Dark web
A portion of the internet that is not indexed by commonly used search engines. Access typically requires anonymizing software such as Tor or I2P. While it has legitimate uses (for example, protecting journalists), it is also used for illicit trade and attack planning.
Deep web
Online content not indexed by search engines but not necessarily anonymous—such as private databases, paywalled material, and internal portals. Threat actors may abuse deep-web channels alongside dark-web marketplaces.
Dark web monitoring
Continuous, keyword-driven scanning of dark web (and related) sources to detect leaked credentials, planned attacks, ransomware discussions, and stolen data offerings specific to an organization.
Darkweb monitoring
An alternate spelling of dark web monitoring — the same practice of continuous dark net scanning using client-specific keywords, languages, and automation. Many security teams and search engines use “darkweb” as a single word; ACID provides darkweb monitoring services with the same 24/7/365 coverage described throughout this site.
Threat intelligence
Processed information about adversaries, their capabilities, infrastructure, and intent—delivered in time for defenders to act. ACID focuses on tailored, real-time, actionable intelligence.
Compromised accounts
User or employee accounts whose credentials or session tokens have been stolen or exposed, often appearing in dumps and marketplaces on the dark web.
Ransomware / RaaS
Malware that encrypts systems and demands payment. Ransomware-as-a-Service (RaaS) lets less skilled actors launch attacks using another group’s tools for a fee or profit share.
Paste tools / Paste sites
Services (for example Pastebin) where text—including stolen data chunks—can be published quickly, sometimes anonymously.
Dump sites / Leak sites
Locations where large volumes of stolen databases or files are published or sold, often after a breach.
Digital identity protection (DIP)
Monitoring of websites, DNS, domains, and apps to detect impersonation, phishing, defacement, and related brand-abuse threats.
SIEM / SOAR
Security Information and Event Management / Security Orchestration, Automation and Response platforms. ACID integrates via RESTful API so alerts flow into existing security operations.
TTM (Time to mitigate)
The time from threat awareness to effective containment. ACID’s advance alerts aim to shorten TTM.