Terms starting with “E”
387 election security terms starting with E, with direct links to full definitions and source-backed context.
Exploit Code
(or exploit) A program, a script or a line of code with which vulnerabilities in a computer system can be used to advantage.
Exploitable Channel
VerifiedChannel that allows the violation of the security policy governing an information system and is usable or detectable by subjects external to the trusted computing base. See covert...
Exploitation
VerifiedThe act of extracting and gathering intelligence data, often from a cyber attack or cyber espionage.
Exploitation Analysis
VerifiedIn the NICE Framework, cybersecurity work where a person: Analyzes collected information to identify vulnerabilities and potential for exploitation.
Exploited
VerifiedIndicates that a malicious actor has conducted additional activities on a compromised system, such as collecting data, deploying more malware, or establishing persistent access. So...
Exposure
VerifiedThe condition of being unprotected, thereby allowing access to information or access to capabilities that an attacker can use to enter a system or network.
Exposure Of Count
VerifiedThe process of revealing vote totals to the public at the close of voting at a POLLING LOCATION. Ark. Code §7-5-527.
Exposures (cve)
VerifiedSource: NIST SP 800-126 Rev 2
Extended Hours
VerifiedWhen a person of authority extends by formal action the required number of hours that voters are able to vote, usually in response to a situation that delayed or restricted voting.
Extensible Configuration Checklist Description
VerifiedA language for authoring security checklists/benchmarks and for reporting results of evaluating them.
Extensible Configuration Checklist Description Format (xccdf)
VerifiedSCAP language for specifying checklists and reporting checklist results. (SP 800-128) (NISTIR)
Extensible Markup Language
A markup language in which semantic content is conveyed by surrounding test with named tags in pointed brackets, as in <entry>Here is some text</entry>. It is referred to as "exten...
Extension
An additional function, feature, and/or capability included in a voting system but not defined in the VVSG. VVSG.
Exterior Circulation Route
Verified"That part of a from the street or parking area to the point of entry to the CIRCULATION ROUTE polling place building." Mont. Admin. Rules §44.3.103(1)(e).
External Information System (or Component)
VerifiedAn information system or component of an information system that is outside of the authorization boundary established by the organization and for which the organization typically h...
External Information System (or Component) External Information System Service
VerifiedAn information system or component of an information system that is outside of the authorization boundary established by the organization and for which the organization typically h...
External Information System Service
VerifiedAn information system service that is implemented outside of the authorization boundary of the organizational information system (i.e., a service that is used by, but not a part of...
External Information System Service Provider
VerifiedA provider of external information system services to an organization through a variety of consumer-producer relationships, including but not limited to: joint ventures; business p...
External Network
VerifiedA network not controlled by the organization. Source: NIST SP 800-53 Rev 4
External Operational Management Role
VerifiedA role intended to be performed by a manager who is typically a member of a key management infrastructure (KMI) customer organization. Source: CNSSI No. 4005 (COMSEC)
External Security Testing
VerifiedSecurity testing conducted from outside the organization's security perimeter. (SP 800-115) (NISTIR)
External Voting
VerifiedA mechanism by which voters who are permanently or temporarily absent from a country are enabled to cast a vote, also called out-of-country voting .
Externalidentifier
VerifiedUsed in request and response messages. BallotStyle , Election , Party and ReportingUnit optionally include this class for associating a jurisdiction’s codes, i.e., identifiers, wit...
Extraction Resistance
VerifiedCapability of crypto-equipment or secure telecommunications equipment to resist efforts to extract key. (CNSSI-4009) (NISTIR)