The total number of possible entry points where an unauthorized user can attempt to enter or extract data from a system. Reducing the attack surface is a fundamental security practice that involves removing unnecessary services, closing ports, and minimizing exposed interfaces.
Related Terms
Network Segmentation
network-securityThe practice of dividing a network into smaller, isolated segments to limit the spread of attacks and control access bet...
Vulnerability
generalA weakness in a system, application, or process that can be exploited by a threat actor to gain unauthorized access or c...
Zero Trust
authenticationA security model based on the principle of never trust, always verify. Zero trust requires strict identity verification...