附錄 E:縮寫
Appendix E – Abbreviations
| 縮寫 | 原文/說明 |
|---|---|
| A2A | Agent-to-Agent(protocol / directory / communication) |
| AARS | Agentic AI Risk Scoring(AIVSS field) |
| AIBOM | AI Bill of Materials |
| AI | Artificial Intelligence(人工智慧) |
| API | Application Programming Interface(應用程式介面) |
| AS | Agentic System |
| ASI | Agentic Security Initiative / Agentic Security Item |
| AWS | Amazon Web Services |
| BOM | Bill of Materials |
| CDR | Content Disarm and Reconstruction |
| CI/CD | Continuous Integration / Continuous Deployment(持續整合/持續部署) |
| CLI | Command Line Interface(命令列介面) |
| CRUD | Create, Read, Update, Delete |
| CV | Compliance Violations(AIVSS scoring category) |
| DB | Database(資料庫) |
| DDOS / DDoS | Distributed Denial of Service(分散式阻斷服務) |
| DNS | Domain Name System(網域名稱系統) |
| EDR | Endpoint Detection & Response(端點偵測與回應) |
| gRPC | Google Remote Procedure Call(protocol) |
| HITL | Human in the Loop(人工介入) |
| HSM | Hardware Security Module(硬體安全模組) |
| IAM | Identity & Access Management(身分與存取管理) |
| ID | Identifier(識別碼) |
| IR | Incident Response(事件應變) |
| JIT | Just-In-Time(credentials or privilege) |
| KMS | Key Management Service(金鑰管理服務) |
| LLM | Large Language Model(大型語言模型) |
| MCP | Model Context Protocol |
| MITM | Man-in-the-Middle(中間人) |
| MFA | Multi-Factor Authentication(多因素驗證) |
| MLOps | Machine Learning Operations |
| mTLS | Mutual Transport Layer Security |
| NFA | Non-Functional Attributes(in AIVSS / mapping context; appears implicitly through the AIVSS fields) |
| NHI | Non-Human Identity |
| NVD | National Vulnerability Database |
| OAuth | Open Authorization |
| OSINT | Open-Source Intelligence(開放來源情報) |
| OS | Operational Security(AIVSS scoring category) |
| PEP / PDP | Policy Enforcement Point / Policy Decision Point |
| PKI | Public Key Infrastructure(公開金鑰基礎建設) |
| RAG | Retrieval-Augmented Generation(檢索增強生成) |
| RCE | Remote Code Execution(遠端程式碼執行) |
| SBOM | Software Bill of Materials |
| SDK | Software Development Kit(appears in references) |
| SSH | Secure Shell |
| SSRF | Server-Side Request Forgery(伺服器端請求偽造) |
| TTL | Time to Live |
| UI | User Interface(使用者介面) |
| VS Code | Visual Studio Code(appears in examples) |
| WASM | WebAssembly(mentioned under RCE) |
原作:OWASP Top 10 For Agentic Applications 2026
專案:OWASP Gen AI Security Project - Agentic Security Initiative
授權:CC BY-SA 4.0
本翻譯為非官方繁體中文版本,並依 CC BY-SA 4.0 授權釋出。