Bishop Fox named “Leader” in 2024 GigaOm Radar for Attack Surface Management. Read the Report ›

Version 2.0

Cybersecurity Style Guide

N

NaaS (n.)

Network as a service. Spell out on first use.

NAC (n.)

Network access control. Pronounced as “nack.” Spell out on first use.

nameserver (n.)

An internet server that resolves domain name queries.

Related:

DNS
NAND gate (n.)

Short for negative-AND gate. A logic gate that produces a false output only if all of its inputs are true.

NBNS

NetBIOS Name Service. A modern Windows protocol. Briefly define on first use in public-facing documents.

NDA, NDAs (n.)

Non-disclosure agreement. Pronounced as letters. Spell out on first use in public-facing documents.

need-to-know (adj.), need to know (v.)

Intel is provided on a need-to-know basis. The user does not need to know this.

NetBIOS

Network Basic Input/Output System. Do not spell out.

Related:

netblock (n.)

A range of IP addresses.

Netcat or nc

A utility that reads from and writes to network connections with TCP or UDP.

Netflix

Related:

.NET Framework

A Microsoft software framework. If possible, don’t begin sentences with this term. Pronounced as “dot-net.”

Related:

net risk (n.)

Overall risk.

NetWars

A capture-the-flag competition.

network security (n.)

An alternate term for information security.

Neuromancer

The titular fictional AI in the 1984 cyberpunk novel by William Gibson.

Related:

ICE
newline character or \n (n.)

An invisible character that moves the following characters to the next vertical line down.

NFS

Network File System. Spell out in public-facing documents.

Related:

NfSpy

An offensive security tool for spoofing NFS credentials.

Nginx

Web server software. Pronounced as “engine-X.”

ngrep, ngrep

Network grep. A network packet analyzer. Use the tech font when writing about the command. Pronounced as “N-grep.”

Related:

NIDS, NIDSes (n.)

Network-based intrusion detection system. Pronounced as “network-I-D-S.” Spell out on first use.

Related:

Nintendo Switch

This and many other Nintendo product names should be preceded by “Nintendo” on first use.

Ex: Nintendo Labo

Related:

NIST

National Institute of Standards and Technology. Pronounced as “nist.” Spell out on first use when writing for a general audience.

Related:

NIST CSF

NIST Cybersecurity Framework. Spell out on first use.

NLA

Network Level Authentication. An RDP feature. Spell out or briefly define on first use in public-facing documents.

Related:

RDP
NLP (n.)

Natural language processing. Spoken out loud as the whole phrase. Spell out on first use.

Nmap, Nmap scan

Short for Network Mapper. A pen testing tool used to scan ports and map networks. Do not spell out.

nobody

A low-privilege, default Linux user.

NOC, NOCs (n.)

Network operations center. Pronounced as “nock.” Spell out on first use.

Node.js

An open source JavaScript runtime environment.

Related:

north-south (adj.)

Network traffic that goes in and out of a data center, rather than east-west traffic within a data center. Briefly define on first use in public-facing documents.

nosniff

A option for the X-Content-Type-Options response header that prevents MIME sniffing.

NotPetya

A variant of ransomware based on Petya.

npm

Node package manager. This is the name of a tool; do not spell out.

Related:

NSA

The U.S. National Security Agency.

NSFW

“Not safe for work.” Informal.

nslookup

A tool used in testing to query DNS records.

NTLM, NTLMv2

Short for NT LAN Manager. A suite of Windows security protocols.

NTLM hash

NTLM protocol uses two hashed password values: the LM hash and the NT hash.

Related:

SAM
null (n. or v.)

An invalid, default, or special state for a value, often expressed as 0 or as NULL. When used as a verb, it means to erase data and replace it with zeros.

Ex: null byte character, null byte injection, null session, to null a hard drive

numbers

Per AP style, write out numbers below 10, except in set phrases. Write numbers plainly, without superscript. Plural years like “in the 1990s” do not take an apostrophe. Non-year numbers have a comma every 3 digits, as in “525,600 minutes.” Use tech font and do not use commas when describing integers in code.

NVD

National Vulnerability Database. Spell out on first use when writing for a general audience. https://nvd.nist.gov/

Related:

This site uses cookies to provide you with a great user experience. By continuing to use our website, you consent to the use of cookies. To find out more about the cookies we use, please see our Privacy Policy.