An exploit is a program, piece of code, or set of commands designed to take advantage of a vulnerability in a software system. Hackers use exploits to gain access to a system, elevate that access to administrator (or root) permissions, then use that access to install malware, extract information, or disrupt operations.

Vulnerabilities in a software system can take many forms. Some vulnerabilities are the result of bugs or oversights in the software code; other vulnerabilities come from mistakes made by a system administrator during configuration. Likewise, the ways an exploit can target systems can also take many forms. Some exploits target vulnerabilities in web browsers, email clients, or other software that opens files from the Internet. Others spread on their own over a computer network, infecting the first computer by other means, then scanning nearby computers and automatically running the exploit on vulnerable computers.

Once an exploit is known to the developer of the vulnerable software, they can issue a hotfix to patch the hole. The longer a vulnerability is known, the greater the number of hackers that have access to it, so it is important to regularly install security updates and antivirus definitions. An exploit used by hackers before it is known to the affected software's developers is known as a zero-day exploit since the developer had zero days of notice to issue a patch and must work quickly to fix it.

NOTE: Many website and software companies operate bug bounty programs to encourage ethical hackers to find and report vulnerabilities before they can be exploited by criminal hackers.

Updated November 29, 2022 by Brian P.

quizTest Your Knowledge

What term is used to describe instructions programmed into a hardware device?

Correct! Incorrect!     View the Firmware definition.
More Quizzes →

The Tech Terms Computer Dictionary

The definition of Exploit on this page is an original definition written by the TechTerms.com team. If you would like to reference this page or cite this definition, please use the green citation links above.

The goal of TechTerms.com is to explain computer terminology in a way that is easy to understand. We strive for simplicity and accuracy with every definition we publish. If you have feedback about this definition or would like to suggest a new technical term, please contact us.

Sign up for the free TechTerms Newsletter

How often would you like to receive an email?

You can unsubscribe or change your frequency setting at any time using the links available in each email.

Questions? Please contact us.