Cybersecurity terminology · MLC-0102
Cybersecurity terms: F (181)
- FStandard Normal Cumulative Distribution Function (see Section 5.5.3).
- facilitated self-assessmentLess formal than an internal assessment engagement, the element judgments determined by participant consensus...
- FacilitatorA person that leads a discussion among exercise participants.
- Facilitator GuideA document for an exercise facilitator that includes the material the facilitator needs for the exercise...
- facility1. Physical means or equipment for facilitating the performance of an action (e.g., buildings, instruments...
- Fact ReferenceAn expression that refers to a bound CPE name.
- factorThe three types of authentication factors are something you know, something you have, and something you are...
- fail safeA mode of termination of system functions that prevents damage See fail secure and fail soft for comparison...
- fail secureA mode of termination of system functions that prevents loss of secure state when a failure occurs or is...
- fail softSelective termination of affected, non-essential system functions when a failure occurs or is detected in the...
- Fail to Known StateUpon a disruption event that causes the system to fail, it fails to a pre-determined state. Failure in a...
- failover1. The capability to switch over automatically (typically without human intervention or warning) to a...
- failure accessType of incident in which unauthorized access to data results from hardware or software failure.
- failure controlMethodology used to detect imminent hardware or software failure and provide fail safe or fail soft recovery.
- Fair Information Practice Principles1. Principles that are widely accepted in the United States and internationally as a general framework for...
- FALA category describing the assertion protocol used by the federation to communicate authentication and...
- false accept rate (FAR)1. Proportion of verification transactions with wrongful claims of identity that are incorrectly confirmed.
- false acceptanceWhen a biometric system incorrectly identifies an individual or incorrectly authenticates an impostor against...
- False Match Rate (FMR)1. False Match Rate (defined over single comparisons)
- False Negative1. An instance in which a security tool intended to detect a particular threat fails to do so.
- False Non-Match RateFalse Non-Match Rate (defined over single comparisons)
- False Positive1. An erroneous acceptance of the hypothesis that a statistically significant event has been observed.
- false reject rate (FRR)1. Proportion of verification transactions with truthful claims of identity that are incorrectly denied.
- false rejectionWhen a biometric system fails to identify an enrollee or fails to verify the legitimate claimed identity of...
- Family and Educational Records Privacy Actthe primary law in the United States that governs the privacy of student educational records
- FAR1. False Accept Rate (defined over an authentication transaction)
- FASC-NOne of the primary identifiers on the PIV Card for physical access control, as required by FIPS 201. The...
- Fault tolerance1. The ability of a system to continue to run when one or more component(s) of the system fails.
- fault tolerant1. Of a system, having the built-in capability to provide continued, correct execution of its assigned...
- FCBA group of cooperating entities that collectively provide high-level vulnerability disclosure coordination...
- FCC ID, see Federal Communications Commission identification number
- FCKMS1. Federal Cryptographic Key Management System. A CKMS that conforms to the requirements of SP 800-152.
- FCKMS architectureThe structure of an operational FCKMS, including descriptions and diagrams of the types and locations of all...
- FCKMS Component (Component)Any hardware, software, or firmware that is used to implement an FCKMS.
- FCKMS Device (Device)Any combination of FCKMS components that serve a specific purpose (e.g., firewalls, routers, transmission...
- FCKMS documentationThe documentation collected or produced by the FCKMS service-providing organization (including the design...
- FCKMS functionsFunctions that perform cryptographic key and metadata management operations (see Section 6.4 for examples).
- FCKMS moduleA device that performs a set of key and metadata-management functions for at least one FCKMS and is...
- FCKMS personnelThe individuals of an FCKMS service-providing organization that are authorized to assume the supported roles...
- FCKMS Security DomainA collection of entities that share a common FCKMS Security Policy
- FCKMS Security Policy1. A security policy specific to an FCKMS.
- FCKMS service provider (FCKMS service-providing organization)An entity that provides FCKMS key-management services to one or more FCKMS service-using organizations in...
- FCKMS services (protections)Protections provided to data, such as data integrity authentication, confidentiality, and source...
- FCKMS service-using organizationA Federal organization or contractor that has selected an FCKMS service provider to provide key-management...
- FCL, see Final Checklist List (FCL)
- FCSMAn interagency committee dedicated to improving the quality of Federal statistics. The FCSM was created by...
- FDCC, see Federal Desktop Core Configuration (FDCC)
- FEA1. A business-based framework for governmentwide improvement developed by the Office of Management and Budget...
- Feature extraction functionidentifies and extracts features/attributes from each digital artifact. The mechanism by which features are...
- Feature PhoneA mobile device that primarily provide users with simple voice and text messaging services.
- Feature setThe set of all features associated with a single artifact is its feature set. Each algorithm must include a...
- FeaturesThe basic elements through which artifacts are compared. Comparison of two features always yields a binary...
- federal agency1. See Agency.
- Federal Agency Smart Credential NumberOne of the primary identifiers on the PIV Card for physical access control, as required by FIPS 201. The...
- Federal Committee on Statistical MethodologyAn interagency committee dedicated to improving the quality of Federal statistics. The FCSM was created by...
- Federal Communications Commission identification numberan identifier found on all wireless phones legally sold in the US, which is issued by the FCC.
- Federal Computer Security Managers, see FCSM
- Federal Computer Security Program Managers, see FCSM
- federal coordinationA set of aligned activities across the Federal Government, including identifying and engaging stakeholders...
- Federal Coordination BodyA group of cooperating entities that collectively provide high-level vulnerability disclosure coordination...
- Federal Cryptographic Key Management SystemFederal Cryptographic Key Management System. A CKMS that conforms to the requirements of SP 800-152.
- Federal DashboardA dashboard instance that: • Collects summary data from the base-level dashboards across multiple...
- Federal Desktop Core Configuration (FDCC)OMB-mandated set of security configurations for all federal workstation and laptop devices that run either...
- federal enterprise architecture (FEA)1. A business-based framework that the Office of Management and Budget (OMB) developed for government-wide...
- federal information systemAn information system used or operated by an executive agency, by a contractor of an executive agency, or by...
- Federal Information Systems Security Educators’ AssociationtheFederal Information Systems Security Educator’s Association, an organization whose members come from...
- Federal ProfileProfile of the IoT device cybersecurity capability core baseline [NISTIR 8259A] and non-technical supporting...
- federated identifierThe combination of a subject identifier within an assertion and an identifier for the IdP that issued that...
- Federated Identity ManagementA process that allows for the conveyance of identity and authentication information across a set of networked...
- federated learningA type of machine learning in which a model is trained in a decentralized fashion using multiple data sources...
- Federated TrustTrust established within a federation, enabling each of the mutually trusting realms to share and use trust...
- federation1. A collection of realms (domains) that have established trust among themselves. The level of trust may vary...
- Federation Administrators1. The entity responsible for the governance and administration of an identity federation.
- Federation Assurance Level (FAL)1. A category that describes the federation protocol used to communicate an assertion containing...
- federation authorityA party that facilitates the establishment and management of one or more trust agreements between federated...
- Federation Credential Service Provider1. A trusted entity that issues or registers subscriber authenticators and issues electronic credentials to...
- federation protocolA technical protocol that is used in a federation transaction between networked systems.
- federation transactionA specific instance of processing an authentication using a federation process for a specific subscriber by...
- feedforward neural networksArtificial neural networks in which the connections between nodes is from one layer to the next and do not...
- FFC1. Finite Field Cryptography, the public-key cryptographic methods using operations in a multiplicative group...
- Field DeviceEquipment that is connected to the field side on an ICS. Types of field devices include RTUs, PLCs...
- Field SiteA subsystem that is identified by physical, geographical, or logical segmentation within the ICS. A field...
- FieldbusA digital, serial, multi-drop, two-way data bus or communication path or link between low-level industrial...
- FileA collection of information logically grouped into a single entity and referenced by a unique name, such as a...
- File Allocation UnitA group of contiguous sectors, also known as a cluster.
- File HeaderData within a file that contains identifying information about the file and possibly metadata with...
- File Integrity CheckingSoftware that generates, stores, and compares message digests for files to detect changes made to the files.
- File Name AnomalyA mismatch between the internal file header and it external extension; a file name inconsistent with the...
- file protectionAggregate of processes and procedures designed to inhibit unauthorized access, contamination, elimination...
- file sharing servicesServices that include but are not limited to information sharing and access to information via web-based file...
- File Signature AnomalyA mismatch between the internal file header and its external file name extension; a file name inconsistent...
- File SlackSpace between the logical end of the file and the end of the last allocation unit for that file.
- File SystemA software mechanism that defines the way that files are named, stored, organized, and accessed on logical...
- FilenameA unique name used to reference a file.
- Filesystem1. A software mechanism that defines the way that files are named, stored, organized, and accessed on logical...
- Filesystem virtualizationA form of virtualization that allows multiple containers to share the same physical storage without the...
- fill deviceA COMSEC item used to transfer or store key in electronic form or to insert key into cryptographic equipment...
- filter artifactContent that has been extracted so that it can be filtered by other content specific filters (e.g., a JPEG...
- filter orchestration engine (FOE)A set of processes used to coordinate the filtering of content being transferred through the CDS. The FOE...
- Final Checklist1. A checklist that has completed public review, has had all issues addressed by the checklist developer and...
- Final Checklist List (FCL)The listing of all final checklists on the NIST repository.
- fine-tuning1. In machine learning, a training step that starts from a pre-trained model (sometimes called a foundation...
- fine-tuning circumventionFine-tuning to remove model refusal behaviour or other model-level safety interventions.
- FingerprintA hash value of a (public) key encoded into a string (e.g., into hexadecimal). Several fingerprint formats...
- Fingerprint segmentationSegmentation is the automated (and often manually reviewed) separation of an image of N fingers into N images...
- Finite Field Cryptography1. Finite Field Cryptography, the public-key cryptographic methods using operations in a multiplicative group...
- FIPPs1. Principles that are widely accepted in the United States and internationally as a general framework for...
- FIPS1. A standard for adoption and use by federal departments and agencies that has been developed within the...
- FIPS 140 security levelA metric of the security provided by a cryptographic module that is specified as Level 1, 2, 3, or 4, as...
- FIPS PUBFederal Information Processing Standard Publication
- FIPS-validated cryptography1. A cryptographic module validated by the Cryptographic Module Validation Program (CMVP) to meet...
- FIREFLYKey management protocol based on public key cryptography.
- FIREFLY credential managerThe key management entity (KME) responsible for removing outdated modern key credentials from the directory...
- firewall1. An inter-network connection device that restricts data communication traffic between two connected...
- Firewall Control Proxycomponent that controls a firewall’s handling of a call. The firewall control proxy can instruct the firewall...
- firmware1. See hardware and software.
- First byte of a two-byte status wordFirst byte of a two-byte status word
- First responderA person who provides a rapid initial response to any IT incident or event that may require further...
- fiscal optimizationA straightforward ranking of risks in descending order from most impactful to least. Risk managers tally the...
- FISSEAtheFederal Information Systems Security Educator’s Association, an organization whose members come from...
- Fit for purpose1. Used informally to describe a process, configuration item, IT service, etc., that is capable of meeting...
- fixed COMSEC facilityCOMSEC facility located in an immobile structure or aboard a ship.
- Fixed Dialing Numbersa set of phone numbers kept on the SIM that the phone can call exclusively of any others (i.e., all other...
- Fixed FieldIn the deterministic construction of IVs, the field that identifies the device or context for the instance of...
- fixed format dataA type of data that can be defined and validated via a ruleset or schema. Examples include eXtensible Markup...
- FlappingA situation in which BGP sessions are repeatedly dropped and restarted, normally as a result of line or...
- Flash ROMNon-volatile memory that is writable.
- flawImperfection or defect.
- flooding1. An attack that attempts to cause a failure in a system by providing more input than the system can process...
- FMRFalse Match Rate (defined over single comparisons)
- fnThe sum of the log2 distances between matching L-bit templates, i.e., the sum of the number of digits in the...
- FNMRFalse Non-Match Rate (defined over single comparisons)
- Focal Document1. A NIST document that is used as the basis for comparing its elements with elements from another document...
- Focal Document Element1. A discrete section, sentence, phrase, or other identifiable piece of content from a Focal Document.
- focused observationThe act of directed (focused) attention to a party or parties alleged to have violated Department/Agency...
- focused testing1. A test methodology that assumes some knowledge of the internal structure and implementation detail of the...
- Forbidden PLMNs1. A list of Public Land Mobile Networks (PLMNs) maintained on the SIM that the mobile phone cannot...
- Forced CommandA restriction configured for an authorized key that prevents executing commands other than the specified...
- forced ranking optimizationPrioritizing risks in the way that will best use available resources to achieve the maximum benefit given...
- Forensic examinerA person who is an expert in acquiring, preserving, analyzing, and presenting digital evidence from computers...
- Forensic science1. The application of science to the law.
- Forensic Specialist1. Locates, identifies, collects, analyzes, and examines data, while preserving the integrity and maintaining...
- Forensically CleanDigital media that is completely wiped of all data, including nonessential and residual data, scanned for...
- forensicsThe practice of gathering, retaining, and analyzing computer-related data for investigative purposes in a...
- forgeryA (ciphertext, tag) pair produced by an adversary who is not knowledgeable of the secret key and yet is...
- ForkA change to blockchain network’s software (usually the consensus algorithm). The changes may be backwards...
- Form FactorThe physical characteristics of a device or object including its size, shape, packaging, handling, and weight.
- formal access approvalA formalization of the security determination for authorizing access to a specific type of classified or...
- formal methodSoftware engineering method used to specify, develop, and verify the software through application of a...
- formal methodsA mathematically rigorous technique for the specification, development, and verification of software systems.
- formal policy modelA description of specific behaviors or security policies using formal languages, thus enabling the...
- Formatting FunctionThe function that transforms the payload, associated data, and nonce into a sequence of complete blocks.
- Forward ChannelThe channel on which a reader transmits its signals.
- Forward Cipher Function1. One of the two functions of the block cipher algorithm that is selected by the cryptographic key.
- FOSS, see Free and Open-Source Software
- foundation modelIn generative AI, models trained on broad data using self-supervised learning that can be adapted such as...
- Foundational Defect ChecksDefect checks that expose ineffectiveness of controls that are fundamental to the purposes of the capability...
- FQDNAn unambiguous identifier that contains every domain level, including the top-level domain.
- Framework1. The CKMS requirements specified in [NIST SP 800-130].
- Framework CoreA set of cybersecurity activities and references that are common across critical infrastructure sectors and...
- Framework Implementation TierA lens through which to view the characteristics of an organization’s approach to risk - how an organization...
- Framework ProfileA representation of the outcomes that a particular system or organization has selected from the Framework...
- Free and Open-Source SoftwareSoftware that is liberally licensed to grant users the right to use, copy, study, change, and improve its...
- Free FieldIn the RBG-based construction of IVs, the field whose contents are not restricted.
- Free SpaceAn area on media or within memory that is not allocated.
- frequencyThe rate of a repetitive event. If T is the period of a repetitive event, then the frequency f is its...
- frequency accuracyThe degree of conformity of a measured or calculated frequency to its definition. Because accuracy is related...
- frequency driftAn undesired progressive change in frequency with time. Frequency drift can be caused by instability in the...
- frequency hoppingRepeated switching of frequencies during radio transmission according to a specified algorithm, to minimize...
- frequency offset[See source document for the complete definition.]
- frequency stabilityThe degree to which an oscillating signal produces the same frequency for a specified interval of time. It is...
- Fresh1. For a newly generated key, the property of being unequal to any previously used key.
- Fresh EntropyA bitstring output from an entropy source, an NRBG or a DRBG that has access to a Live Entropy Source that is...
- fresh random value1. An output that was produced by a random bit generator and has not been previously used.
- FRRFalse Reject Rate (defined over an authentication transaction)
- FT, see Fault tolerance
- FTPA standard for transferring files over the internet. FTP programs and utilities are used to upload and...
- Full nodeA blockchain node that stores the blockchain data, passes along the data to other nodes, and ensures that...
- Full TunnelingA method that causes all network traffic to go through the tunnel to the organization.
- full/depot maintenance (COMSEC)Complete diagnostic repair, modification, and overhaul of COMSEC equipment down to replacement of piece parts...
- full-entropy bitstringA bitstring with ideal randomness (i.e., the amount of entropy per bit is equal to 1). This publication...
- Fully Qualified Domain NameAn unambiguous identifier that contains every domain level, including the top-level domain.
- Function1. Used interchangeably with algorithm in this document.
- functional attackAn adversarial attack that is optimized for a set of data in a domain rather than per data point.
- Functional ExerciseAn exercise that allows personnel with operational responsibilities to validate their IT plans and their...
- functional testing1. Segment of quality assurance testing in which advertised security mechanisms of an information system are...
- FungibleRefers to something that is replaceable or interchangeable (i.e., not uniquely identifiable).
- Fuzz TestingSimilar to fault injection in that invalid data is input into the application via the environment, or input...
181 of 4,693 terms in Cybersecurity terminology (MLC-0102). Request the full dataset.