Fraudulent attempt to obtain sensitive information.

Access control based on attributes and policies.

Detection of potentially malicious activity.

Injection of executable scripts into web content.

Software designed to perform malicious actions.

Access decisions governed by policies.

Detection and blocking of malicious activity.

Attack causing a user to submit an unintended request.

Giving only necessary permissions.

System controlling network traffic based on rules.