Sandbox
Term · Cybersecurity · MLC-T-CYB-003691
1. A system that allows an untrusted application to run in a highly controlled environment where the application’s permissions are restricted to an essential set of computer permissions. In particular, an application in a sandbox is usually restricted from accessing the file system or the network. A widely used example of applications running inside a sandbox is a Java applet.
2. A restricted, controlled execution environment that prevents potentially malicious software, such as mobile code, from accessing any system resources except those for which the software is authorized.
3. Isolating each guest OS from the others and restricting what resources they can access and what privileges they have.
4. A restricted, controlled execution environment that prevents potentially malicious software, such as mobile code, from accessing any system resources except those for which the software is authorized (Under Sandboxing).
| Identifier | MLC-T-CYB-003691 |
|---|---|
| Field | Cybersecurity |
| References | NIST SP 800-95 from NIST ITL Bulletin, Mar. 2000; CNSSI 4009-2015; CNSSI 4009-2022; NIST SP 800-179 [Superseded] from NISTIR 7298 Rev. 2; NIST SP 800-125; NIST SP 1800-21B from CNSSI 4009-2015, CNSSI 4009-2022; NIST CSRC Glossary |
Record as JSON
{
"id": "MLC-T-CYB-003691",
"term": "Sandbox",
"field": "Cybersecurity",
"definition": "1. A system that allows an untrusted application to run in a highly controlled environment where the application’s permissions are restricted to an essential set of computer permissions. In particular, an application in a sandbox is usually restricted from accessing the file system or the network. A widely used example of applications running inside a sandbox is a Java applet.\n\n2. A restricted, controlled execution environment that prevents potentially malicious software, such as mobile code, from accessing any system resources except those for which the software is authorized.\n\n3. Isolating each guest OS from the others and restricting what resources they can access and what privileges they have.\n\n4. A restricted, controlled execution environment that prevents potentially malicious software, such as mobile code, from accessing any system resources except those for which the software is authorized (Under Sandboxing).",
"references": [
"NIST SP 800-95 from NIST ITL Bulletin, Mar. 2000",
"CNSSI 4009-2015; CNSSI 4009-2022; NIST SP 800-179 [Superseded] from NISTIR 7298 Rev. 2",
"NIST SP 800-125",
"NIST SP 1800-21B from CNSSI 4009-2015, CNSSI 4009-2022",
"NIST CSRC Glossary"
],
"url": "https://mlchart.com/terminology/cybersecurity/sandbox/"
}
Record 3,691 of 4,693 in Cybersecurity terminology (MLC-0102). Request the full dataset.