel sharing

TLP  OR Traffic Light Protocol

200

SIEM

Security Information and Event Management

200

This ICS malware was used to cause damage to Iran's Nuclear program

Stuxnet

200

PDF

Portable Document format

300

The default port used for Windows RDP

3389

300

This intel is gathered using publicly available resources

OSINT OR Open-source intelligence

300

CSRF

Cross-Site Request Forgery

300

One of the very first recorded ransomware variants discovered in the wild

Cryptolocker

300

JSP

Java Server Page
400

This protocol uses UDP port 161

Simple Network Management Protocol OR SNMP

400

This layer of the internet is not indexed by search engine crawlers and could use some light

Dark Web or Deep web

400

NIST

National Institute of Standards and Technologies

400

MalwareTech made headlines when it was discovered his contribution to this malware

Kronos

400

SVG

Scalable Vector Graphics

500

TCP and UDP Port 464

Kerberose Password Change

500

This term refers to an artifacts of data that help identify malicious activity

IOC OR Indicator of compromise

500

PIPEDA

Personal Information Protection and Electronic Documents Act

500

This banking trojan just doesn't want to go away, causing havoc on many organizations and has been seen emerging as late as July 2020

Emotet

500

OLE

Object Linking and Embedding