All the glossaryGlossary

Cyber

The vocabulary of digital risk as it is underwritten and settled: attack patterns, defensive measures, accumulation, and the clauses through which a contract names or silences cyber.

85 terms
Accidental cyberAccumulation and aggregationAdvanced persistent threat (APT)Anticipatory collectionAPT (Advanced Persistent Threat)BEC and payment fraud (Business Email Compromise)Big game huntingBusiness Email Compromise (BEC)Bystanding cyber assetChain-hoppingChange HealthcareCommand and control infrastructure (C2/C&C)Credential stuffingCritical technology providerCryptographic provenanceCVE and CVSS scoreCyber actCyber hygieneCyber incidentCyber kill chainCyber operationData exfiltrationDDoS attack (Distributed Denial of Service)DeepfakeDistributed denial of service (DDoS)Domain generation algorithm (DGA)Double extortioneBPF (Extended Berkeley Packet Filter)EDR / XDR (Endpoint Detection and Response / Extended Detection and Response)Endpoint detection and response (EDR)Essential serviceFraud-as-a-serviceHoneypotHybrid warImpacted stateIncident responseIndirect prompt injectionInitial Access Broker (IAB)Injection attackKernel mode and Blue Screen of Death (BSoD)Kill switchLateral movementLiveness detectionLiving off the land (LotL)LockBitMan-in-the-middle attack (MitM)MFA (multi-factor authentication)Multi-factor authentication (MFA)NotPetyaOperation CronosOPSEC (operational security)Patch managementPenetration testing (pentest)PhishingPost-quantum cryptographyPrivacy coinPrivilege escalationRace conditionRansomware as a Service (RaaS)Red teamingRootkitSCADA systemSide-channel attackSIEM and SOARSilent cyber (non-affirmative cyber)Single Point of Failure (cyber accumulation)SOC / CIRT (Security Operations Center / Cyber Incident Response Team)Social engineeringSoftware bill of materialsSpear phishingState attributionSubstitutabilitySupply chain attackSynthetic identitySystemic cyber riskTechnical security debtThreat huntingThreat intelligence (cyber threat intelligence)Time deductibleTyposquattingWannaCryWatering-hole attackWiper malwareZero trust architectureZero-day vulnerability
Other categories
InsuranceReinsuranceActuarial scienceAILaw & regulationFinanceMarketsSpecial risksSustainable insuranceInfrastructure & data centersSpace risksAlternative risk transferTransportLife & protectionClaims & settlement