Insights on Crypto Payments, Infrastructure, and Operations

Security, Risk & Compliance

Security controls, fraud, operational risk and regulatory compliance.

673Terms
0Reviewed

Terms (673)

Transport Layer Security (TLS)

Transport Layer Security is a cryptographic protocol that protects network communication through authenticated key establishment, encryption, and integrity verification. TLS allows applications…

Travel Rule Compliance

Travel Rule Compliance is the policies, controls, data exchanges, screening, recordkeeping, and decision processes used to meet applicable originator and beneficiary information…

Travel Rule Data

Travel Rule Data is the originator, beneficiary, account, wallet, institution, and transaction information that regulated entities must collect, validate, transmit, receive, or…

Travel Rule Solution

Travel Rule Solution is a technical product, network, protocol, or integration that helps institutions discover counterparties and exchange, validate, protect, reconcile, and…

Travel Rule Threshold

Travel Rule Threshold is the monetary amount or other legal condition used in a jurisdiction to determine whether particular Travel Rule information…

Treasury Audit

A treasury audit examines assets, liabilities, transactions, records, permissions, and controls to determine whether funds are protected, authorized, reconciled, and accurately reported.…

Treasury Incident

A treasury incident is an event that threatens or disrupts the confidentiality, integrity, availability, authorization, accounting, or settlement of treasury assets and…

Treasury Risk

Treasury risk is exposure to loss or disruption from liquidity, market, custody, counterparty, settlement, operational, security, legal, or concentration failures. A score…

Triangulation Fraud

Triangulation Fraud is a commerce fraud scheme in which a criminal uses a legitimate storefront or marketplace listing to collect a customer’s…

Two-Factor Authentication (2FA)

Two-Factor Authentication (2FA) is a security mechanism or control discipline that requires two independent authentication factors, such as something known, possessed, or…

Unauthorized Transfer Incident

An unauthorized transfer incident is a suspected or confirmed event involving value moved, attempted, or instructed without valid permission from the required…

Unlimited Token Approval

Unlimited Token Approval is a security mechanism or control discipline that authorizes a spender to transfer up to the maximum representable amount…

Upgradeability Risk

Upgradeability risk is the possibility that a change mechanism alters software or smart-contract behavior in a harmful, unauthorized, incompatible, or unexpected way.…

Validator Key Compromise

Validator Key Compromise is the unauthorized acquisition or use of blockchain validator signing, withdrawal, governance, or related operational keys. Different key types…

Vampire Attack

A vampire attack uses targeted incentives to draw users, liquidity, volume, or market share away from an established decentralized protocol. Defenses against…

Velocity Attack

Velocity Attack is an attack or weakness pattern that submits many transactions, login attempts, registrations, or other actions rapidly to exploit limits…

Vendor Lock-In Risk

Vendor Lock-In Risk is the risk that dependence on a provider’s proprietary technology, data model, integrations, contracts, pricing, or operational knowledge makes…

Vendor Risk

Vendor risk is exposure created when an external provider’s security, operations, finances, compliance, technology, or dependencies affect an organization’s objectives. Vendor Risk…

Verifiable Credential (VC)

Verifiable Credential (VC) is a tamper-evident digital credential whose claims and issuer can be cryptographically verified according to a defined data model…

Virtual Asset Service Provider (VASP)

A Virtual Asset Service Provider is a business that performs specified virtual-asset exchange, transfer, safekeeping, administration, or related financial services for others.…

Volatility Risk

Volatility risk is exposure to financial or operational harm caused by the speed, magnitude, or unpredictability of changes in an asset’s value.…

Vulnerability

A vulnerability is a weakness in design, implementation, configuration, process, or behavior that a threat can exploit to cause harm. For Vulnerability,…

Vulnerability Disclosure Program (VDP)

Vulnerability Disclosure Program (VDP) is a structured program that tells external researchers how to report suspected vulnerabilities safely and defines scope, communication,…