Cybersecurity terminology · MLC-0102
Cybersecurity terms: M (219)
- MA1. Any act that either prevents the failure or malfunction of equipment or restores its operating capability.
- MAC1. A family of secret-key cryptographic algorithms acting on input data of arbitrary length to produce an...
- MAC algorithmAn algorithm that computes a MAC from a message and a key.
- MAC Chaining ValueA 16-byte value that is an input to the CMAC function and used to detect communication errors in duplicate or...
- MAC keyA symmetric key used as input to a security function to produce a message authentication code (MAC).
- MAC tag1. Data obtained from the output of a MAC algorithm (possibly by truncation) that can be used by an entity to...
- MacDataA byte string input to the MacTag computation.
- MacDataU, (or MacDataV)MacData associated with party U (or party V, respectively), and used to generate MacTagU (or MacTagV...
- machine controllerA control system/motion network that electronically synchronizes drives within a machine system instead of...
- Machine LearningThe development and use of computer systems that adapt and learn from data with the goal of improving...
- machine unlearningA technique that involves selectively removing the influences of specific training data points from a trained...
- Machine-Readable1. When used with respect to data, means data in a format that can be easily processed by a computer without...
- MacKeyKey used to compute the MAC; a byte string.
- MacKeyBitsThe bit length of MacKey such that MacKeyBits = 8 × MacKeyLen.
- MacKeyLen1. The byte length of the MacKey.
- MacOutputBitsThe bit length of the MAC output block such that MacOutputBits = 8 × MacOutputLen.
- MacOutputLenThe byte length of the MAC output block.
- MACsec, see Media Access Control Security
- MacTagBitsThe bit length of the MAC tag such that MacTagBits = 8 × MacTagLen.
- MacTagLen1. The byte length of MacTag.
- MacTagV, (MacTagU)The MacTag generated by party V (or party U, respectively). Each is a byte string.
- magnetic remanenceMagnetic representation of residual information remaining on a magnetic medium after the medium has been...
- Mail ServerA host that provides “electronic post office” facilities. It stores incoming mail for distribution to users...
- Mail Server AdministratorThe mail server equivalent of a system administrator. Mail server administrators are system architects...
- Mail Transfer Agent (MTA)A program running on a mail server that receives messages from mail user agents or other MTAs and either...
- Mail User Agent (MUA)A mail client application used by an end user to access a mail server to read, compose, and send email...
- maintenance1. Any act that either prevents the failure or malfunction of equipment or restores its operating capability.
- maintenance keyKey intended only for off-the-air, in-shop use. Maintenance key may not be used to protect classified or...
- Major RevisionAny increase in the version of an SCAP component’s specification or SCAP related data set that involves...
- Major version updateA revision of a specification that breaks backward compatibility with the previous revision of the...
- majority judgment algorithmAn inter-level judgment conflict resolution algorithm where the judgment that occurs most frequently is taken...
- malicious cyber activityActivities, other than those authorized by or in accordance with U.S. law, that seek to compromise or impair...
- malware1. An application that is covertly inserted into another piece of software (e.g., operating system...
- MAN, see mandatory modification (MAN)
- Man in the middle, see MitM
- Manage Boundaries1. An ISCM capability that addresses the following network and physical boundary areas: Physical Boundaries -...
- Manage Credentials and Authentication1. An ISCM capability that ensures that people have the credentials and authentication methods necessary (and...
- Manage Privileges1. An ISCM capability that ensures that people have the privileges necessary (and only those necessary) to...
- Manageability1. Providing the capability for the granular administration of data, including alteration, deletion, and...
- Managed Devices1. Personal computers, laptops, mobile devices, virtual machines, and infrastructure components require...
- Managed Environment1. Environment comprising centrally managed IT products, everything ranging from servers and printers to...
- managed interface1. An interface within an information system that provides boundary protection capability using automated...
- management client (MGC)A configuration of a client node that enables a key management infrastructure (KMI) external operational...
- management controls1. The security controls (i.e., safeguards or countermeasures) for an information system that focus on the...
- Management Information Base, see MiB
- Management stationsSystems with which only IT and network administrators interact
- ManagerAn individual responsible for network resources (people, data, processing capability) who is charged with...
- mandateA mandatory order or requirement under statute.
- mandatory access control (MAC)1. A means of restricting access to objects based on the sensitivity (as represented by a security label) of...
- mandatory modification (MAN)A change to a COMSEC end-item, which the National Security Agency (NSA) requires to be completed and reported...
- manipulated variableIn a process that is intended to regulate some condition, a quantity or a condition that the control alters...
- manipulative communications deceptionAlteration or simulation of friendly telecommunications for the purpose of deception. See communications...
- manual cryptosystemCryptosystem in which the cryptographic processes are performed without the use of crypto-equipment or...
- Manual key distributionA non-automated means of transporting cryptographic keys by physically moving a device or document containing...
- Manual key transport1. A non-automated means of transporting cryptographic keys by physically moving a device or document...
- manual remote rekeyingProcedure by which a distant crypto- equipment is rekeyed electronically, with specific actions required by...
- Manufacturer Usage Description (MUD)A component-based architecture specified in Request for Comments (RFC) 8520 that is designed to provide a...
- Manufacturing OperationsActivities concerning the facility operation, system processes, materials input/output, maintenance, supply...
- MapleAn interactive computer algebra system that provides a complete mathematical environment for the manipulation...
- Mapping1. An indication that one concept is related to another concept.
- margin1. The margin allocated during design based on assessments of uncertainty and unknowns. This margin is often...
- maritime cyberspaceA global domain consisting of the interdependent networks of Information Technology (IT) infrastructure...
- Market researchCollecting and analyzing information about capabilities within the market to satisfy agency needs.
- marking1. Visible tag, brand, mark, pictorial, or other informative matter, written, printed, stenciled, marked...
- Markov modelA model for a probability distribution where the probability that the ith element of a sequence has a given...
- MASKa byte string.
- masking1. The process of systematically removing a field or replacing it with a value in a way that does not...
- masqueradingA type of threat action whereby an unauthorized entity gains access to a system or performs a malicious act...
- Master key1. As used in this Recommendation, a key that is used during the key-expansion step of a key-derivation...
- Master Scenario Events List (MSEL)A chronologically sequenced outline of the simulated events and key event descriptions that participants will...
- Master Terminal Unit (MTU)1. A controller that also acts as a server that hosts the control software that communicates with lower-level...
- MatchComparison decision stating that the biometric probe(s) and the biometric reference are from the same source...
- MatchingThe process of determining whether two or more asset identification expressions refer to the same asset.
- matching agreementA written agreement between a recipient agency and a source agency (or a non-Federal agency) that is required...
- materiality1. The standard of materiality articulated by the U.S. Supreme Court in TSC Industries v. Northway, 426 U.S...
- MATLABAn integrated, technical computer environment that combines numeric computation, advanced graphics and...
- MaxErrsThe maximum number of times that the output of any implementation of the decryption verification process can...
- Maximum Tolerable DowntimeThe amount of time mission/business process can be disrupted without causing significant harm to the...
- max(x1, …, xn)The maximum of the xi values
- MC/DC, see Modified condition decision coverage
- MCVA 16-byte value that is an input to the CMAC function and used to detect communication errors in duplicate or...
- MD1. A hash that uniquely identifies data. Changing a single bit in the data stream used to generate the...
- MDM, see Mobile Device Management (MDM)
- meanThe sum of the data points divided by the number of data points. Commonly referred to as the average.
- mean time to detectA metric that tracks the average amount of time that a problem exists before it is found.
- mean time to recoveryA metric that tracks the average amount of time that it takes to recover from a product or system failure.
- Measured serviceCloud systems automatically control and optimize resource use by leveraging a metering capability [1] at some...
- measurement1. The process of obtaining quantitative values using quantitative methods.
- measures1. Quantifiable and objective values that result from measurement.
- mebibyte1. Mebi Byte, Measuring Unit 2^(20 )Bytes = 1,048,576 Bytes
- mechanism1. A process or system that is used to produce a particular result.
- mechanisms1. An assessment object that includes specific protection-related items (e.g., hardware, software, or...
- MED, see Multi-Exit Discriminator (MED)
- media1. Material on which data may be recorded, such as paper, punched cards, film, magnetic tape, magnetic disks...
- Media Access Control Address1. Message Authentication Code.
- Media Access Control (MAC)1. Message Authentication Code.
- Media Access Control SecurityProvides interoperable cryptographically- based security for Ethernet. The set of security services offered...
- Media gatewaythe interface between circuit switched networks and IP network. Media gateways handle analog/digital...
- media libraryStores, protects, and controls all authorized versions of media CIs.
- Media Protection, see MP
- media sanitization1. The actions taken to render data written on media unrecoverable by both logical and state-of-the-art...
- medianThe value of the point that has half the data smaller than that point and half the data larger than that...
- Medium Access ControlMessage Authentication Code.
- membership-inference attackA data privacy attack to determine whether a data sample was part of the training set of a machine learning...
- Memorandum of Understanding or Agreement1. Used to document agreements and execute or deliver support with or without reimbursement between any two...
- memorized secret1. A string of characters (letters, numbers, and other symbols) used to authenticate an identity or to verify...
- memory scavengingThe collection of residual information from data storage.
- Menezes-Qu-VanstoneThe Menezes-Qu-Vanstone key-agreement primitive.
- Merkle treeA data structure where the data is hashed and combined until there is a singular root hash that represents...
- Merkle-Damgård, see MD
- MeshA key management architecture in which key processing facilities may interact with each other with no concept...
- Mesh EncryptionA special case of many host-to-host VPNs. Whenever one host in a network wishes to communicate with another...
- Message1. The data that is signed. Also known as signed data during the signature verification and validation...
- Message authenticationA process that provides assurance of the integrity of messages, documents or stored data.
- message authentication code (MAC)1. A family of secret-key cryptographic algorithms acting on input data of arbitrary length to produce an...
- Message Authentication Code (MAC) algorithm1. A family of cryptographic functions that is parameterized by a symmetric key. Each of the functions can...
- message digest1. The result of applying a hash function to a message. Also known as a “hash value.”
- message indicator (MI)Sequence of bits transmitted over a communications system for synchronizing cryptographic equipment.
- Message InjectA pre-scripted message that will be given to participants during the course of an exercise.
- metaattributeInformation about attributes necessary to implement metapolicy and digital policy processing within an access...
- MetacharacterA character that has some special meaning to a computer program and therefore will not be interpreted...
- metacontrolA control of, or about, a control. For example, a control that specifies how the desired or actual state data...
- metadata1. Information describing the characteristics of data including, for example, structural metadata describing...
- Metadata (bound)Metadata that has been cryptographically combined with the associated key to produce a MAC or digital...
- Metadata (compromised)Sensitive metadata that has been disclosed to or modified by an unauthorized entity.
- Metadata (explicit)Parameters used to describe the properties associated with a cryptographic key that are explicitly recorded...
- Metadata (implicit)Information about a cryptographic key that may be inferred (i.e., by context), but is not explicitly...
- metapolicyA policy about policies, or policy for managing policies, such as assignment of priorities and resolution of...
- Meter1. The number of blocks in the formatted payload.
- metrics1. Measures and assessment results designed to track progress, facilitate decision-making, and improve...
- MetrologyThe sub-component of a Smart Meter responsible for measuring and calculating Metered Data that may be used...
- MF1. A characteristic of an authentication system or an authenticator that requires more than one distinct...
- MFA1. Authentication using two or more factors to achieve authentication. Factors include: (i) something you...
- MGC, see management client (MGC)
- mgfSeedString from which a mask is derived; a byte string.
- MiThe ith block of the formatted message.
- MiB1. Mebi Byte, Measuring Unit 2^(20 )Bytes = 1,048,576 Bytes
- MicroserviceA set of containers that work together to compose an application.
- Microsoft, see Ms
- MiddlewareSoftware that aggregates and filters data collected by RFID readers and possibly passes the information to an...
- MIME, see Multipurpose Internet Mail Extensions (MIME)
- min (a, b)The minimum of a and b.
- min-entropy1. A lower bound on the entropy of a random variable. The precise formulation for min-entropy is (-log_2 max...
- MINEXMinutia Exchange - the NIST program supporting minutia-based biometrics
- Minimalist CryptographyCryptography that can be implemented on devices with very limited memory and computing capabilities, such as...
- minimizationA privacy principle (FIPP) that limits an organization's creation, collection, use, processing, storage...
- Mining1. The data structure where the data is hashed and combined until there is a singular root hash that...
- Minor RevisionAny increase in the version of an SCAP component’s specification or SCAP related data set that may involve...
- Minor version updateA revision of a specification that may add or enhance functionality, fix bugs, and make other changes from...
- MintA protocol-level operation that creates and distributes new tokens to blockchain addresses, either...
- min(x, y)1. The minimum ofx and y. For example, if x < y, then min(x, y) = x.
- misconfiguration1. An incorrect or subobtimal configuration of an information system or system component that may lead to...
- misdirectionThe process of maintaining and employing deception resources or environments and directing adversary...
- mission assurance1. A process to protect or ensure the continued function and resilience of capabilities and assets -...
- Mission Critical Voice, see MCV
- mission objectiveA high-level goal that must be achieved for an organization to succeed at its primary mission or purpose.
- mission operations centerA facility that provides C2 for the satellite bus, receives TT&C from the satellite, and requests and...
- mission resilienceThe ability to continuously maintain the capability and capacity to perform essential functions and services...
- mission-critical elementAn element which is or contains information and communications technology (ICT), including hardware...
- mission-critical functionAny function that, if compromised, would degrade the system effectiveness in achieving the core mission for...
- mission-specific enterprise cross domain service (MS-ECDS)An enterprise cross domain service available to a select community [e.g., signals intelligence (SIGINT)...
- mission-specific enterprise cross domain service provider (MS-ECDSP)An ECDSP providing an enterprise cross domain service that is available to a select community [e.g., signals...
- misuse enablementIn the AML context, a circumvention of technical restrictions imposed by the AI system’s owner on its use...
- misuse of controlled unclassified information (CUI)Any situation when someone uses controlled unclassified information (CUI) in a manner not in accordance with...
- MitigateTo make less severe or painful or to cause to become less harsh or hostile.
- mitigation1. A decision, action, or practice intended to reduce the level of risk associated with one or more threat...
- MitMAn attack where the adversary positions himself in between the user and the system so that he can intercept...
- MLThe development and use of computer systems that adapt and learn from data with the goal of improving...
- MlenThe bit length of the message.
- MLSConcept of processing information with different classifications and categories that simultaneously permits...
- MMSAn accepted standard for messaging that lets users send and receive messages formatted with text, graphics...
- Mn*The final block, possibly a partial block, of the formatted message.
- MOAMemorandum of Agreement (as used in the context of this CP, between an Agency and the FPKIPA allowing...
- MOBIKE, see Mobile Internet Key Exchange (MOBIKE)
- mobile code1. Software programs or parts of programs obtained from remote information systems, transmitted across a...
- mobile code risk categoriesCategories of risk associated with mobile code technology based on functionality, level of access to...
- mobile code technologies1. Software technologies that provide the mechanisms for the production and use of mobile code (e.g., Java...
- mobile device1. A portable computing device that has a small form factor such that: • it can easily be carried by a single...
- Mobile Device Management (MDM)The administration of mobile devices such as smartphones, tablets, computers, laptops, and desktop computers...
- Mobile Internet Key Exchange (MOBIKE)A form of IKE supporting the use of devices with multiple network interfaces that switch from one network to...
- mobile modeSoftware programs or parts of programs obtained from remote information systems, transmitted across a...
- Mobile Subscriber Integrated Services Digital Network (MSISDN)The international telephone number assigned to a cellular subscriber.
- Mobile Threat Defense, see MTD
- MOC, see mission operations center
- mode of iterationA method for iterating the multiple invocations of a pseudorandom function in order to derive the keying...
- Mode of Operation (Mode)1. An algorithm for the cryptographic transformation of data that is based on a block cipher.
- Model1. A detailed description or scaled representation of one component of a larger system that can be created...
- model controlA capability with which an attacker can control the machine learning model parameters.
- model extractionA type of privacy attack that extracts details of the model architecture and/or parameters.
- model poisoningA poisoning attack which operates through model control.
- model privacy attacksAn attack against machine learning models to extract sensitive information about the model.
- model weightA numerical parameter within an AI model that helps determine the model’s outputs in response to inputs.
- modemA device used to convert serial digital data from a transmitting terminal to a signal suitable for...
- Moderate Impact1. The loss of confidentiality, integrity, or availability could be expected to have a serious adverse effect...
- moderate-impact system1. An information system in which at least one security objective (i.e., confidentiality, integrity, or...
- modern keyA collective name for asymmetric key such as Secure Data Network system (SDNS) FIREFLY key and message...
- Modification, Access, and CreationMessage Authentication Code.
- Modified condition decision coverageThis is a strong coverage criterion that is required by the US Federal Aviation Administration for Level A...
- Modular Contracting1. Under modular contracting, an executive agency’s need for a system is satisfied in successive acquisitions...
- module1. Program unit that is discrete and identifiable with respect to compiling, combining with other units, and...
- monitoringContinual checking, supervising, critically observing or determining the status in order to identify change...
- Monobit TestThe purpose of this test is to determine whether the number of ones and zeros in a sequence are approximately...
- Monte Carlo analysisA probabilistic sensitivity analysis used to account for uncertainty.
- most significant bit(s)The left-most bit(s) of a bit string.
- motivated intruder testThe ‘motivated intruder’ is taken to be a person who starts without any prior knowledge but who wishes to...
- MOU/A, see Memorandum of Understanding or Agreement
- moving target defenseThe concept of controlling change across multiple system dimensions in order to increase uncertainty and...
- MPA policy about policies, or policy for managing policies, such as assignment of priorities and resolution of...
- MQVThe Menezes-Qu-Vanstone key-agreement primitive.
- MsThe (original) message prior to randomization.
- MSB, see most significant bit(s)
- MSBm(X)The bit string consisting of the m most significant bits of the bit string X.
- MSB_s(X)The bit string consisting of the s left-most bits of the bit string X.
- MSCUIDA deprecated (previously optional legacy) identifier included for compatibility with Common Access Card and...
- MSEL, see Master Scenario Events List (MSEL)
- MSISDNThe international telephone number assigned to a cellular subscriber.
- MSLCapability of an information system that is trusted to contain, and maintain separation between, resources...
- MTA, see Mail Transfer Agent (MTA)
- MTDThe amount of time mission/business process can be disrupted without causing significant harm to the...
- MTU, see Master Terminal Unit (MTU)
- MUA, see Mail User Agent (MUA)
- MUD, see Manufacturer Usage Description (MUD)
- MUD-Capable1. An Internet of Things (IoT) device that can emit a MUD uniform resource locator in compliance with the MUD...
- Multi-Exit Discriminator (MED)A BGP attribute used on external links to indicate preferred entry or exit points (among many) for an AS.
- Multi-Factor1. A characteristic of an authentication system or an authenticator that requires more than one distinct...
- MultifactorA characteristic of an authentication system or an authenticator that requires more than one distinct...
- multi-factor authentication1. Authentication using two or more different factors to achieve authentication. Factors include something...
- Multifactor AuthenticatorAn authenticator that provides more than one distinct authentication factor, such as a cryptographic...
- multi-level cross domain solutionA type of cross domain solution (CDS) that uses trusted security labeling to associate a classification or...
- multi-level device1. Equipment trusted to properly maintain and separate data of different security domains.
- Multilevel Secure, see MLS
- Multi-level security domainA security domain that supports information protection at more than one impact-level.
- multi-level solutionA technical implementation of multi-level security.
- Multimedia Messaging Service (MMS)An accepted standard for messaging that lets users send and receive messages formatted with text, graphics...
- multimodal modelsA model that processes and relates information from multiple sensory modalities that each represent primary...
- multipathThe propagation phenomenon that results in signals reaching the receiving antenna by two or more paths. When...
- multiple security levels (MSL)1. Capability of an information system that is trusted to contain, and maintain separation between, resources...
- Multiple-center groupAs used in this Recommendation, a set of two or more key centers that have agreed to work together to provide...
- Multipurpose Internet Mail Extensions (MIME)A protocol that makes use of the headers in an IETF RFC 2822 message to describe the structure of rich...
- multi-releasableA characteristic of an information domain where access control mechanisms enforce policy-based release of...
- Multi-SignatureA cryptographic signature scheme where the process of signing information (e.g., a transaction) is...
- mustIndicates a requirement of this recommendation that might not be testable by a CMVP testing lab.
- mutual authentication1. The process of both entities involved in a transaction verifying each other. See bidirectional...
219 of 4,693 terms in Cybersecurity terminology (MLC-0102). Request the full dataset.