Insights on Crypto Payments, Infrastructure, and Operations

Security, Risk & Compliance

Security controls, fraud, operational risk and regulatory compliance.

673Terms
0Reviewed

Terms (673)

Environment Variable Security

Environment Variable Security is a security mechanism or control discipline that prevents secrets and sensitive configuration stored in process environments from leaking,…

Event Risk

Event risk is the possibility that a discrete occurrence causes sudden financial, operational, legal, security, or reputational loss. A score for Event…

Event Signature

An event signature is cryptographic evidence attached to an event message so recipients can verify its origin and detect modification. An event…

Execution Risk

Execution risk is the possibility that an approved transaction, strategy, control, or operational action is implemented incorrectly, late, or incompletely. Decision-makers use…

External Attack Surface Management (EASM)

External Attack Surface Management (EASM) is the continuous discovery and risk management of internet-visible assets, services, domains, cloud resources, certificates, and exposures…

External Audit

An External Audit is an independent examination performed by a party outside the organization against defined financial, control, compliance, security, or contractual…

Fake Transaction Hash

Fake Transaction Hash is a fabricated, altered, or misleading transaction identifier presented as proof that a blockchain payment has been sent or…

FATF Travel Rule

The FATF Travel Rule requires specified originator and beneficiary information to accompany qualifying transfers handled by regulated financial or virtual-asset providers. The…

File Upload Vulnerability

A File Upload Vulnerability is a weakness that allows an attacker to upload, store, process, retrieve, or execute a file in a…

Finality Attack

Finality Attack is an attack or weakness pattern that attempts to reverse, conflict with, or undermine transactions or blocks that participants expected…

Finality Risk

Finality risk is the possibility that a transaction considered settled is later reversed, excluded, conflicted, or treated differently by the network. A…

Financial Audit

A financial audit independently examines financial statements, records, controls, and evidence to express an opinion under defined accounting and assurance standards. Reliable…

Financial Privacy

Financial Privacy is a compliance or privacy requirement that protects information about a person's or organization's accounts, transactions, assets, counterparties, and economic…

Financial Sanctions

Financial Sanctions are sanctions that restrict access to funds, financial services, capital, credit, securities, payment systems, or property involving specified persons, jurisdictions,…

First-Party Fraud

First-party fraud occurs when a genuine customer intentionally misrepresents identity, circumstances, ownership, or intent to obtain improper financial benefit. First-Party Fraud must…

Flash-Loan Attack

A flash-loan attack uses uncollateralized, transaction-scoped borrowing to manipulate vulnerable decentralized-finance logic and extract value before atomic repayment. For Flash-Loan Attack, an…

Fourth-Party Risk

Fourth-party risk is exposure created by the subcontractors, infrastructure providers, or other dependencies used by an organization's direct third parties. A score…

Fraud

Fraud is intentional deception, concealment, or abuse of trust used to obtain money, assets, access, services, or another improper benefit. Fraud must…

Fraud Detection

Fraud detection identifies transactions, accounts, devices, relationships, or behaviors that may involve intentional deception or unauthorized financial activity. Fraud Detection must be…

Fraud Engine

Fraud Engine is a fraud or abuse pattern that evaluates risk signals and applies rules, models, lists, and workflows to approve, challenge,…

Fraud Incident Response

Fraud incident response coordinates investigation, containment, customer protection, evidence, recovery, communication, and remediation after suspected or confirmed fraud. Fraud Incident Response must…

Fraud Prevention

Fraud prevention reduces opportunities and incentives for deception before loss occurs through product design, controls, authentication, limits, and education. Controls for Fraud…

Fraud Proof

A fraud proof is evidence showing that a claimed state transition or computation violated protocol rules and should be rejected or corrected.…

Fraud Proof Window

A fraud proof window is the limited period during which participants may challenge a provisional state claim before it becomes final. Fraud…