Environment Variable Security
Environment Variable Security is a security mechanism or control discipline that prevents secrets and sensitive configuration stored in process environments from leaking,…
Security controls, fraud, operational risk and regulatory compliance.
Environment Variable Security is a security mechanism or control discipline that prevents secrets and sensitive configuration stored in process environments from leaking,…
Event risk is the possibility that a discrete occurrence causes sudden financial, operational, legal, security, or reputational loss. A score for Event…
An event signature is cryptographic evidence attached to an event message so recipients can verify its origin and detect modification. An event…
Execution risk is the possibility that an approved transaction, strategy, control, or operational action is implemented incorrectly, late, or incompletely. Decision-makers use…
External Attack Surface Management (EASM) is the continuous discovery and risk management of internet-visible assets, services, domains, cloud resources, certificates, and exposures…
An External Audit is an independent examination performed by a party outside the organization against defined financial, control, compliance, security, or contractual…
Fake Transaction Hash is a fabricated, altered, or misleading transaction identifier presented as proof that a blockchain payment has been sent or…
The FATF Travel Rule requires specified originator and beneficiary information to accompany qualifying transfers handled by regulated financial or virtual-asset providers. The…
A File Upload Vulnerability is a weakness that allows an attacker to upload, store, process, retrieve, or execute a file in a…
Finality Attack is an attack or weakness pattern that attempts to reverse, conflict with, or undermine transactions or blocks that participants expected…
Finality risk is the possibility that a transaction considered settled is later reversed, excluded, conflicted, or treated differently by the network. A…
A financial audit independently examines financial statements, records, controls, and evidence to express an opinion under defined accounting and assurance standards. Reliable…
Financial Privacy is a compliance or privacy requirement that protects information about a person's or organization's accounts, transactions, assets, counterparties, and economic…
Financial Sanctions are sanctions that restrict access to funds, financial services, capital, credit, securities, payment systems, or property involving specified persons, jurisdictions,…
First-party fraud occurs when a genuine customer intentionally misrepresents identity, circumstances, ownership, or intent to obtain improper financial benefit. First-Party Fraud must…
A flash-loan attack uses uncollateralized, transaction-scoped borrowing to manipulate vulnerable decentralized-finance logic and extract value before atomic repayment. For Flash-Loan Attack, an…
Fourth-party risk is exposure created by the subcontractors, infrastructure providers, or other dependencies used by an organization's direct third parties. A score…
Fraud is intentional deception, concealment, or abuse of trust used to obtain money, assets, access, services, or another improper benefit. Fraud must…
Fraud detection identifies transactions, accounts, devices, relationships, or behaviors that may involve intentional deception or unauthorized financial activity. Fraud Detection must be…
Fraud Engine is a fraud or abuse pattern that evaluates risk signals and applies rules, models, lists, and workflows to approve, challenge,…
Fraud incident response coordinates investigation, containment, customer protection, evidence, recovery, communication, and remediation after suspected or confirmed fraud. Fraud Incident Response must…
Fraud prevention reduces opportunities and incentives for deception before loss occurs through product design, controls, authentication, limits, and education. Controls for Fraud…
A fraud proof is evidence showing that a claimed state transition or computation violated protocol rules and should be rejected or corrected.…
A fraud proof window is the limited period during which participants may challenge a provisional state claim before it becomes final. Fraud…
Core concepts behind cryptocurrency, blockchain and distributed systems.
367 terms
Networks, consensus systems, protocols and blockchain infrastructure.
543 terms
Digital assets, token standards, cryptocurrencies and stablecoins.
351 terms