Encoding output to prevent interpretation as code.

Deliberately limiting resource usage.

Boundary separating different security assumptions.

Injecting malicious SQL through application input.

Challenge designed to distinguish humans from bots.

Authorization framework for delegated access.

Analysis of potential security threats.

Injecting executable scripts into web content.

Decoy system designed to attract attackers.

Identity layer built on OAuth 2.0.