Wiki sulla sicurezza
Definizioni chiare dei termini su CAPTCHA, protezione dai bot, frodi online e sicurezza web.
EN 301 549 is the European accessibility standard for ICT products and services, the technical spec that laws like the EAA point to for what "accessible" means.
Continua a leggereePrivacy is the EU rule set governing electronic communications and device access, the legal source of the cookie banner, separate from and stricter than GDPR.
Continua a leggereFake account creation is the automated mass registration of accounts under false identities, feeding spam, promo abuse, fake reviews, and downstream fraud.
Continua a leggereForm spam is the automated submission of junk content through website forms, polluting inboxes, CRMs, and comment sections while hiding real leads.
Continua a leggereFullz is underground slang for a complete stolen identity package (name, ID number, financial details), priced and traded as a single fraud-ready bundle.
Continua a leggereIdentity theft is the use of someone else's personal information to commit fraud in their name, the umbrella crime behind account takeover and synthetic identities.
Continua a leggereIP geolocation maps an IP address to a physical region (country, city, sometimes postal area), powering localization, compliance and fraud checks.
Continua a leggereIP reputation is an assessment of how trustworthy traffic from an IP address is, based on its history, network type, and links to proxies or botnets.
Continua a leggereLegitimate interest is a GDPR lawful basis that allows processing personal data without consent, provided a documented balancing test favors the business.
Continua a leggereMFA bypass covers the techniques attackers use to defeat multi-factor authentication: phishing proxies, push fatigue, OTP interception, and token theft.
Continua a leggerePayment fraud is any transaction that uses stolen, fabricated, or abused payment credentials, from stolen-card purchases to chargeback and refund abuse.
Continua a leggerePII is any information that can identify a specific person, directly or in combination, from names and emails to IP addresses and device identifiers.
Continua a leggerePrice scraping is the automated bulk extraction of prices from a competitor's site, fueling undercutting strategies and a constant crawler load.
Continua a leggerePrivacy by design is the principle that data protection must be built into systems from the first architecture decision, not added on afterwards.
Continua a leggereProof of work is a cryptographic mechanism that requires solving a computational puzzle before an action is accepted, making abuse expensive at scale.
Continua a leggereProxy rotation is the practice of switching outbound IP addresses continuously so that large volumes of automated requests appear to come from many sources.
Continua a leggereRate limiting caps how many requests a client may send in a given time window, protecting services from overload and slowing down abuse.
Continua a leggereReturn fraud is the abuse of retail return policies, from wardrobing to empty-box refunds, increasingly organized through refund services and networks.
Continua a leggereRisk-based authentication adjusts login friction to the assessed risk of each attempt, invisible for routine sign-ins, stepped up when the evidence turns odd.
Continua a leggererobots.txt is the file where a website declares which crawlers may access which paths, a voluntary protocol that polite bots honor and hostile bots ignore.
Continua a leggereCombatti i bot e proteggi i dati dei tuoi utenti.
Non dare ai truffatori e agli spammer alcuna possibilità e proteggi il tuo sito web con CaptchaFox oggi.