Security
A curated glossary category for "Security" terms. Practical definitions for generative AI, LLM, RAG, AI agents, DX, and cybersecurity — with examples for executives and IT teams driving real-world adoption.
27 terms

Deepfake
Deepfake is a technology that uses deep learning to realistically manipulate and synthesize a person

Mesh VPN (Mesh VPN)
Mesh VPN is a VPN architecture in which each node communicates directly with encrypted connections w

Shadow AI
Shadow AI refers to the collective term for AI tools and services used by employees in their work wi

Zero Trust Network Access (ZTNA)
Zero Trust Network Access is a security model that continuously verifies users and devices, controll

EU AI Act (EU Artificial Intelligence Act)
The EU AI Act (EU Artificial Intelligence Act) is a comprehensive European Union regulation that est

AI TRiSM (AI Trust, Risk, and Security Management)
AI TRiSM is a collective term for frameworks that systematically ensure the trustworthiness, risk ma

Guardrails (AI Guardrails)
A safety mechanism that monitors LLM inputs and outputs to automatically detect and block harmful co

AI Governance
AI governance refers to the organizational policies, processes, and oversight mechanisms that ensure

AES-256
AES-256 is the highest-strength encryption algorithm using a 256-bit key length within AES (Advanced

OIDC Token (OIDC Token)
An OIDC token is a collective term for the ID token, access token, and refresh token issued under th

NVIDIA OpenShell
NVIDIA OpenShell is an open-source runtime environment that isolates AI agents within a sandbox and

OWASP
OWASP (Open Worldwide Application Security Project) is an open community project dedicated to improv

Claude Mythos
Claude Mythos is a cybersecurity-specialized frontier model developed by Anthropic, capable of auton

CyberGym
CyberGym is a benchmark for evaluating the cybersecurity capabilities of AI models, measuring in a s

Supply Chain Attack
A supply chain attack is an attack method that intervenes in the software development and distributi

CVE (Common Vulnerabilities and Exposures)
CVE is an international naming convention that assigns unique identifiers (CVE-IDs) to publicly disc

Shift Left
Shift Left is a development approach that moves processes such as testing, security checks, and qual

Zero-Day Vulnerability
A zero-day vulnerability is an unpatched vulnerability that exists before it is recognized by the so

DevSecOps
DevSecOps is an approach that integrates security measures into the DevOps pipeline from the outset,

Bug Bounty
Bug bounty is a program that pays rewards to external security researchers who discover and report v

PDPA (Thailand Personal Data Protection Act)
PDPA (Personal Data Protection Act) is a law in Thailand that regulates the collection, use, storage

HITL (Human-in-the-Loop)
HITL (Human-in-the-Loop) is an approach that incorporates into the design a process by which humans

Fuzzing
Fuzzing is a testing technique that automatically feeds large amounts of random or semi-structured i

Privacy by Isolation
A design approach that structurally eliminates the risk of personal data leakage by physically and l

Project Glasswing
Project Glasswing is a cybersecurity consortium led by Anthropic, with participation from major tech

Prompt Injection
An attack technique that manipulates LLM behavior in unintended ways through malicious input. Classi

Penetration Testing
Penetration testing is a security testing methodology that simulates intrusion attempts against syst