Skip to main content

Glossary

A-D

Account Takeover (ATO) Unauthorized access to a user's account, often through stolen credentials or SIM swapping.

Behavioral Biometrics Analysis of user behavior patterns like typing rhythm, mouse movements, and touch gestures to verify identity.

Bot Automated software that mimics human behavior, often used for fraud.

Canvas Fingerprinting Technique that identifies devices by how they render graphics on an HTML canvas element.

Device Fingerprint A unique identifier generated from device characteristics like browser, OS, screen, and hardware.

Disposable Email Temporary email addresses from services like Mailinator, used to avoid verification.

E-H

E.164 International phone number format (e.g., +14155551234).

False Positive Incorrectly flagging a legitimate user as fraudulent.

False Negative Failing to detect an actual fraudster.

Headless Browser A browser without a graphical interface, often used for automation and scraping.

I-L

IP Intelligence Information derived from IP addresses including geolocation, VPN detection, and reputation.

Keystroke Dynamics The pattern of timing between keystrokes, unique to each person.

M-P

Multi-Accounting Creating multiple accounts to abuse promotions, evade bans, or commit fraud.

Porting Transferring a phone number from one carrier to another.

R-S

Risk Score A 0-100 score indicating the likelihood of fraud.

RUM (Real User Monitoring) Tracking actual user sessions to monitor performance, errors, and behavior.

SIM Swap Fraudulent transfer of a victim's phone number to the attacker's SIM card.

V-W

VOIP Voice over IP - phone numbers that work over the internet, often used for fraud.

WebDriver Protocol for automating browsers, used by Selenium and Puppeteer.

Web Vitals Google's metrics for measuring web performance: LCP, FID, CLS.