Common Vulnerabilities and Exposures
Common Vulnerabilities and Exposures is a public catalog that assigns CVE IDs to publicly known cybersecurity vulnerabilities.
Read full definitionShouldEye Trust Intelligence Glossary
Threats, malware, vulnerabilities, MFA fatigue, passkeys, and detection/response vocabulary — not a security certification.
Educational information only. ShouldEye does not provide legal, banking, or individualized financial advice. Dispute rights, deadlines, and outcomes depend on your payment method, card network, issuer, processor, jurisdiction, and the facts of your case. Legal Disclaimers
15 published definitions in this topic.
Common Vulnerabilities and Exposures is a public catalog that assigns CVE IDs to publicly known cybersecurity vulnerabilities.
Read full definitionCredential stuffing is automated login attempts using username/password pairs stolen from other breaches.
Read full definitionCross-site scripting is a web vulnerability where attackers inject scripts that run in victims’ browsers in the context of a trusted site.
Read full definitionCybersecurity is the practice of protecting systems, networks, accounts, and data from unauthorized access, disruption, or misuse.
Read full definitionA distributed denial-of-service attack floods a target with traffic from many sources to degrade or block legitimate access.
Read full definitionMalware is malicious software designed to disrupt systems, steal data, gain unauthorized access, or otherwise harm users.
Read full definitionA passkey is a phishing-resistant authenticator credential based on public-key cryptography, often synced or device-bound via platform standards.
Read full definitionPhishing-resistant MFA refers to authenticators—such as passkeys/FIDO—that are designed not to yield reusable secrets to fake sites.
Read full definitionRansomware is malware that encrypts or locks access to data or systems and demands payment for restoration or non-disclosure.
Read full definitionA security key is a hardware authenticator that approves sign-ins using cryptographic challenge-response, often via FIDO protocols.
Read full definitionSession hijacking is taking over an authenticated session token to impersonate a logged-in user without knowing the password.
Read full definitionSQL injection is a vulnerability where untrusted input is interpreted as database commands, potentially exposing or altering data.
Read full definitionA supply-chain attack compromises trusted software, vendors, or update channels to reach downstream victims.
Read full definitionA vulnerability is a weakness in software, hardware, or process that an attacker could exploit to violate security properties.
Read full definitionA zero-day exploit takes advantage of a vulnerability that the vendor or public defenders do not yet have a patch or full awareness for.
Read full definition