A
Access Control
Advanced Persistent Threat (APT)
Adware
Attack Surface
Authentication
Authorization
Asset Management
Availability
Application Security
B
Backdoor
Backup
Baseline Security
Botnet
Brute Force Attack
Broken Access Control
Business Continuity
Bug Bounty
C
CIA Triad
Command InjectionCompliance
Compliance
Confidentiality
Credential Stuffing
Cryptography
Cross-Site Scripting (XSS)
Cross-Site Request Forgery (CSRF)
D
Data Breach
Data Encryption
Data Loss Prevention (DLP)
Denial of Service (DoS)
Distributed Denial of Service (DDoS)
Digital Forensics
Disaster Recovery
E
Endpoint Security
Endpoint Detection and Response (EDR)
Encryption
Exploit
Exposure
Exfiltration
F
Firewall
Forensic Analysis
Fuzz Testing
File Integrity Monitoring
False Positive
Full Disk Encryption
G
Governance
GDPR
GRC (Governance, Risk, Compliance)
Gray Box Testing
H
Hacking
Hashing
HIPAA
Host-Based Intrusion Detection System (HIDS)
Hardening
HTTP Security Headers
I
Identity and Access Management (IAM)
Incident Response
Indicators of Compromise (IOC)
Information Security
Integrity
Intrusion Detection System (IDS)
Intrusion Prevention System (IPS)
J
JSON Web Token (JWT)
Jailbreaking
Java Deserialization Vulnerability
K
Key Management
Kerberos Authentication
Kill Chain
L
Least Privilege
Lateral Movement
Log Management
Logic Flaw
Linux Hardening
M
Malware
Man-in-the-Middle (MITM)
Multi-Factor Authentication (MFA)
Memory Forensics
Mobile Security
N
Network Security
NIST Cybersecurity Framework
Network Segmentation
Non-Repudiation
O
OWASP
OWASP Top 10
Open Redirect
Operational Security (OPSEC)
P
Penetration Testing
Phishing
Patch Management
Privilege Escalation
Public Key Infrastructure (PKI)
Purple Team
Q
Qualitative Risk Assessment
Quantitative Risk Assessment
Quarantine (Malware)
R
Ransomware
Red Team
Risk Assessment
Risk Management
Root Cause Analysis
Remote Code Execution (RCE)
S
Security Operations Center (SOC)
SIEM
SQL Injection
Secure Coding
Session Hijacking
Social Engineering
Sandboxing
T
Threat
Threat Intelligence
Threat Hunting
Tokenization
Transport Layer Security (TLS)
Trojan Horse
U
User Awareness Training
Unauthorized Access
URL Manipulation
User Behavior Analytics (UBA)
V
Vulnerability
Vulnerability Assessment
Vulnerability Management
Virus
Virtual Private Network (VPN)
W
Web Application Firewall (WAF)
Web Security
Whitelisting
Whaling
Wireless Security
X
XDR (Extended Detection and Response)
XML External Entity (XXE)
XSS (Cross-Site Scripting)
Z
Zero Trust
Zero-Day Vulnerability
Zoning (Network Segmentation)