The set of points on the boundary of a system, a system element, or an environment where an attacker can try to enter, cause an effect on, or extract data from, that system, system element, or environment.
Source(s):
NIST SP 800-160 Vol. 2
from
GAO-19-128 - Adapted, based on SP 800-53
NIST SP 800-172
from
GAO-19-128
The set of points on the boundary of a system, a system component, or an environment where an attacker can try to enter, cause an effect on, or extract data from, that system, component, or environment.
Source(s):
NIST SP 800-53 Rev. 5