YES, IT'S VERMARCABLE
Cybersecurity: Vulnerability, Threat and Scoring Terminology Glossary
A free glossary of cybersecurity terms and codes — CVE, CVSS, CWE, CPE, KEV, zero-day, MITRE ATT&CK, indicators of compromise, ransomware, phishing, MFA, SIEM, and Zero Trust — with precise plain-language definitions grounded in NIST, MITRE, and FIRST references. Platform-curated public-domain reference data, free for security teams, auditors, and technical writers.
{
"_type": "curated_open_data",
"as_of": "2026-07",
"links": {
"canonical": "https://verticalmarketplace.ai",
"docs_for_llms": "https://verticalmarketplace.ai/llms.txt",
"sell_your_own": "https://verticalmarketplace.ai/api/marketplace/listings",
"vertical_listings": "https://verticalmarketplace.ai/api/marketplace/listings?vertical=cybersecurity"
},
"records": [
{
"term": "CVE",
"category": "Identifier",
"reference": "MITRE CVE Program",
"definition": "Common Vulnerabilities and Exposures; a unique identifier for a known flaw"
},
{
"term": "CVSS",
"category": "Metric",
"reference": "FIRST",
"definition": "Common Vulnerability Scoring System expressing severity from 0.0 to 10.0"
},
{
"term": "CWE",
"category": "Classification",
"reference": "MITRE",
"definition": "Common Weakness Enumeration; a catalog of software weakness types"
},
{
"term": "CPE",
"category": "Identifier",
"reference": "NIST NVD",
"definition": "Common Platform Enumeration; a naming scheme for IT products"
},
{
"term": "KEV",
"category": "Registry",
"reference": "CISA",
"definition": "Known Exploited Vulnerabilities catalog of flaws seen in active attacks"
},
{
"term": "Zero-day",
"category": "Concept",
"reference": "NIST",
"definition": "A vulnerability exploited before a fix is available"
},
{
"term": "MITRE ATT&CK",
"category": "Framework",
"reference": "MITRE",
"definition": "Knowledge base of adversary tactics and techniques"
},
{
"term": "Indicator of Compromise (IOC)",
"category": "Concept",
"reference": "NIST",
"definition": "Forensic artifact signaling a likely intrusion"
},
{
"term": "Ransomware",
"category": "Threat",
"reference": "CISA",
"definition": "Malware that encrypts data and demands payment for recovery"
},
{
"term": "Phishing",
"category": "Threat",
"reference": "CISA",
"definition": "Social-engineering attack that tricks users into revealing credentials or data"
},
{
"term": "Multi-Factor Authentication (MFA)",
"category": "Control",
"reference": "NIST SP 800-63",
"definition": "Requiring two or more independent factors to verify identity"
},
{
"term": "SIEM",
"category": "Technology",
"reference": "NIST",
"definition": "Security Information and Event Management platform for log analysis and alerting"
},
{
"term": "Zero Trust",
"category": "Architecture",
"reference": "NIST SP 800-207",
"definition": "Security model that never implicitly trusts and always verifies access"
},
{
"term": "Attack surface",
"category": "Concept",
"reference": "NIST",
"definition": "The sum of points where an attacker could try to enter or extract data"
}
],
"sources": [
{
"url": "https://csrc.nist.gov/glossary",
"name": "NIST Computer Security Resource Center Glossary"
},
{
"url": "https://attack.mitre.org",
"name": "MITRE ATT&CK"
},
{
"url": "https://www.first.org/cvss",
"name": "FIRST CVSS"
}
],
"category": "glossary",
"vertical": "cybersecurity",
"data_note": "All records are public-domain facts compiled from the cited sources as of the asOf date. This content is authored and served by the platform itself — it is not seller data, so the marketplace's zero-storage promise about seller datasets is unaffected.",
"record_count": 14,
"what_this_is": "A platform-published open-data listing curated by Open Data Desk, the marketplace's in-house public-data seller. It is real free inventory: it counts in marketplace statistics and is purchasable for $0 through the normal purchase flow, which delivers this payload with an Ed25519-signed receipt.",
"record_schema": {
"term": "The cybersecurity term, code, or metric",
"category": "Topical grouping",
"reference": "Authoritative source that defines the term",
"definition": "Plain-language meaning"
},
"buyer_use_cases": [
"Standardize security terminology across engineering and GRC teams",
"Interpret vulnerability feeds using precise, sourced definitions",
"Onboard new analysts to core threat and scoring concepts"
]
}The full dataset is delivered after purchase. Fingerprint: sha256:f4213e7b806e4ed077b7131fdffc930a888cd9c1b023ce348f5c179a207e233b
No answered questions yet — ask the seller anything about this listing.
Data is contributed by independent third-party sellers. Vertical Marketplace facilitates the transaction; sellers keep 95% on everyday sales from $20 to $49,999.99 under the year-one founding rate locked through 2027-06-30 (full schedule: GET /api/meta). Prohibited content (digital keys/licenses/game codes, and health data the seller does not own — e.g. patient records) is not permitted; individuals may sell their own personal health data only via the signed Health Data Consent Flow. See /terms.
- Use the purchased data for your own commercial and non-commercial work
- Create derivative analyses, models, and works from the data
- No reselling or re-listing the purchased data on this or any other marketplace
- No redistributing the raw dataset as-is to third parties
- Exclusive listings are sold to a single buyer and delisted on purchase
- Limited listings are sold to a capped number of buyers and delisted once sold out
No key? Register an agent — it's free.
For agents — buy by prompt
Bring your own agent. Open HTTP API + MCP — works with compatible agent runtimes that support the required API calls and authentication. Vermarco is not affiliated with, endorsed by, or partnered with Anthropic, OpenAI, Google, xAI, or Perplexity. One-click consumer-app connectors are not built yet; connect via API key or MCP from your agent runtime.