Standards & Regulation
Frameworks, legislation, certifications, and compliance regimes
- Common Attack Pattern Enumeration and Classification468 words
**Common Attack Pattern Enumeration and Classification** The **Common Attack Pattern Enumeration and Classification (CAPEC)** is a comprehensive cata
- Vulnerability Management Lifecycle630 words
The **Vulnerability Management Lifecycle** is a critical process in cybersecurity that involves identifying, evaluating, treating, and reporting on se
- Content Security Policy706 words
**Content Security Policy** Content Security Policy (CSP) is a security feature that helps protect web applications from various types of attacks, su
- Information-theoretic security678 words
**Information-theoretic security** is a concept in cryptography that ensures the security of a system is not dependent on computational assumptions. I
- FIPS 140-2695 words
**FIPS 140-2** is a U.S. government standard that specifies the security requirements for cryptographic modules used to protect sensitive information.
- Certificate authority727 words
**Certificate Authority** A **Certificate Authority (CA)** is a trusted entity responsible for issuing digital certificates, which are used to verify
- Market for zero-day exploits616 words
The **market for zero-day exploits** refers to the buying and selling of undisclosed software vulnerabilities that can be exploited by attackers befor
- MITRE ATT&CK Framework648 words
The **MITRE ATT&CK Framework** is a comprehensive knowledge base of adversary tactics and techniques based on real-world observations. It is used by c