CAPTCHA
What is CAPTCHA?
A challenge-response test used to determine whether a user is human or an automated bot. CAPTCHA stands for Completely Automated Public Turing test to tell Computers and Humans Apart.
Frameworks that govern captcha
What the standards actually require on captcha
Requirements naming captcha across 3 standards, quoted from the control text.
Security Dimension 7 Availability per X.805 Clause 6.7: Availability ensures that there is no denial of authorized access to network elements + stored information + information flows + services and applications due to events impacting the network.
X805-Dim7-Availability-Network-Resources-Information-Authorized-Access-No-Service-Denial · ITU-T X.805 Security Dimension 7 - Availability + Network Resources + Information Accessible to Authorized Users + Denial-of-Service Prevention + Resilience + Redundancy + Disaster Recovery + Business Continuity + DDoS Mitigation →Implement Online Financial Services Authentication + Payment Card Security per MAS TRM Chapters 12 + 13. Chapter 12 Online Financial Services Authentication - Two-Factor Authentication (2FA) for customer-facing online services + Strong Customer Authentication...
MAS-TRM-Online-Authentication-Payment-Card-Chapters-12-13-2FA-Strong-Customer-Authentication-PCI-DSS · MAS TRM Online Authentication + Payment Card + Chapters 12-13 + 2FA + Strong Customer Authentication + PCI DSS →Address API4:2023 Unrestricted Resource Consumption + API6:2023 Unrestricted Access to Sensitive Business Flows per OWASP API Security Top 10 2023.
OWASPAPI-4 · Unrestricted Resource Consumption and Sensitive Business Flows →Questions people ask about captcha
What is CAPTCHA?
Why is CAPTCHA important for compliance?
Which compliance frameworks address CAPTCHA?
Where can I learn more about CAPTCHA?
See how CAPTCHA applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.