# Terrorism, Counterterrorism, and the Intelligence Environment > [!summary] The shortest account > After September 11, 2001, terrorism and counterterrorism ceased to be specialist subjects confined to intelligence officers and military planners. They became part of the operating environment of ordinary life. Aviation, borders, communications, finance, cybersecurity, immigration, social platforms, critical infrastructure, artificial intelligence, public health, policing, and the architecture of government now carry institutional consequences of the effort to detect hidden threats before they become catastrophic events. <iframe width="100%" height="20" scrolling="no" frameborder="no" allow="autoplay; encrypted-media" src="https://w.soundcloud.com/player/?url=https%3A//api.soundcloud.com/tracks/soundcloud%253Atracks%253A2406327993&color=%23ff5500&inverse=false&auto_play=false&show_user=true"></iframe><div style="font-size: 10px; color: #cccccc;line-break: anywhere;word-break: normal;overflow: hidden;white-space: nowrap;text-overflow: ellipsis; font-family: Interstate,Lucida Grande,Lucida Sans Unicode,Lucida Sans,Garuda,Verdana,Tahoma,sans-serif;font-weight: 100;"><a href="https://soundcloud.com/bryantmcgill" title="Bryant McGill" target="_blank" style="color: #cccccc; text-decoration: none;">Bryant McGill</a> · <a href="https://soundcloud.com/bryantmcgill/terrorism-counterterrorism-and" title="Terrorism, Counterterrorism, and the Intelligence Environment" target="_blank" style="color: #cccccc; text-decoration: none;">Terrorism, Counterterrorism, and the Intelligence Environment</a></div> ## Literacy means understanding the world you inhabit **If you do not understand artificial intelligence, systems thinking, and the history and architecture of terrorism and counterterrorism, you cannot call yourself literate in the twenty-first century.** These are no longer specialist subjects. They shape the airports people enter, the money they move, the devices they carry, the networks they depend upon, the borders they cross, the institutions that classify risk, and the machine systems increasingly used to interpret human behavior. [[thoughts/The Right to Understand Your World|The Right to Understand Your World]] begins from a biological fact: a mammal survives by constructing an internal model of its environment. It must know where danger lies, what events predict other events, which actions change outcomes, and which paths remain open. Knowing the environment is part of the machinery of survival. A system that becomes progressively better at modeling the human being while remaining illegible to the human being creates an asymmetry of prediction, influence, and control. That makes this collection an instrument of environmental legibility. Its purpose is to give the reader a working model of the security environment in which modern life occurs: the institutions, authorities, data systems, sensors, financial rails, military and civilian infrastructure, threat models, analytic methods, legal boundaries, and computational systems that observe hidden relationships and predict possible futures. Literacy here means the capacity to see the system, name its parts, understand its causal structure, and recognize how those parts act upon one another. The minimum vocabulary includes the ability to distinguish intelligence from evidence, prediction from determination, classified information from mystical secrecy, an observed relationship from an inferred one, and institutional capability from a claim about a specific operation. Without that vocabulary, a person remains inside a machine-readable environment without possessing a readable model of the machinery. ## First operational lesson: counterterrorism is cybersecurity **Cybersecurity is counterterrorism operating through the digital substrate, while counterterrorism is cybersecurity generalized across the full sociotechnical environment.** The two are becoming one [[wiki/Adversarial Systems|science of adversarial systems]]. Terrorist recruitment, propaganda, identity, communications, finance, travel, target research, access, logistics, reconnaissance, operational planning, and attacks on critical infrastructure traverse digital systems. The counterterrorism mission therefore lives inside networks, endpoints, cloud platforms, identity providers, telecommunications, financial rails, social platforms, operational technology, vulnerability management, malware analysis, incident response, digital forensics, telemetry, and machine-speed fusion. This is the first step in understanding the modern security environment. Counterterrorism is no longer a separate team waiting for a bomb or aircraft to appear. It is a continuous contest over a [[wiki/Sociotechnical Attack Surface|sociotechnical attack surface]] composed of people, software, identities, communications, finance, transportation, infrastructure, institutions, sensors, machines, beliefs, and relationships. Cybersecurity contributes telemetry, access control, hardening, attribution, containment, forensics, resilience, and response. Counterterrorism contributes human-network analysis, ideology, recruitment, behavioral transitions, finance, travel, logistics, reconnaissance, intent, and strategic context. <iframe width="560" height="315" src="https://www.youtube.com/embed/bDpIKRTM-Bs?si=CVFd8vg2g5OTWmhd" title="YouTube video player" frameborder="0" allow="accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share" referrerpolicy="strict-origin-when-cross-origin" allowfullscreen></iframe> **As a systems analogy, September 11 was a [[wiki/Zero-Day Threat Model|zero-day-like exploit]] against the American security threat model.** Suicide hijacking had been imagined, but the possibility had not been operationalized across aviation controls, doctrine, training, coordination, and response. It therefore sat between a true [[wiki/Zero-Day Exploit|zero-day]] and an [[wiki/Unpatched Institutional Vulnerability|unpatched known vulnerability]]. Oklahoma City demonstrates the complementary class: vehicle bombs were known, but federal-building protection remained an inadequately hardened attack surface—closer to an [[wiki/N-Day Exploit|n-day exploit]] at the institutional level. The governing question is not whether every attack is unprecedented. It is which combinations of known and unknown weaknesses are becoming exploitable faster than defenders can model and close them. > [!important] Companion article on predictive civilization > [[articles/Peak Person and the Predicaments of Prediction|Peak Person and the Predicaments of Prediction]] supplies the collection's governing answer to prediction: **use prediction to prevent catastrophe and increase intelligent intervention; never use it to close the person's field of becoming.** The article separates precrime directed at a predicted harmful act from opportunity foreclosure directed at a predicted life. September 11 was an **organizational phase transition**. A small clandestine network exploited jurisdictional boundaries, fragmented information, institutional seams, ordinary civilian infrastructure, and the cognitive limits of large bureaucracies to generate strategic effects wildly disproportionate to its size. The response extended far beyond new agencies. Information sharing, identity resolution, network analysis, watchlisting, fusion, threat assessment, financial monitoring, cybersecurity, interagency task forces, public-private coordination, and machine-assisted analysis became permanent features of governance. ## The collection's conceptual spine The collection is organized around a larger proposition than any single agency, platform, or research institution: **terrorism and counterterrorism became a governing architecture of the post-9/11 world**. That architecture changed aviation, borders, finance, cybersecurity, policing, surveillance, military doctrine, emergency management, critical infrastructure, and artificial intelligence. Understanding it is now part of basic civic literacy. The central transition is **static intelligence → predictive intelligence**. Dossiers, databases, watchlists, and manually assembled link charts remain important, but they increasingly feed continuously updated models of uncertain identity, hidden relationships, temporal networks, latent states, and conditional futures. [[wiki/Artificial Intelligence|AI]] is becoming the native computational environment for these problems because graphs, embeddings, multimodal observations, Bayesian updating, anomaly detection, link prediction, uncertainty, and repeated state revision are native machine representations. AI becomes strategically consequential through [[wiki/Intelligence Fusion|fusion]] and interoperability. NCTC, JTTFs, fusion centers, DTRA threat-network analysis, military all-domain data integration, law-enforcement systems, contractors, state and local partners, financial institutions, and machine-readable trust systems do not become one organization. Under their distinct authorities, selected observations can nevertheless become computationally composable. The transformation is: **fragmented observation → interoperable evidence → relational structure → probabilistic inference → conditional prediction → authorized intervention → audit and revision** This architecture culminates in [[wiki/Probabilistic Precrime|probabilistic precrime]]: **stop the crime before it happens**. The machinery estimates how present configurations change the probability of future harm, identifies the observation that would most change that estimate, and moves institutions from cleaning up catastrophe toward altering the conditions from which catastrophe emerges. Prevention is the objective. The collection's spine is therefore: **post-9/11 phase transition → hidden-network problem → predictive intelligence → AI → fusion and interoperability → Oden's predictive-science grammar → ideological transmission and dangerous individuals → uncertainty discipline → assurance and compliance → lawful human and institutional intervention** ## Oden: the technical Rosetta Stone The [[wiki/Oden Institute|Oden Institute for Computational Engineering and Sciences]] is one of the collection's most important pieces and its [[wiki/Oden as Predictive-Science Rosetta Stone|technical Rosetta Stone]], not its single opening claim. Oden is not publicly identified as a counterterrorism center. Its importance is methodological: within one institutional ecosystem, reduced-order modeling, inverse problems, uncertainty quantification, data assimilation, scientific machine learning, high-performance computing, real-time forecasting, and digital twins move across nuclear-radiation effects, plasma physics, epidemics, geophysics, aerospace, energy, and other complex systems. The deeper object is not “radiation,” “disease,” or “terrorism.” It is a **hidden dynamic system evolving through space, time, connectivity, exposure, uncertainty, and incomplete observation**. The recurring task is to observe an incomplete and noisy world, infer the hidden state most consistent with those observations, model how it evolves, quantify uncertainty, forecast conditional futures, identify which observation or intervention matters most, and update the representation as evidence arrives. [[wiki/Tan Bui-Thanh|Tan Bui-Thanh]] supplies the clearest documented bridge. Related methods appear in real-time prediction of nuclear-weapon radiation effects and later in infectious-disease forecasting built around interconnectivity, space-time variables, parameter inference, intervention, and uncertainty. The transported quantity and governing rules change. The predictive grammar remains: source, medium or network, propagation, exposure, hidden state, observation, uncertain parameter, receptor, forecast, and intervention. This is a technical explanatory backbone for the collection. [[wiki/Radiation Field|Radiation fields]], [[wiki/Epidemic Model|epidemics]], [[wiki/Terrorist Network|terrorist networks]], [[wiki/Extremist Cohort|extremist cohorts]], [[wiki/Dangerous Individual|dangerous individuals]], and [[wiki/Cybersecurity|cyber systems]] are different objects with different causal rules and legal authorities. Modern computational science nevertheless asks the same structural question across them: **given what can be observed now, what hidden structure most plausibly exists, how might it evolve, how uncertain is that inference, and what lawful observation or intervention would most effectively change what happens next?** Oden reveals the mathematics beneath the vocabulary. Terrorism is an **information problem before it becomes a kinetic event**. The visible attack is usually the terminal expression of an earlier hidden structure composed of ideology, relationships, recruitment, communications, finance, travel, logistics, access, planning, concealment, opportunity, and movement toward violence. Counterterrorism tries to reconstruct that changing system from incomplete observations early enough to alter the outcome. ## Start here Begin with [[wiki/Counterterrorism Collection - Start Here|Start Here]]. It establishes the collection's literacy claim, the counterterrorism–cybersecurity merger, the Oden technical bridge, and the distinction among ground truth, observation, inference, and prediction. It is the shortest reliable orientation before entering the full ontology. - **[[wiki/Counterterrorism Collection - Basic Vocabulary|Basic Vocabulary]]** defines the minimum language required to read the rest of the system: terrorism, intelligence, evidence, threat, identity, network, observation, inference, prediction, and authority. It matters because public confusion usually begins by collapsing these different objects into one another. - **[[wiki/Counterterrorism Collection - Post-9-11 Security Architecture|Post-9/11 Security Architecture]]** maps the agencies, task forces, fusion centers, military support, financial authorities, contractors, technology platforms, and distributed participants reorganized around hidden threats. It shows why the security environment is an ecosystem rather than a single agency chart. - **[[wiki/Counterterrorism Collection - Counterterrorism and Cybersecurity|Counterterrorism and Cybersecurity]]** explains the merger of digital and physical defense across identity, communications, finance, infrastructure, telemetry, vulnerability, and human networks. It is essential because counterterrorism and cybersecurity are becoming one science of adversarial systems. - **[[wiki/Counterterrorism Collection - Terrorism and Radicalization|Terrorism and Radicalization]]** covers ideology, recruitment, mobilization, lone actors, stochastic influence, CVE, disengagement, deradicalization, and the non-deterministic movement toward violence. It supplies the human and social process layer beneath operational events. - **[[wiki/Counterterrorism Collection - Threat Networks|Threat Networks]]** follows dangerous individuals, facilitators, support systems, financial networks, communications, travel, access, logistics, and cells. It matters because the operational object is usually a person-in-network rather than an isolated suspect. - **[[wiki/Counterterrorism Collection - Predictive Graphs|Predictive Graphs]]** moves from static link charts to temporal, heterogeneous, probabilistic representations of hidden structure. It is the technical center for entity resolution, relationship inference, state estimation, forecasting, and uncertainty. - **[[wiki/Counterterrorism Collection - Predictive Policing and Probabilistic Precrime|Predictive Policing and Probabilistic Precrime]]** explains how security moves upstream from completed events toward risk states and conditional futures. It keeps prevention as the objective while separating intervention against an emerging harmful act from administrative foreclosure of a person's future. - **[[wiki/Counterterrorism Collection - Artificial Intelligence|Artificial Intelligence]]** shows why graphs, latent states, multimodal observations, anomaly detection, uncertainty, and continuous updating are native computational objects for AI. It connects machine learning to the actual structure of the counterterrorism problem. - **[[wiki/Counterterrorism Collection - Fusion and Surveillance|Fusion and Surveillance]]** maps collection, contact tracing, identity resolution, pattern of life, sensors, fusion centers, and real-time observability. It explains how separately acquired observations become a common intelligence picture. - **[[wiki/Counterterrorism Collection - Counter-WMD|Counter-WMD]]** covers WMD law, DTRA, threat networks, dangerous individuals, delivery systems, radiation effects, and assembled mass-casualty systems. It is important because mass effect can emerge from a coupled system rather than one intrinsically destructive component. - **[[wiki/Counterterrorism Collection - Human Intelligence and Operational Roles|Human Intelligence and Operational Roles]]** distinguishes employees from informants, sources, undercover participants, role players, access agents, legends, contractors, and reporting relationships. It makes the distributed human layer visible without reducing it to payroll counts. - **[[wiki/Counterterrorism Collection - Compliance and Trust Infrastructure|Compliance and Trust Infrastructure]]** explains classification, PKI, identity credentials, authorization, access control, provenance, auditability, RMF, and machine-readable assurance. It matters because interoperable AI and intelligence require a trust fabric capable of preserving permissions and accountability across domains. - **[[wiki/Counterterrorism Collection - Oden and Predictive Science|Oden and Predictive Science]]** follows radiation transport, epidemics, inverse problems, uncertainty quantification, reduced-order modeling, digital twins, and real-time forecasting. It is the collection's technical Rosetta Stone for seeing the common predictive grammar beneath different physical and social systems. - **[[wiki/Counterterrorism Collection - Cognitive Warfare and Ideological Transmission|Cognitive Warfare and Ideological Transmission]]** covers information weapons, memetic transmission, complex contagion, propaganda, incitement, sacred values, and mass influence. It supplies the cognitive and informational layer through which ideology becomes behavior and organization. - **[[wiki/Counterterrorism Collection - Privacy and Civil Liberties|Privacy and Civil Liberties]]** maps authorization, minimization, due process, oversight, error, redress, proportionality, and contestability. It is the governance route for understanding how high-resolution observation interacts with individualized state action. - **[[wiki/Counterterrorism Collection - Public Health and Violence Prevention|Public Health and Violence Prevention]]** connects population surveillance, epidemiological models, CVE, risk and protective factors, contact networks, prevention, and the organism/person distinction. It explains why public-health reasoning and counterterrorism can share models while retaining distinct legal objects. - **[[wiki/Counterterrorism Collection - AI and the Future of Terrorism|AI and the Future of Terrorism]]** examines the erosion of terrorists' informational asymmetry as AI improves entity resolution, graph inference, temporal modeling, and multimodal fusion. It also explains why strategic surprise remains possible even in a far more observable world. ## The institutional grammar The collection routes the public-facing vocabulary through [[wiki/Terrorism|Terrorism]], [[wiki/Counterterrorism|Counterterrorism]], [[wiki/Intelligence|Intelligence]], [[wiki/Intelligence Community|Intelligence Community]], [[wiki/National Counterterrorism Center|National Counterterrorism Center]], [[wiki/Threat Assessment|Threat Assessment]], [[wiki/Watchlisting|Watchlisting]], [[wiki/Fusion Center|Fusion Center]], [[wiki/HUMINT|HUMINT]], [[wiki/SIGINT|SIGINT]], [[wiki/OSINT|OSINT]], [[wiki/GEOINT|GEOINT]], [[wiki/All-Source Intelligence|All-Source Intelligence]], [[wiki/Counterintelligence|Counterintelligence]], and [[wiki/Weapon of Mass Destruction|WMD]]. These are not mysterious acronyms. They are names for functions: observe, identify, relate, assess, share, authorize, act, record, and review. The post-9/11 environment is distributed. The Intelligence Community, FBI, DHS, NCTC, JTTFs, fusion centers, DTRA, DoD, Army intelligence, Treasury, ICE/HSI, state and local agencies, financial institutions, transportation systems, infrastructure operators, contractors, sources, task-force officers, and technical specialists participate under different authorities. Interoperability does not make them one undifferentiated organization, and distributed participation does not make every participant an intelligence employee. ## Hidden networks and predictive intelligence [[wiki/Counterterrorism Predictive Graph|Counterterrorism Predictive Graph]] is the central technical synthesis. It joins [[wiki/Temporal Heterogeneous Graph|temporal heterogeneous graphs]], [[wiki/Entity Resolution|entity resolution]], [[wiki/Link Analysis|link analysis]], [[wiki/Bayesian Inference|Bayesian inference]], [[wiki/Inverse Problem|inverse problems]], [[wiki/Uncertainty Quantification|uncertainty quantification]], [[wiki/Graph Neural Network|graph neural networks]], [[wiki/Link Prediction|link prediction]], [[wiki/Multi-Hop Reasoning|multi-hop reasoning]], [[wiki/Data Assimilation|data assimilation]], [[wiki/Value of Information|value of information]], and [[wiki/Collection Management|collection management]]. The governing loop is: **Observe → Resolve → Relate → Infer → Quantify Uncertainty → Forecast → Identify Information Gaps → Collect or Fuse New Evidence → Reassess → Act Under Authority → Audit → Repeat** This architecture expresses the intelligence problem directly: hidden structure under partial observation, changing over time, with expensive consequences for missed threats, misidentification, and false attribution. ## Predictive policing and probabilistic precrime [[wiki/Predictive Policing|Predictive policing]] is a principal destination concept because it is where graphs, person-in-network models, sensor fusion, inverse inference, uncertainty quantification, fusion centers, assurance, and AI become operationally useful: they can support decisions before a forecast event occurs. RAND defines predictive policing as analytical techniques used to identify likely targets for intervention in order to prevent crime or help solve past crime; its taxonomy includes forecasts of places and times, future offenders, perpetrators of past crimes, and potential victims. RAND also warns that the method is not a crystal ball. The temporal orientation moves upstream: **completed crime → preparation → capability → network state → risk state → conditional future** Traditional investigation reconstructs an event that occurred. [[wiki/State-Centered Policing|State-centered policing]] estimates which present configurations make possible futures more or less probable: changing locations, strengthening relationships, anomalous trajectories, ideological reinforcement, logistical preparation, or the convergence of otherwise ambiguous observations. In its mature form, the loop is: **observe → resolve entities → construct relationships → infer hidden state → quantify uncertainty → forecast transitions → identify the most informative missing observation → lawfully collect or fuse evidence → update → determine whether intervention is justified** This is [[wiki/Probabilistic Precrime|probabilistic precrime]]: a computational model of possible futures translated into collection priorities and preventive decisions. A functioning security system should prevent murder, bombing, sabotage, cyberattack, and mass casualty rather than arrive afterward to count the dead and reconstruct the ruins. The real failure mode is [[wiki/Opportunity Foreclosure|opportunity foreclosure]]. [[articles/Peak Person and the Predicaments of Prediction|Peak Person and the Predicaments of Prediction]] draws the decisive line: **intervene against the predicted harmful act; do not prematurely foreclose the predicted person.** Prediction becomes destructive when it quietly closes employment, education, credit, treatment, visibility, mobility, relationships, restoration, and other future-bearing paths until the model manufactures the declining life it predicted. The governing distinction is: **prevent the harmful event → preserve the person's field of becoming** This is why [[wiki/Counterfactual Opportunity|counterfactual opportunity]] and the [[wiki/Right Not to Be Finalized by a Forecast|right not to be finalized by a forecast]] belong inside predictive security. Prediction should increase intelligent intervention where harm is emerging. It should not become an administrative license to thin a human future across unrelated domains. A mature predictive system therefore runs two error functions. The first counts the catastrophes it failed to prevent; [[wiki/The Second Error Function|the second error function]] counts the harms it produced while preventing them. [[wiki/Security Harms Topology|Security Harms Topology]] maps how [[wiki/Watchlist Misidentification|watchlist misidentification]], [[wiki/Graph Error Propagation|graph error propagation]], [[wiki/Redress Opacity|redress opacity]], [[wiki/Iatrogenic Security Intervention|iatrogenic intervention]], [[wiki/Surveillance Purpose Migration|surveillance purpose migration]], and the [[wiki/Surveillance Trust Externality|trust externality]] can become **compounding downstream destruction across mobility, immigration, employment, education, family, reputation, finances, psychological stability, relationships, and future opportunity**. Deployment makes the training data endogenous through [[wiki/Observation-Induced Ground Truth|observation-induced ground truth]], [[wiki/Selective Labels|selective labels]], and [[wiki/Runaway Predictive Feedback Loop|runaway feedback]], and redress remains [[wiki/Legibility-Gated Redress|legibility-gated]]. [[research/Harms Incurred While Bringing Preventive Systems Online|Harms Incurred While Bringing Preventive Systems Online]] maps these harms stage by stage from the documented public record. ## Ideology, people, and mass effect Ideology can be modeled as transmissible informational content in a heterogeneous social network. [[wiki/Complex Contagion|Complex contagion]] makes repeated exposure, peer reinforcement, variable susceptibility, competing influences, and non-deterministic adoption explicit. [[wiki/Weaponized Ideology|Weaponized ideology]], [[wiki/Cognitive Warfare|cognitive warfare]], [[wiki/Weapon of Mass Influence|weapons of mass influence]], and [[wiki/Weapon of Mass Persuasion|weapons of mass persuasion]] describe how information can alter cognition and behavior at scale. The legal WMD definition remains narrower. A [[wiki/Dangerous Individual|dangerous individual]] need not literally be a statutory WMD to become the decisive cognitive, guidance, activation, or delivery component of a [[wiki/Mass-Casualty Threat System|mass-casualty threat system]]. The September 11 configuration demonstrates the principle: ideology supplied the objective, people supplied cognition and guidance, aircraft supplied energy and mobility, and the assembled system produced mass destruction. **Mass destruction can be an emergent property of a coupled threat system rather than an intrinsic property of one component.** ## Human CVE, neurosecurity, and writable endpoints The [[wiki/Human CVE|human CVE]] is the person-scale expression of the same systems grammar. A dangerous individual can be the [[wiki/Threat Actor|threat actor]], the [[wiki/Attack Vector|attack vector]], and the [[wiki/Vulnerability|vulnerability-bearing condition]] at once when access, placement, credentials, knowledge, capability, intent, and network position create an exploitable path through a sociotechnical system. The acronym **CVE** also produces a striking [[wiki/CVE-CVE Convergence|name collision]] between [[wiki/Common Vulnerabilities and Exposures|Common Vulnerabilities and Exposures]] and [[wiki/Countering Violent Extremism|Countering Violent Extremism]]; both expose the preventive cycle from vulnerability and exposure through detection, prioritization, intervention, and resilience. [[wiki/Brain-Computer Interfaces|Bidirectional brain-computer interfaces]] create a second and more literal meaning. A read-only neural interface observes biology; a writable interface can alter neural state. The protected endpoint becomes a [[wiki/Cyber-Biological System|cyber-biological system]], and a previously safe person-system can become dangerous because the implant, adaptive model, permissions, communications, or [[wiki/Neural Command Channel|neural command channel]] has been compromised. In this configuration the person can be the victim, the compromised endpoint, and the vehicle through which downstream harm becomes possible. [[wiki/Brainjacking|Brainjacking]] is the established research term for unauthorized control of an electronic brain implant. The response architecture cannot end at the processor. [[wiki/Neurosecurity|Neurosecurity]] must protect code integrity, model integrity, command integrity, and [[wiki/Neural Integrity|neural integrity]]. It must determine whether the device is trustworthy, whether the write channel is trustworthy, and whether the biological endpoint remained within or returned to an authorized safe state. A mature incident process therefore proceeds through [[wiki/Neural Incident Response|neural incident response]] to [[wiki/Verified Neural Restoration|verified neural restoration]] against a [[wiki/Trusted Neural Baseline|trusted neural baseline]]. The institutional foundation is already visible. [[wiki/Common Vulnerabilities and Exposures|CVE]] supplies persistent vulnerability identity; the [[wiki/National Vulnerability Database|NVD]] supplies machine-readable enrichment; the [[wiki/Known Exploited Vulnerabilities Catalog|KEV Catalog]] records exploitation in the wild; [[wiki/Common Vulnerability Scoring System|CVSS]] and [[wiki/Stakeholder-Specific Vulnerability Categorization|SSVC]] add severity and action-oriented prioritization; [[wiki/Software Bill of Materials|SBOM]] and [[wiki/Vulnerability Exploitability eXchange|VEX]] map dependency and affected status; and [[wiki/Medical Device Vulnerability Management|medical-device vulnerability management]] already requires monitoring, exploit response, patches, updates, and lifecycle assurance. The security model evolves from patching a machine to protecting and restoring the complete human-machine system: **[[wiki/Continuous Vulnerability Intelligence|continuous vulnerability intelligence]] → [[wiki/Human-Machine State Estimation|continuous human-machine state estimation]] → [[wiki/Predictive Exploit Detection|predictive exploit detection]] → rapid containment → trusted remediation → [[wiki/Verified Neural Restoration|verified restoration]]** ## AI and the future Terrorist organizations historically benefited from informational asymmetry: weak ties, aliases, compartmentation, jurisdictional seams, fragmented institutions, enormous data volume, and limited human attention. AI progressively attacks those advantages because graphs, hidden relationships, uncertain identities, temporal sequences, multimodal observations, latent states, competing hypotheses, and probability distributions are its native objects. In this deeper sense, the hidden graph is the **native soul of AI**: machine learning is unusually well suited to finding structure in incomplete, high-dimensional observations and updating that structure as evidence changes. That advantage is conditional. Models inherit missing data, adversarial deception, collection bias, identity errors, base-rate problems, and legal limits. AI can prioritize and infer; it cannot convert uncertainty into ground truth. The corresponding synthesis page is [[wiki/AI and the End of Terrorism|AI and the End of Terrorism]]. ## Assurance is the trust fabric Modern intelligence cannot move across civilian, military, law-enforcement, contractor, and IC systems without machine-readable identity, provenance, authorization, classification, access, and audit evidence. [[wiki/Assurance Infrastructure|Assurance Infrastructure]], [[wiki/NIST SP 800-53|NIST SP 800-53]], [[wiki/Risk Management Framework|RMF]], [[wiki/CNSSI 1253|CNSSI 1253]], [[wiki/ICD 503|ICD 503]], [[wiki/Public Key Infrastructure|PKI]], [[wiki/PIV and CAC|PIV/CAC]], [[wiki/Audit and Accountability|Audit and Accountability]], and [[wiki/Authorization to Operate|Authorization to Operate]] form part of the computational trust fabric. This is also why classified systems should not be imagined as an entirely separate technological civilization. Much of the architecture consists of familiar enterprise technologies placed inside stricter identity, compartmentation, handling, authorization, and accountability regimes. ## Intellectual Neighbors: Systems, Intelligence, AI, and Protective Technology This collection belongs to a serious intellectual tradition of systems-oriented national-security thinking. Its concern is how sensing, intelligence, networks, prediction, AI, institutions, contractors, compliance, and human behavior combine into protective capacity—and how that machinery can be made legible to an informed citizen. [[wiki/Intellectual Neighborhood of the Counterterrorism Collection|The full intellectual-neighborhood node]] explains why each person appears here. - **Network structure and social behavior:** [[wiki/Kathleen Carley|Kathleen Carley]] develops computational social-network and organizational analysis; [[wiki/Alex Pentland|Alex Pentland]] connects behavioral sensing, social physics, and institutional decision systems; [[wiki/MIT Connection Science|MIT Connection Science]] supplies an institutional home for that data-and-networks tradition. - **Intelligence institutions and technological adaptation:** [[wiki/Amy Zegart|Amy Zegart]] studies intelligence failure and the transformation of espionage by emerging technology; [[wiki/Sue Gordon|Sue Gordon]] connects enterprise integration, commercial technology, and intelligence operations; [[wiki/David Omand|David Omand]] articulates intelligence as a disciplined aid to public decision. - **AI, defense, and institutional capability:** [[wiki/Jason Matheny|Jason Matheny]] bridges AI, biosecurity, forecasting, and public-purpose research; [[wiki/Gilman Louie|Gilman Louie]] connects commercial innovation, venture capital, and intelligence acquisition; [[wiki/Paul Scharre|Paul Scharre]] examines military AI, autonomy, decision speed, and command. - **Networks, terrorism, and future conflict:** [[wiki/Audrey Kurth Cronin|Audrey Kurth Cronin]] studies how technology changes terrorist organizations and campaigns; [[wiki/John Arquilla|John Arquilla]] and [[wiki/David Ronfeldt|David Ronfeldt]] developed the netwar framework; [[wiki/Peter Warren Singer|P. W. Singer]] explains the convergence of technology, social media, and conflict; [[wiki/Brian Michael Jenkins|Brian Michael Jenkins]] grounds terrorism analysis in long institutional experience. - **Security engineering as systems thinking:** [[wiki/Bruce Schneier|Bruce Schneier]] treats security as an adversarial property of complete systems, including technology, incentives, institutions, and people. ## How to read evidence here - **Established:** documented in primary or authoritative sources. - **Strongly indicated:** supported by multiple converging records or constraints. - **Plausible:** consistent with capability, motive, infrastructure, and timing while awaiting a deciding record. - **Unresolved:** a named question accompanied by the evidence that would promote or demote it. Absence of public documentation is not evidence that an operation did not occur. Secrecy is likewise not affirmative proof that it did. The [[wiki/Counterterrorism Predictive Graph Evidence Ladder|evidence ladder]] separates documented capability, cross-domain transfer, sponsor relevance, foreseeable dual use, and specific operational application. ## Collection guide hubs (18) Reader-facing routes through the collection’s principal domains. Each hub explains what its linked cluster contains and why the cluster matters. - [[wiki/Counterterrorism Collection - AI and the Future of Terrorism|AI and the Future of Terrorism]] - [[wiki/Counterterrorism Collection - Artificial Intelligence|Artificial Intelligence]] - [[wiki/Counterterrorism Collection - Basic Vocabulary|Basic Vocabulary]] - [[wiki/Counterterrorism Collection - Cognitive Warfare and Ideological Transmission|Cognitive Warfare and Ideological Transmission]] - [[wiki/Counterterrorism Collection - Compliance and Trust Infrastructure|Compliance and Trust Infrastructure]] - [[wiki/Counterterrorism Collection - Counter-WMD|Counter-WMD]] - [[wiki/Counterterrorism Collection - Counterterrorism and Cybersecurity|Counterterrorism and Cybersecurity]] - [[wiki/Counterterrorism Collection - Fusion and Surveillance|Fusion and Surveillance]] - [[wiki/Counterterrorism Collection - Human Intelligence and Operational Roles|Human Intelligence and Operational Roles]] - [[wiki/Counterterrorism Collection - Oden and Predictive Science|Oden and Predictive Science]] - [[wiki/Counterterrorism Collection - Post-9-11 Security Architecture|Post-9-11 Security Architecture]] - [[wiki/Counterterrorism Collection - Predictive Graphs|Predictive Graphs]] - [[wiki/Counterterrorism Collection - Predictive Policing and Probabilistic Precrime|Predictive Policing and Probabilistic Precrime]] - [[wiki/Counterterrorism Collection - Privacy and Civil Liberties|Privacy and Civil Liberties]] - [[wiki/Counterterrorism Collection - Public Health and Violence Prevention|Public Health and Violence Prevention]] - [[wiki/Counterterrorism Collection - Start Here|Start Here]] - [[wiki/Counterterrorism Collection - Terrorism and Radicalization|Terrorism and Radicalization]] - [[wiki/Counterterrorism Collection - Threat Networks|Threat Networks]] ## Relationships - **canonical wiki hub:** [[wiki/Counterterrorism|Counterterrorism]]. - **predictive synthesis:** [[wiki/Counterterrorism Predictive Graph|Counterterrorism Predictive Graph]]. - **research roots:** [[research/A Network-Epidemiological Analysis of Radicalization and Real-Time Counterterrorism Observability|Network-Epidemiological Analysis]], [[research/Immigration and Customs Enforcement Pattern Analysis and Information Collection (ICEPIC)|ICEPIC]], [[research/Oden Institute - Theater-to-Person Predictive Scale|Oden Theater-to-Person Predictive Scale]], [[research/Dangerous Individuals, Weaponized Ideology, and Mass-Effect Systems|Dangerous Individuals, Weaponized Ideology, and Mass-Effect Systems]], and [[research/Harms Incurred While Bringing Preventive Systems Online|Harms Incurred While Bringing Preventive Systems Online]]. - **harm accounting:** [[wiki/Security Harms Topology|Security Harms Topology]], [[wiki/The Second Error Function|The Second Error Function]], [[wiki/Watchlist Misidentification|Watchlist Misidentification]], and [[wiki/Operational Activity and the Common Rule|Operational Activity and the Common Rule]]. - **literacy thesis:** [[thoughts/The Right to Understand Your World|The Right to Understand Your World]]. - **companion article on prediction:** [[articles/Peak Person and the Predicaments of Prediction|Peak Person and the Predicaments of Prediction]]. --- ## Master topic router This is the primary entrance into the complete counterterrorism knowledge graph. The main topic index routes **867 live wiki nodes** through 23 functional categories; the 18 reader-facing guide hubs bring the collection's total to **885 distinct wiki routes**. The same concept may participate in several systems, but each node appears once here under its principal reader-facing route so the index remains navigable. The router is deliberately larger than [[wiki/Terrorism|Terrorism]] or [[wiki/Counterterrorism|Counterterrorism]]. Those entries define domains. This collection exposes the entire universe surrounding them: intelligence disciplines, organizations, human roles, threat networks, epidemiology, graph mathematics, identity, sensing, AI, uncertainty, data infrastructure, cybersecurity, law, scientific computing, WMD effects, and the intellectual genealogy of the synthesis. ### Core concepts and synthesis bridges (103) The conceptual grammar that joins institutions, computation, human behavior, observation, prediction, and intervention. [[wiki/AI Warfare|AI Warfare]], [[wiki/Assurance Layer|Assurance Layer]], [[wiki/Attribute-Based Access Control|Attribute-Based Access Control]], [[wiki/Attributed Graph|Attributed Graph]], [[wiki/Autonomous Weapons|Autonomous Weapons]], [[wiki/Classification|Classification]], [[wiki/CNSSI 1253|CNSSI 1253]], [[wiki/Cohort Model|Cohort Model]], [[wiki/Computational Social Science|Computational Social Science]], [[wiki/Connected Component|Connected Component]], [[wiki/Contact Network|Contact Network]], [[wiki/Contact Tracing|Contact Tracing]], [[wiki/Contact Tracing as Network Inference|Contact Tracing as Network Inference]], [[wiki/Controlled Construction of Consequential Human Context|Controlled Construction of Consequential Human Context]], [[wiki/Counterintelligence|Counterintelligence]], [[wiki/CVE-CVE Convergence|CVE-CVE Convergence]], [[wiki/Defense Threat Reduction Agency|Defense Threat Reduction Agency]], [[wiki/Digital Intelligence|Digital Intelligence]], [[wiki/Digital Twin|Digital Twin]], [[wiki/Digital Twin of an Investigative Hypothesis|Digital Twin of an Investigative Hypothesis]], [[wiki/Dynamic Graph|Dynamic Graph]], [[wiki/Dynamic Network|Dynamic Network]], [[wiki/Echo Chamber|Echo Chamber]], [[wiki/Emerging Technology|Emerging Technology]], [[wiki/Entity Graph|Entity Graph]], [[wiki/Entity Resolution|Entity Resolution]], [[wiki/Event Graph|Event Graph]], [[wiki/Evidence-to-State Estimation|Evidence-to-State Estimation]], [[wiki/Failure of Imagination|Failure of Imagination]], [[wiki/False Positive|False Positive]], [[wiki/From Cohort to Individual|From Cohort to Individual]], [[wiki/From Link Chart to Predictive Graph|From Link Chart to Predictive Graph]], [[wiki/Fusion Center|Fusion Center]], [[wiki/Fusion Layer|Fusion Layer]], [[wiki/Future of War|Future of War]], [[wiki/Gaming and Defense|Gaming and Defense]], [[wiki/Graph Neighborhood|Graph Neighborhood]], [[wiki/Graph State|Graph State]], [[wiki/Graph-to-Collection Feedback Loop|Graph-to-Collection Feedback Loop]], [[wiki/Hidden State|Hidden State]], [[wiki/Human as Receptor|Human as Receptor]], [[wiki/Ideology as Transmissible Information|Ideology as Transmissible Information]], [[wiki/In-Q-Tel|In-Q-Tel]], [[wiki/Inference Layer|Inference Layer]], [[wiki/Intelligence Failure|Intelligence Failure]], [[wiki/Intelligence Fusion|Intelligence Fusion]], [[wiki/Interaction Graph|Interaction Graph]], [[wiki/Inverse Problem|Inverse Problem]], [[wiki/Kathleen M. Carley|Kathleen M. Carley]], [[wiki/Latent Network State|Latent Network State]], [[wiki/Link Analysis|Link Analysis]], [[wiki/Local Subgraph|Local Subgraph]], [[wiki/Machine Learning|Machine Learning]], [[wiki/Machine-Readable Intelligence|Machine-Readable Intelligence]], [[wiki/Military AI|Military AI]], [[wiki/Multifidelity Modeling|Multifidelity Modeling]], [[wiki/Multiplex Network|Multiplex Network]], [[wiki/Narrative Bandwidth|Narrative Bandwidth]], [[wiki/National Network of Fusion Centers|National Network of Fusion Centers]], [[wiki/Natural Language Processing|Natural Language Processing]], [[wiki/Netwar|Netwar]], [[wiki/Network as Transport Medium|Network as Transport Medium]], [[wiki/Network Cluster|Network Cluster]], [[wiki/Network Dynamics|Network Dynamics]], [[wiki/Network Evolution|Network Evolution]], [[wiki/Network State Estimation|Network State Estimation]], [[wiki/Network-Centric Conflict|Network-Centric Conflict]], [[wiki/NIST SP 800-53|NIST SP 800-53]], [[wiki/Observable State|Observable State]], [[wiki/Ontology|Ontology]], [[wiki/Operational Layer|Operational Layer]], [[wiki/Operational Security|Operational Security]], [[wiki/Pattern Recognition|Pattern Recognition]], [[wiki/Pattern-of-Life Analysis|Pattern-of-Life Analysis]], [[wiki/PECOS|PECOS]], [[wiki/Placement and Access|Placement and Access]], [[wiki/Predictive Graph Digital Twin|Predictive Graph Digital Twin]], [[wiki/Predictive Intelligence Architecture|Predictive Intelligence Architecture]], [[wiki/Predictive Intelligence Loop|Predictive Intelligence Loop]], [[wiki/Predictive Network Intelligence|Predictive Network Intelligence]], [[wiki/Predictive Science|Predictive Science]], [[wiki/Probabilistic Graph|Probabilistic Graph]], [[wiki/Provenance|Provenance]], [[wiki/Ranking|Ranking]], [[wiki/Retrieval-Augmented Generation|Retrieval-Augmented Generation]], [[wiki/Scientific Machine Learning|Scientific Machine Learning]], [[wiki/Security Engineering|Security Engineering]], [[wiki/Self-Supervised Learning|Self-Supervised Learning]], [[wiki/Semantic Interoperability|Semantic Interoperability]], [[wiki/Social Attractor|Social Attractor]], [[wiki/Social Media and Conflict|Social Media and Conflict]], [[wiki/Social Physics|Social Physics]], [[wiki/Tan Bui-Thanh|Tan Bui-Thanh]], [[wiki/Texas Advanced Computing Center|Texas Advanced Computing Center]], [[wiki/The Second Error Function|The Second Error Function]], [[wiki/Theater-to-Person Scale|Theater-to-Person Scale]], [[wiki/Threat Assessment|Threat Assessment]], [[wiki/Transport as a General Predictive Architecture|Transport as a General Predictive Architecture]], [[wiki/Unified Federal Information Security Framework|Unified Federal Information Security Framework]] [[wiki/Security Harms Topology|Security Harms Topology]], [[wiki/Distributed Erroneous State|Distributed Erroneous State]], [[wiki/Identity-Rooted Error Amplification|Identity-Rooted Error Amplification]], [[wiki/Cumulative Downstream Burden|Cumulative Downstream Burden]] ### Terrorism, radicalization, CVE, and counterterrorism (82) Terrorism as an adaptive strategic phenomenon; radicalization, mobilization, prevention, disruption, and counterterrorism institutions. [[wiki/Activity-Based Intelligence|Activity-Based Intelligence]], [[wiki/All-Source Analysis|All-Source Analysis]], [[wiki/Association Analysis|Association Analysis]], [[wiki/Behavioral Mobilization|Behavioral Mobilization]], [[wiki/Biographic Intelligence|Biographic Intelligence]], [[wiki/Biometric Intelligence|Biometric Intelligence]], [[wiki/Biosecurity|Biosecurity]], [[wiki/Bystander Reporting|Bystander Reporting]], [[wiki/Clique|Clique]], [[wiki/Communications Intelligence|Communications Intelligence]], [[wiki/Contact and Support Network|Contact and Support Network]], [[wiki/Counterterrorism|Counterterrorism]], [[wiki/Counterterrorism Predictive Graph|Counterterrorism Predictive Graph]], [[wiki/Counterterrorism Threat Analysis|Counterterrorism Threat Analysis]], [[wiki/Data Correlation|Data Correlation]], [[wiki/Deradicalization|Deradicalization]], [[wiki/Domestic Radicalization|Domestic Radicalization]], [[wiki/Extremist Cohort|Extremist Cohort]], [[wiki/Extremist Recruitment|Extremist Recruitment]], [[wiki/Extremist Social Network|Extremist Social Network]], [[wiki/Forward and Inverse Counterterrorism Modeling|Forward and Inverse Counterterrorism Modeling]], [[wiki/From Epidemic Model to Counterterrorism Graph|From Epidemic Model to Counterterrorism Graph]], [[wiki/Future of Political Violence|Future of Political Violence]], [[wiki/Group Polarization|Group Polarization]], [[wiki/Group Radicalization|Group Radicalization]], [[wiki/Iatrogenic Security Intervention|Iatrogenic Security Intervention]], [[wiki/Identity Resolution|Identity Resolution]], [[wiki/Ideological Adoption|Ideological Adoption]], [[wiki/Ideological Reinforcement|Ideological Reinforcement]], [[wiki/Ideological Transmission|Ideological Transmission]], [[wiki/Innovation and Terrorism|Innovation and Terrorism]], [[wiki/Insurgency|Insurgency]], [[wiki/Intellectual Neighborhood of the Counterterrorism Collection|Intellectual Neighborhood of the Counterterrorism Collection]], [[wiki/Intelligence Correlation|Intelligence Correlation]], [[wiki/Intelligence Lead|Intelligence Lead]], [[wiki/Intelligence Link Analysis|Intelligence Link Analysis]], [[wiki/Intelligence Preparation of the Operational Environment|Intelligence Preparation of the Operational Environment]], [[wiki/Intervention Point|Intervention Point]], [[wiki/Isolated Clique|Isolated Clique]], [[wiki/Known or Suspected Terrorist|Known or Suspected Terrorist]], [[wiki/Lead Generation|Lead Generation]], [[wiki/Lone Actor|Lone Actor]], [[wiki/Lone-Actor Network|Lone-Actor Network]], [[wiki/Mobilization to Violence|Mobilization to Violence]], [[wiki/Narrative Transmission|Narrative Transmission]], [[wiki/National Counterterrorism Center|National Counterterrorism Center]], [[wiki/Network of Contacts and Support|Network of Contacts and Support]], [[wiki/Offline Radicalization|Offline Radicalization]], [[wiki/Online Community|Online Community]], [[wiki/Online Radicalization|Online Radicalization]], [[wiki/Online Subculture|Online Subculture]], [[wiki/Pathway to Violence|Pathway to Violence]], [[wiki/Pattern of Life|Pattern of Life]], [[wiki/Peer Radicalization|Peer Radicalization]], [[wiki/Propaganda Exposure|Propaganda Exposure]], [[wiki/Protective Factor|Protective Factor]], [[wiki/Radicalization|Radicalization]], [[wiki/Radicalization Network|Radicalization Network]], [[wiki/Radicalization Pathway|Radicalization Pathway]], [[wiki/Radicalization to Violence|Radicalization to Violence]], [[wiki/Recruitment|Recruitment]], [[wiki/Risk Factor|Risk Factor]], [[wiki/Social Isolation|Social Isolation]], [[wiki/Social Media and Terrorism|Social Media and Terrorism]], [[wiki/Terrorism|Terrorism]], [[wiki/Terrorism Datapoint|Terrorism Datapoint]], [[wiki/Terrorism Information|Terrorism Information]], [[wiki/Terrorism Screening|Terrorism Screening]], [[wiki/Terrorist Identities Datamart Environment|Terrorist Identities Datamart Environment]], [[wiki/Terrorist Organization|Terrorist Organization]], [[wiki/Terrorist Screening Database|Terrorist Screening Database]], [[wiki/Terrorist Tradecraft|Terrorist Tradecraft]], [[wiki/Threat Analysis|Threat Analysis]], [[wiki/Transportation Security|Transportation Security]], [[wiki/Travel Intelligence|Travel Intelligence]], [[wiki/Uncertainty-Aware Counterterrorism Analysis|Uncertainty-Aware Counterterrorism Analysis]], [[wiki/Violent Extremism|Violent Extremism]], [[wiki/Watchlisting|Watchlisting]] [[wiki/Rahinah Ibrahim|Rahinah Ibrahim]], [[wiki/Threat Screening Center|Threat Screening Center]], [[wiki/Terrorist Screening Center|Terrorist Screening Center]], [[wiki/Transnational Organized Crime|Transnational Organized Crime]] ### Intelligence disciplines, analysis, and fusion (14) The disciplines and analytic practices that turn fragmented observation into assessed understanding and warning. [[wiki/All-Source Intelligence|All-Source Intelligence]], [[wiki/Financial Intelligence|Financial Intelligence]], [[wiki/GEOINT|GEOINT]], [[wiki/Graph-Based Intelligence Analysis|Graph-Based Intelligence Analysis]], [[wiki/HUMINT|HUMINT]], [[wiki/Identity Intelligence|Identity Intelligence]], [[wiki/Information Overload|Information Overload]], [[wiki/Intelligence Analysis|Intelligence Analysis]], [[wiki/Intelligence Integration|Intelligence Integration]], [[wiki/MASINT|MASINT]], [[wiki/OSINT|OSINT]], [[wiki/Producer Function|Producer Function]], [[wiki/SIGINT|SIGINT]], [[wiki/Talent Spotter|Talent Spotter]] ### Human sources, operational roles, and reporting (4) The human participants, source roles, reporting relationships, and operational functions that sit outside simple employee counts. [[wiki/Access Agent|Access Agent]], [[wiki/Backstopping|Backstopping]], [[wiki/Confidential Human Source|Confidential Human Source]], [[wiki/Principal Agent|Principal Agent]] ### Operational networks, attack surfaces, and disruption (26) Cells, support structures, attack paths, brokers, vulnerabilities, and the operational logic of finding and changing dangerous networks. [[wiki/Adversarial Adaptation|Adversarial Adaptation]], [[wiki/Cell Structure|Cell Structure]], [[wiki/Command-and-Control Network|Command-and-Control Network]], [[wiki/Communications Network|Communications Network]], [[wiki/Cooperating Witness|Cooperating Witness]], [[wiki/Courier|Courier]], [[wiki/Cutout|Cutout]], [[wiki/Facilitation Network|Facilitation Network]], [[wiki/Facilitator|Facilitator]], [[wiki/Financial Network|Financial Network]], [[wiki/Human Source Network|Human Source Network]], [[wiki/Informant|Informant]], [[wiki/Intermediary|Intermediary]], [[wiki/Legend|Legend]], [[wiki/Logistics Network|Logistics Network]], [[wiki/Network Compartmentation|Network Compartmentation]], [[wiki/Novel Attack Chain|Novel Attack Chain]], [[wiki/Propaganda Network|Propaganda Network]], [[wiki/Recruitment Network|Recruitment Network]], [[wiki/Sociotechnical Attack Surface|Sociotechnical Attack Surface]], [[wiki/Source Network|Source Network]], [[wiki/Support Network|Support Network]], [[wiki/Target Network|Target Network]], [[wiki/Travel Network|Travel Network]], [[wiki/Undercover Operation|Undercover Operation]], [[wiki/Zero-Day Threat Model|Zero-Day Threat Model]] ### Graph structures, topology, and network science (60) Nodes, edges, communities, centrality, topology, knowledge graphs, and the relational mathematics underlying the collection. [[wiki/Assortativity|Assortativity]], [[wiki/Betweenness Centrality|Betweenness Centrality]], [[wiki/Bipartite Graph|Bipartite Graph]], [[wiki/Bridge Node|Bridge Node]], [[wiki/Broker|Broker]], [[wiki/Brokerage|Brokerage]], [[wiki/Centrality|Centrality]], [[wiki/Clustering Coefficient|Clustering Coefficient]], [[wiki/Community Detection|Community Detection]], [[wiki/Community Structure|Community Structure]], [[wiki/Degree|Degree]], [[wiki/Degree Centrality|Degree Centrality]], [[wiki/Directed Graph|Directed Graph]], [[wiki/Dynamic Knowledge Graph|Dynamic Knowledge Graph]], [[wiki/Edge (Graph Theory)|Edge (Graph Theory)]], [[wiki/Edge Classification|Edge Classification]], [[wiki/Edge Embedding|Edge Embedding]], [[wiki/Edge Property|Edge Property]], [[wiki/Edge Type|Edge Type]], [[wiki/Eigenvector Centrality|Eigenvector Centrality]], [[wiki/Graph Classification|Graph Classification]], [[wiki/Graph Convolutional Network|Graph Convolutional Network]], [[wiki/Graph Distance|Graph Distance]], [[wiki/Graph Embedding|Graph Embedding]], [[wiki/Graph Error Propagation|Graph Error Propagation]], [[wiki/Graph Partitioning|Graph Partitioning]], [[wiki/Graph Projection|Graph Projection]], [[wiki/Graph Similarity|Graph Similarity]], [[wiki/Hypergraph|Hypergraph]], [[wiki/ICD 503|ICD 503]], [[wiki/In-Degree|In-Degree]], [[wiki/Knowledge Graph|Knowledge Graph]], [[wiki/Link Prediction|Link Prediction]], [[wiki/Missing-Link Inference|Missing-Link Inference]], [[wiki/Multi-Hop Path|Multi-Hop Path]], [[wiki/Multi-Hop Reasoning|Multi-Hop Reasoning]], [[wiki/Multilayer Network|Multilayer Network]], [[wiki/Network Hub|Network Hub]], [[wiki/Network Motif|Network Motif]], [[wiki/Network Science|Network Science]], [[wiki/Network Topology|Network Topology]], [[wiki/Node (Graph Theory)|Node (Graph Theory)]], [[wiki/Node Embedding|Node Embedding]], [[wiki/Node Type|Node Type]], [[wiki/Out-Degree|Out-Degree]], [[wiki/PageRank|PageRank]], [[wiki/Path|Path]], [[wiki/Person-in-Network Model|Person-in-Network Model]], [[wiki/Predictive Graph|Predictive Graph]], [[wiki/Reachability|Reachability]], [[wiki/Shortest Path|Shortest Path]], [[wiki/Small-Network Model|Small-Network Model]], [[wiki/Social Graph|Social Graph]], [[wiki/Social Graph as Dynamic Field|Social Graph as Dynamic Field]], [[wiki/Structural Hole|Structural Hole]], [[wiki/Subgraph Matching|Subgraph Matching]], [[wiki/Triadic Closure|Triadic Closure]], [[wiki/Vertex Classification|Vertex Classification]], [[wiki/Vertex Property|Vertex Property]], [[wiki/Weighted Graph|Weighted Graph]] ### Identity, entity resolution, and attribution (31) How people, accounts, devices, aliases, biometrics, attributes, and cross-domain records are resolved into uncertain identities. [[wiki/Account Graph|Account Graph]], [[wiki/Account-to-Person Resolution|Account-to-Person Resolution]], [[wiki/Alias Resolution|Alias Resolution]], [[wiki/Attribute|Attribute]], [[wiki/Cross-Domain Identity|Cross-Domain Identity]], [[wiki/Deduplication|Deduplication]], [[wiki/Device Graph|Device Graph]], [[wiki/Device-to-Person Resolution|Device-to-Person Resolution]], [[wiki/Digital Identity|Digital Identity]], [[wiki/Disambiguation|Disambiguation]], [[wiki/Entity Fusion|Entity Fusion]], [[wiki/Entity Matching|Entity Matching]], [[wiki/False Match|False Match]], [[wiki/Fuzzy Matching|Fuzzy Matching]], [[wiki/Household Graph|Household Graph]], [[wiki/Identifier|Identifier]], [[wiki/Identity Confidence|Identity Confidence]], [[wiki/Identity Graph|Identity Graph]], [[wiki/Identity Provenance|Identity Provenance]], [[wiki/Location Graph|Location Graph]], [[wiki/Missed Match|Missed Match]], [[wiki/Name Matching|Name Matching]], [[wiki/Persistent Identifier|Persistent Identifier]], [[wiki/Probabilistic Record Linkage|Probabilistic Record Linkage]], [[wiki/Record Linkage|Record Linkage]], [[wiki/Selector|Selector]], [[wiki/Strong Identifier|Strong Identifier]], [[wiki/Watchlist Misidentification|Watchlist Misidentification]], [[wiki/Weak Identifier|Weak Identifier]] [[wiki/Identity Collision|Identity Collision]], [[wiki/Negative Identity Assertion|Negative Identity Assertion]] ### Geospatial intelligence, mobility, and pattern of life (26) Location, movement, co-presence, routes, routines, spatial uncertainty, and the geography of behavior. [[wiki/Activity Space|Activity Space]], [[wiki/Anchor Location|Anchor Location]], [[wiki/Anomalous Mobility|Anomalous Mobility]], [[wiki/Co-Location|Co-Location]], [[wiki/Deviation from Routine|Deviation from Routine]], [[wiki/Geofence|Geofence]], [[wiki/Geospatial Graph|Geospatial Graph]], [[wiki/Geospatial Intelligence|Geospatial Intelligence]], [[wiki/Geospatial Proximity|Geospatial Proximity]], [[wiki/Hotspot Analysis|Hotspot Analysis]], [[wiki/Location History|Location History]], [[wiki/Location Intelligence|Location Intelligence]], [[wiki/Mobility Graph|Mobility Graph]], [[wiki/Mobility Pattern|Mobility Pattern]], [[wiki/Movement Pattern|Movement Pattern]], [[wiki/Origin-Destination Model|Origin-Destination Model]], [[wiki/Place Graph|Place Graph]], [[wiki/Resource Allocation|Resource Allocation]], [[wiki/Route Analysis|Route Analysis]], [[wiki/Routine Activity|Routine Activity]], [[wiki/Spatial Clustering|Spatial Clustering]], [[wiki/Spatial Network|Spatial Network]], [[wiki/Spatiotemporal Co-Occurrence|Spatiotemporal Co-Occurrence]], [[wiki/Spatiotemporal Prediction|Spatiotemporal Prediction]], [[wiki/Trajectory|Trajectory]], [[wiki/Trajectory Analysis|Trajectory Analysis]] ### Sensors, surveillance, observability, and multimodal fusion (32) The sensing and fusion layer through which people, systems, events, and environments become observable. [[wiki/Active Sensing|Active Sensing]], [[wiki/Activity Detection|Activity Detection]], [[wiki/Adaptive Sensing|Adaptive Sensing]], [[wiki/Anomaly Detection|Anomaly Detection]], [[wiki/Automatic Activity Detection|Automatic Activity Detection]], [[wiki/Behavior Detection|Behavior Detection]], [[wiki/Behavioral Sensing|Behavioral Sensing]], [[wiki/Commercially Available Information|Commercially Available Information]], [[wiki/Computer Vision|Computer Vision]], [[wiki/Data Fusion|Data Fusion]], [[wiki/Data Ingestion|Data Ingestion]], [[wiki/Deep Intermodal Video Analytics|Deep Intermodal Video Analytics]], [[wiki/Event Detection|Event Detection]], [[wiki/Information Fusion|Information Fusion]], [[wiki/IoT Data|IoT Data]], [[wiki/Multi-Camera Tracking|Multi-Camera Tracking]], [[wiki/Multimodal Fusion|Multimodal Fusion]], [[wiki/Multisensor Fusion|Multisensor Fusion]], [[wiki/Object Tracking|Object Tracking]], [[wiki/Open-Source Collection|Open-Source Collection]], [[wiki/Outlier Detection|Outlier Detection]], [[wiki/Person Re-Identification|Person Re-Identification]], [[wiki/Publicly Available Information|Publicly Available Information]], [[wiki/Remote Sensing|Remote Sensing]], [[wiki/Sensor Data|Sensor Data]], [[wiki/Sensor Fusion|Sensor Fusion]], [[wiki/Signals Collection|Signals Collection]], [[wiki/Situational Data|Situational Data]], [[wiki/Streaming Data|Streaming Data]], [[wiki/Surveillance and Early Warning|Surveillance and Early Warning]], [[wiki/Surveillance Trust Externality|Surveillance Trust Externality]], [[wiki/Video Analytics|Video Analytics]] ### Time, temporal graphs, events, and forecasting (44) Event order, duration, latency, change, temporal edges, state transition, early warning, and conditional futures. [[wiki/Bayesian Filtering|Bayesian Filtering]], [[wiki/Bayesian Smoothing|Bayesian Smoothing]], [[wiki/Change-Point Detection|Change-Point Detection]], [[wiki/Concept Drift|Concept Drift]], [[wiki/Conditional Forecast|Conditional Forecast]], [[wiki/Decision Speed|Decision Speed]], [[wiki/Dynamic Bayesian Network|Dynamic Bayesian Network]], [[wiki/Early Warning|Early Warning]], [[wiki/Event Forecasting|Event Forecasting]], [[wiki/Event Sequence|Event Sequence]], [[wiki/Forecast Horizon|Forecast Horizon]], [[wiki/Hazard Function|Hazard Function]], [[wiki/Hidden Markov Model|Hidden Markov Model]], [[wiki/Kalman Filter|Kalman Filter]], [[wiki/Markov Model|Markov Model]], [[wiki/Model Updating|Model Updating]], [[wiki/Next-Event Prediction|Next-Event Prediction]], [[wiki/Observe-Infer-Forecast-Update|Observe-Infer-Forecast-Update]], [[wiki/Online Inference|Online Inference]], [[wiki/Particle Filter|Particle Filter]], [[wiki/Point Process|Point Process]], [[wiki/Predictive Distribution|Predictive Distribution]], [[wiki/Self-Exciting Process|Self-Exciting Process]], [[wiki/Sequence Prediction|Sequence Prediction]], [[wiki/Sequential Data|Sequential Data]], [[wiki/Spatiotemporal Field|Spatiotemporal Field]], [[wiki/State Transition|State Transition]], [[wiki/State-Space Model|State-Space Model]], [[wiki/Streaming Analytics|Streaming Analytics]], [[wiki/Survival Analysis|Survival Analysis]], [[wiki/Temporal Centrality|Temporal Centrality]], [[wiki/Temporal Clustering|Temporal Clustering]], [[wiki/Temporal Graph Analytics|Temporal Graph Analytics]], [[wiki/Temporal Graph Neural Network|Temporal Graph Neural Network]], [[wiki/Temporal Heterogeneous Graph|Temporal Heterogeneous Graph]], [[wiki/Temporal Motif|Temporal Motif]], [[wiki/Temporal Network|Temporal Network]], [[wiki/Temporal Point Process|Temporal Point Process]], [[wiki/Time-Stamped Edge|Time-Stamped Edge]], [[wiki/Time-to-Event Model|Time-to-Event Model]], [[wiki/Trajectory Inference|Trajectory Inference]], [[wiki/Trajectory Prediction|Trajectory Prediction]], [[wiki/Transition Probability|Transition Probability]], [[wiki/Trend Detection|Trend Detection]] ### Epidemiology, contagion, and ideological transmission (48) The careful transfer of epidemiological and complex-contagion models into belief, behavior, radicalization, and intervention analysis. [[wiki/Adoption Threshold|Adoption Threshold]], [[wiki/Basic Reproduction Number|Basic Reproduction Number]], [[wiki/Behavioral Contagion|Behavioral Contagion]], [[wiki/Cascade|Cascade]], [[wiki/Compartmental Model|Compartmental Model]], [[wiki/Competing Contagions|Competing Contagions]], [[wiki/Complex Contagion|Complex Contagion]], [[wiki/Complex Contagion of Violent Extremism|Complex Contagion of Violent Extremism]], [[wiki/Contact Matrix|Contact Matrix]], [[wiki/Contagion on Networks|Contagion on Networks]], [[wiki/Containment|Containment]], [[wiki/Diffusion|Diffusion]], [[wiki/Diffusion of Innovations|Diffusion of Innovations]], [[wiki/Digital Contact Tracing|Digital Contact Tracing]], [[wiki/Effective Reproduction Number|Effective Reproduction Number]], [[wiki/Epidemic Model|Epidemic Model]], [[wiki/Epidemiological Modeling|Epidemiological Modeling]], [[wiki/Exposure Network|Exposure Network]], [[wiki/Force of Infection|Force of Infection]], [[wiki/Heterogeneous Susceptibility|Heterogeneous Susceptibility]], [[wiki/Homophily|Homophily]], [[wiki/Independent Cascade Model|Independent Cascade Model]], [[wiki/Information Cascade|Information Cascade]], [[wiki/Information Diffusion|Information Diffusion]], [[wiki/Intervention Modeling|Intervention Modeling]], [[wiki/Linear Threshold Model|Linear Threshold Model]], [[wiki/Network Intervention|Network Intervention]], [[wiki/Peer Influence|Peer Influence]], [[wiki/Probabilistic Contact Tracing|Probabilistic Contact Tracing]], [[wiki/Reinforcement|Reinforcement]], [[wiki/Repeated Exposure|Repeated Exposure]], [[wiki/SEIR Model|SEIR Model]], [[wiki/Simple Contagion|Simple Contagion]], [[wiki/SIR Model|SIR Model]], [[wiki/Social Contagion|Social Contagion]], [[wiki/Social Diffusion|Social Diffusion]], [[wiki/Social Reinforcement|Social Reinforcement]], [[wiki/Superspreading|Superspreading]], [[wiki/Threshold Model|Threshold Model]], [[wiki/Transmission Chain|Transmission Chain]], [[wiki/Transmission Network|Transmission Network]], [[wiki/Transmission Probability|Transmission Probability]] [[wiki/Austin Public Health|Austin Public Health]], [[wiki/Center for Pandemic Decision Science|Center for Pandemic Decision Science]], [[wiki/COVID-19|COVID-19]], [[wiki/epiENGAGE Center for Forecasting and Outbreak Analytics|epiENGAGE Center for Forecasting and Outbreak Analytics]], [[wiki/SARS-CoV-2|SARS-CoV-2]], [[wiki/UT COVID-19 Modeling Consortium|UT COVID-19 Modeling Consortium]] ### AI, machine learning, and graph learning (34) The machine-learning systems that represent hidden structure, learn patterns, resolve entities, and update predictions. [[wiki/Agentic AI|Agentic AI]], [[wiki/AI Agent|AI Agent]], [[wiki/AI-Assisted Intelligence Analysis|AI-Assisted Intelligence Analysis]], [[wiki/Artificial Intelligence|Artificial Intelligence]], [[wiki/Artificial Intelligence and National Security|Artificial Intelligence and National Security]], [[wiki/Clustering|Clustering]], [[wiki/Coreference Resolution|Coreference Resolution]], [[wiki/Deep Learning|Deep Learning]], [[wiki/Dynamic Graph Neural Network|Dynamic Graph Neural Network]], [[wiki/Event Extraction|Event Extraction]], [[wiki/Few-Shot Learning|Few-Shot Learning]], [[wiki/Graph Attention Network|Graph Attention Network]], [[wiki/Graph Machine Learning|Graph Machine Learning]], [[wiki/Graph Neural Network|Graph Neural Network]], [[wiki/Graph Representation Learning|Graph Representation Learning]], [[wiki/Graph Transformer|Graph Transformer]], [[wiki/Human-Machine Teaming|Human-Machine Teaming]], [[wiki/Knowledge Graph Embedding|Knowledge Graph Embedding]], [[wiki/Large Language Model|Large Language Model]], [[wiki/Named Entity Recognition|Named Entity Recognition]], [[wiki/National Security Commission on Artificial Intelligence|National Security Commission on Artificial Intelligence]], [[wiki/Novelty Detection|Novelty Detection]], [[wiki/Prediction|Prediction]], [[wiki/Recommendation|Recommendation]], [[wiki/Relation Extraction|Relation Extraction]], [[wiki/Representation Learning|Representation Learning]], [[wiki/Selective Labels|Selective Labels]], [[wiki/Semantic Analysis|Semantic Analysis]], [[wiki/Semi-Supervised Learning|Semi-Supervised Learning]], [[wiki/Similarity Search|Similarity Search]], [[wiki/Topic Modeling|Topic Modeling]], [[wiki/Transfer Learning|Transfer Learning]], [[wiki/Vector Database|Vector Database]], [[wiki/Vector Embedding|Vector Embedding]] ### Bayesian inference, inverse problems, statistics, and uncertainty (73) How incomplete observations become probabilistic hypotheses, confidence judgments, inverse estimates, and calibrated forecasts. [[wiki/Aleatoric Uncertainty|Aleatoric Uncertainty]], [[wiki/Alternative Hypothesis|Alternative Hypothesis]], [[wiki/Analytic Bias|Analytic Bias]], [[wiki/Analytic Provenance|Analytic Provenance]], [[wiki/Approximate Bayesian Computation|Approximate Bayesian Computation]], [[wiki/Base Rate|Base Rate]], [[wiki/Base-Rate Fallacy|Base-Rate Fallacy]], [[wiki/Bayes Factor|Bayes Factor]], [[wiki/Bayes' Theorem|Bayes' Theorem]], [[wiki/Bayesian Decision Theory|Bayesian Decision Theory]], [[wiki/Bayesian Inference|Bayesian Inference]], [[wiki/Bayesian Inverse Problem|Bayesian Inverse Problem]], [[wiki/Calibration|Calibration]], [[wiki/Chain of Custody|Chain of Custody]], [[wiki/Class Imbalance|Class Imbalance]], [[wiki/Competing Hypotheses|Competing Hypotheses]], [[wiki/Confidence Interval|Confidence Interval]], [[wiki/Confidence Level (Intelligence Analysis)|Confidence Level (Intelligence Analysis)]], [[wiki/Confirmation Bias|Confirmation Bias]], [[wiki/Correlation versus Causation|Correlation versus Causation]], [[wiki/Credible Interval|Credible Interval]], [[wiki/Data Provenance|Data Provenance]], [[wiki/Data Quality|Data Quality]], [[wiki/Entropy|Entropy]], [[wiki/Epistemic Uncertainty|Epistemic Uncertainty]], [[wiki/Error Propagation|Error Propagation]], [[wiki/Evidence Update|Evidence Update]], [[wiki/Evidence Weight|Evidence Weight]], [[wiki/False Negative|False Negative]], [[wiki/Forward Problem|Forward Problem]], [[wiki/Hawkes Process|Hawkes Process]], [[wiki/Hypothesis Space|Hypothesis Space]], [[wiki/Identifiability|Identifiability]], [[wiki/Ill-Posed Problem|Ill-Posed Problem]], [[wiki/Inference Under Partial Observation|Inference Under Partial Observation]], [[wiki/Inference Under Uncertainty|Inference Under Uncertainty]], [[wiki/Information Credibility|Information Credibility]], [[wiki/Known Unknown|Known Unknown]], [[wiki/Latent Variable|Latent Variable]], [[wiki/Likelihood|Likelihood]], [[wiki/Markov Chain Monte Carlo|Markov Chain Monte Carlo]], [[wiki/Maximum A Posteriori Estimation|Maximum A Posteriori Estimation]], [[wiki/Maximum Likelihood Estimation|Maximum Likelihood Estimation]], [[wiki/Measurement Uncertainty|Measurement Uncertainty]], [[wiki/Missing Data|Missing Data]], [[wiki/Model Calibration|Model Calibration]], [[wiki/Model Discrepancy|Model Discrepancy]], [[wiki/Model Inadequacy|Model Inadequacy]], [[wiki/Model Selection|Model Selection]], [[wiki/Model Uncertainty|Model Uncertainty]], [[wiki/Monte Carlo Method|Monte Carlo Method]], [[wiki/Noisy Observation|Noisy Observation]], [[wiki/Observation Bias|Observation Bias]], [[wiki/Parameter Estimation|Parameter Estimation]], [[wiki/Parameter Uncertainty|Parameter Uncertainty]], [[wiki/Posterior Distribution|Posterior Distribution]], [[wiki/Posterior Odds|Posterior Odds]], [[wiki/Posterior Predictive Distribution|Posterior Predictive Distribution]], [[wiki/Predictive Uncertainty|Predictive Uncertainty]], [[wiki/Prior Distribution|Prior Distribution]], [[wiki/Probabilistic Programming|Probabilistic Programming]], [[wiki/Probability Calibration|Probability Calibration]], [[wiki/Regularization|Regularization]], [[wiki/Sampling Bias|Sampling Bias]], [[wiki/Selection Bias|Selection Bias]], [[wiki/Sensitivity Analysis|Sensitivity Analysis]], [[wiki/Sequential Bayesian Updating|Sequential Bayesian Updating]], [[wiki/Sequential Monte Carlo|Sequential Monte Carlo]], [[wiki/Source Reliability|Source Reliability]], [[wiki/Spurious Correlation|Spurious Correlation]], [[wiki/Uncertainty Propagation|Uncertainty Propagation]], [[wiki/Unknown Unknown|Unknown Unknown]], [[wiki/Variational Inference|Variational Inference]] ### Causal, behavioral, and counterfactual modeling (27) Causation, intervention, behavioral state, confounding, alternative futures, and the difference between correlation and explanation. [[wiki/Activity Pattern|Activity Pattern]], [[wiki/Behavioral Anomaly|Behavioral Anomaly]], [[wiki/Behavioral Baseline|Behavioral Baseline]], [[wiki/Behavioral Indicator|Behavioral Indicator]], [[wiki/Behavioral Model|Behavioral Model]], [[wiki/Behavioral Prediction|Behavioral Prediction]], [[wiki/Causal Discovery|Causal Discovery]], [[wiki/Causal Graph|Causal Graph]], [[wiki/Causal Inference|Causal Inference]], [[wiki/Collider|Collider]], [[wiki/Confounder|Confounder]], [[wiki/Correlation|Correlation]], [[wiki/Counterfactual|Counterfactual]], [[wiki/Counterfactual Analysis|Counterfactual Analysis]], [[wiki/Directed Acyclic Graph|Directed Acyclic Graph]], [[wiki/Disengagement|Disengagement]], [[wiki/Intervention (Causal Inference)|Intervention (Causal Inference)]], [[wiki/Lagging Indicator|Lagging Indicator]], [[wiki/Leading Indicator|Leading Indicator]], [[wiki/Mediator|Mediator]], [[wiki/Observation-Induced Ground Truth|Observation-Induced Ground Truth]], [[wiki/Pattern Detection|Pattern Detection]], [[wiki/Potential Outcomes|Potential Outcomes]], [[wiki/Runaway Predictive Feedback Loop|Runaway Predictive Feedback Loop]], [[wiki/Sequence of Activities|Sequence of Activities]], [[wiki/Structural Causal Model|Structural Causal Model]] [[wiki/Performative Prediction|Performative Prediction]] ### Decision theory, collection management, and preventive action (23) How uncertainty becomes a decision about what to collect, what to protect, when to intervene, and how to update. [[wiki/Active Learning|Active Learning]], [[wiki/Analyst Attention|Analyst Attention]], [[wiki/Automated Decision Support|Automated Decision Support]], [[wiki/Collection Management|Collection Management]], [[wiki/Decision Theory|Decision Theory]], [[wiki/Decision Under Uncertainty|Decision Under Uncertainty]], [[wiki/Expected Utility|Expected Utility]], [[wiki/Expected Value of Information|Expected Value of Information]], [[wiki/Experiment Design|Experiment Design]], [[wiki/Gap Analysis|Gap Analysis]], [[wiki/Hypothesis Discrimination|Hypothesis Discrimination]], [[wiki/Information Gain|Information Gain]], [[wiki/Information Requirement|Information Requirement]], [[wiki/Intelligence Collection Requirement|Intelligence Collection Requirement]], [[wiki/Intelligence Gap|Intelligence Gap]], [[wiki/Mutual Information|Mutual Information]], [[wiki/Next-Best Observation|Next-Best Observation]], [[wiki/Optimal Experimental Design|Optimal Experimental Design]], [[wiki/Predictive Defense|Predictive Defense]], [[wiki/Priority Intelligence Requirement|Priority Intelligence Requirement]], [[wiki/Risk-Based Prioritization|Risk-Based Prioritization]], [[wiki/Sensor Tasking|Sensor Tasking]], [[wiki/Value of Information|Value of Information]] ### Cybersecurity, access, assurance, and compliance (28) Identity, access, authorization, compartmentation, vulnerability, audit, continuous monitoring, and the trust fabric of operational systems. [[wiki/Access Control|Access Control]], [[wiki/Assurance Infrastructure|Assurance Infrastructure]], [[wiki/Audit and Accountability|Audit and Accountability]], [[wiki/Audit Log|Audit Log]], [[wiki/Auditability|Auditability]], [[wiki/Authorization to Operate|Authorization to Operate]], [[wiki/Certificate Chain|Certificate Chain]], [[wiki/Compartmentation|Compartmentation]], [[wiki/Compliance Infrastructure|Compliance Infrastructure]], [[wiki/Continuous Monitoring|Continuous Monitoring]], [[wiki/Cyberwarfare|Cyberwarfare]], [[wiki/Data Handling Rule|Data Handling Rule]], [[wiki/Data Minimization|Data Minimization]], [[wiki/Digital Signature|Digital Signature]], [[wiki/Identity and Access Management|Identity and Access Management]], [[wiki/Least Privilege|Least Privilege]], [[wiki/Machine-Readable Authorization|Machine-Readable Authorization]], [[wiki/N-Day Exploit|N-Day Exploit]], [[wiki/Need to Know|Need to Know]], [[wiki/Public Key Infrastructure|Public Key Infrastructure]], [[wiki/Reciprocity|Reciprocity]], [[wiki/Risk Management Framework|Risk Management Framework]], [[wiki/Role-Based Access Control|Role-Based Access Control]], [[wiki/Security Control|Security Control]], [[wiki/Security Control Overlay|Security Control Overlay]], [[wiki/Sensitive Compartmented Information|Sensitive Compartmented Information]], [[wiki/Threat Model Failure|Threat Model Failure]], [[wiki/Unpatched Institutional Vulnerability|Unpatched Institutional Vulnerability]] ### Human vulnerability, neurosecurity, and living endpoints (38) The person-scale layer of the sociotechnical attack surface: threat actors, trusted insiders, attack vectors, persistent identity, writable neural interfaces, continuous vulnerability intelligence, and recovery of a compromised biological endpoint. [[wiki/Aviation Security|Aviation Security]], [[wiki/Attack Path|Attack Path]], [[wiki/Attack Vector|Attack Vector]], [[wiki/Bidirectional BCI Security|Bidirectional BCI Security]], [[wiki/Brainjacking|Brainjacking]], [[wiki/Common Vulnerabilities and Exposures|Common Vulnerabilities and Exposures]], [[wiki/Common Vulnerability Scoring System|Common Vulnerability Scoring System]], [[wiki/Continuous Integration and Continuous Deployment|Continuous Integration and Continuous Deployment]], [[wiki/Continuous Vulnerability Intelligence|Continuous Vulnerability Intelligence]], [[wiki/CVE|CVE]], [[wiki/Cyber-Biological System|Cyber-Biological System]], [[wiki/Human CVE|Human CVE]], [[wiki/Human-Machine State Estimation|Human-Machine State Estimation]], [[wiki/Human Vulnerability Node|Human Vulnerability Node]], [[wiki/Insider Threat|Insider Threat]], [[wiki/Irregular Warfare|Irregular Warfare]], [[wiki/Known Exploited Vulnerabilities Catalog|Known Exploited Vulnerabilities Catalog]], [[wiki/Living CVE|Living CVE]], [[wiki/Medical Device Vulnerability Management|Medical Device Vulnerability Management]], [[wiki/National Vulnerability Database|National Vulnerability Database]], [[wiki/Neural Command Channel|Neural Command Channel]], [[wiki/Neural Incident Response|Neural Incident Response]], [[wiki/Neural Integrity|Neural Integrity]], [[wiki/Neurosecurity|Neurosecurity]], [[wiki/Predictive Exploit Detection|Predictive Exploit Detection]], [[wiki/Privileged User|Privileged User]], [[wiki/September 11|September 11]], [[wiki/September 11 Attacks|September 11 Attacks]], [[wiki/Software Bill of Materials|Software Bill of Materials]], [[wiki/Stakeholder-Specific Vulnerability Categorization|Stakeholder-Specific Vulnerability Categorization]], [[wiki/Threat Actor|Threat Actor]], [[wiki/Threat Source|Threat Source]], [[wiki/Trusted Access|Trusted Access]], [[wiki/Trusted Neural Baseline|Trusted Neural Baseline]], [[wiki/U.S. Food and Drug Administration|U.S. Food and Drug Administration]], [[wiki/Verified Neural Restoration|Verified Neural Restoration]], [[wiki/Vulnerability|Vulnerability]], [[wiki/Vulnerability Exploitability eXchange|Vulnerability Exploitability eXchange]] ### Data, computing, interoperability, and system architecture (37) The data platforms, standards, repositories, compute layers, and interoperable architectures that make fusion and AI possible. [[wiki/AI-Ready Intelligence Data|AI-Ready Intelligence Data]], [[wiki/API|API]], [[wiki/Commercial Technology and Intelligence|Commercial Technology and Intelligence]], [[wiki/Data Assimilation|Data Assimilation]], [[wiki/Data Catalog|Data Catalog]], [[wiki/Data Discoverability|Data Discoverability]], [[wiki/Data Fabric|Data Fabric]], [[wiki/Data Federation|Data Federation]], [[wiki/Data Lake|Data Lake]], [[wiki/Data Lineage|Data Lineage]], [[wiki/Data Mesh|Data Mesh]], [[wiki/Data Standardization|Data Standardization]], [[wiki/Data Warehouse|Data Warehouse]], [[wiki/Distributed Computing|Distributed Computing]], [[wiki/Federated Data|Federated Data]], [[wiki/Federated Query|Federated Query]], [[wiki/Graph Database|Graph Database]], [[wiki/Graph Query|Graph Query]], [[wiki/Graph Stream Processing|Graph Stream Processing]], [[wiki/High-Performance Graph Analytics|High-Performance Graph Analytics]], [[wiki/Incremental Graph Computation|Incremental Graph Computation]], [[wiki/Intelligence Technology Acquisition|Intelligence Technology Acquisition]], [[wiki/Knowledge Fabric|Knowledge Fabric]], [[wiki/Machine-Readable Policy|Machine-Readable Policy]], [[wiki/Metadata|Metadata]], [[wiki/Parallel Computing|Parallel Computing]], [[wiki/Policy Enforcement Point|Policy Enforcement Point]], [[wiki/Property Graph|Property Graph]], [[wiki/Public-Private Intelligence Ecosystem|Public-Private Intelligence Ecosystem]], [[wiki/RDF|RDF]], [[wiki/Reduced-Order Modeling|Reduced-Order Modeling]], [[wiki/Schema|Schema]], [[wiki/SPARQL|SPARQL]], [[wiki/Streaming Graph|Streaming Graph]], [[wiki/Triple Store|Triple Store]], [[wiki/Venture Capital and National Security|Venture Capital and National Security]] [[wiki/National Crime Information Center|National Crime Information Center]] ### Law, policy, privacy, and governance (34) Authorities, limits, oversight, proportionality, data use, accountability, and the legal representation of people inside analytic systems. [[wiki/Accountability|Accountability]], [[wiki/Algorithmic Bias|Algorithmic Bias]], [[wiki/Analytic Transparency|Analytic Transparency]], [[wiki/Authorized Use|Authorized Use]], [[wiki/Data Governance|Data Governance]], [[wiki/Data Retention|Data Retention]], [[wiki/Due Process|Due Process]], [[wiki/Ethics of Intelligence|Ethics of Intelligence]], [[wiki/Explainable AI|Explainable AI]], [[wiki/Human Oversight|Human Oversight]], [[wiki/Human-in-the-Loop|Human-in-the-Loop]], [[wiki/Intelligence Oversight|Intelligence Oversight]], [[wiki/Legibility-Gated Redress|Legibility-Gated Redress]], [[wiki/Minimization|Minimization]], [[wiki/Misidentification|Misidentification]], [[wiki/Model Explainability|Model Explainability]], [[wiki/Operational Activity and the Common Rule|Operational Activity and the Common Rule]], [[wiki/Prediction versus Determination|Prediction versus Determination]], [[wiki/Privacy and Civil Liberties|Privacy and Civil Liberties]], [[wiki/Privacy Risk|Privacy Risk]], [[wiki/Proportionality|Proportionality]], [[wiki/Purpose Limitation|Purpose Limitation]], [[wiki/Purpose Specification|Purpose Specification]], [[wiki/Query-Based Access|Query-Based Access]], [[wiki/Redress Opacity|Redress Opacity]], [[wiki/Reproducibility|Reproducibility]], [[wiki/Surveillance Purpose Migration|Surveillance Purpose Migration]], [[wiki/U.S. Person Information|U.S. Person Information]], [[wiki/Watchlist Redress|Watchlist Redress]] [[wiki/Erroneous Watchlist Inclusion|Erroneous Watchlist Inclusion]], [[wiki/Correction Latency|Correction Latency]], [[wiki/Life-Trajectory Harm|Life-Trajectory Harm]], [[wiki/Ibrahim v. Department of Homeland Security|Ibrahim v. Department of Homeland Security]] [[wiki/Homeland Security Presidential Directive 6|Homeland Security Presidential Directive 6]] ### Scientific computing, Oden, transport, and WMD effects (41) Transport, fields, receptors, reduced-order models, uncertainty, high-performance computing, and cross-domain predictive science. [[wiki/Center for Scientific Machine Learning|Center for Scientific Machine Learning]], [[wiki/Computational Latency|Computational Latency]], [[wiki/Discontinuous Galerkin Method|Discontinuous Galerkin Method]], [[wiki/Dose|Dose]], [[wiki/Dose-Response Relationship|Dose-Response Relationship]], [[wiki/Dual-Use Predictive Science|Dual-Use Predictive Science]], [[wiki/Dual-Use Technology|Dual-Use Technology]], [[wiki/Exposure|Exposure]], [[wiki/Field Prediction|Field Prediction]], [[wiki/From Radiation Field to Social Field|From Radiation Field to Social Field]], [[wiki/Frontera|Frontera]], [[wiki/High-Fidelity Model|High-Fidelity Model]], [[wiki/High-Performance Computing|High-Performance Computing]], [[wiki/Low-Fidelity Model|Low-Fidelity Model]], [[wiki/Network Epidemiology|Network Epidemiology]], [[wiki/Nuclear Survivability|Nuclear Survivability]], [[wiki/Nuclear Weapon Radiation Effects|Nuclear Weapon Radiation Effects]], [[wiki/Numerical Simulation|Numerical Simulation]], [[wiki/Parameterized Model Reduction|Parameterized Model Reduction]], [[wiki/Partial Differential Equation|Partial Differential Equation]], [[wiki/Particle Transport|Particle Transport]], [[wiki/PDE-Constrained Optimization|PDE-Constrained Optimization]], [[wiki/Physics-Informed Machine Learning|Physics-Informed Machine Learning]], [[wiki/Physics-Informed Neural Network|Physics-Informed Neural Network]], [[wiki/Predictive Digital Twin|Predictive Digital Twin]], [[wiki/Predictive Simulation|Predictive Simulation]], [[wiki/Propagation|Propagation]], [[wiki/Proper Orthogonal Decomposition|Proper Orthogonal Decomposition]], [[wiki/PSAAP III|PSAAP III]], [[wiki/Radiation Transport|Radiation Transport]], [[wiki/Real-Time Simulation|Real-Time Simulation]], [[wiki/Reduced Basis Method|Reduced Basis Method]], [[wiki/Scientific Computing|Scientific Computing]], [[wiki/Source Term|Source Term]], [[wiki/Spatial Field|Spatial Field]], [[wiki/Stampede2|Stampede2]], [[wiki/Surrogate Model|Surrogate Model]], [[wiki/Transport Equation|Transport Equation]], [[wiki/Transport Medium|Transport Medium]], [[wiki/Uncertainty Quantification|Uncertainty Quantification]], [[wiki/Verification and Validation|Verification and Validation]] ### Intellectual neighbors and institutions (26) Scholars, practitioners, technologists, and research institutions that illuminate distinct parts of the same systems machine. [[wiki/Alex Pentland|Alex Pentland]], [[wiki/Amy Zegart|Amy Zegart]], [[wiki/Audrey Kurth Cronin|Audrey Kurth Cronin]], [[wiki/Brian Michael Jenkins|Brian Michael Jenkins]], [[wiki/Bruce Schneier|Bruce Schneier]], [[wiki/David Omand|David Omand]], [[wiki/David Ronfeldt|David Ronfeldt]], [[wiki/Gilman Louie|Gilman Louie]], [[wiki/Jason Matheny|Jason Matheny]], [[wiki/John Arquilla|John Arquilla]], [[wiki/Kathleen Carley|Kathleen Carley]], [[wiki/MIT Connection Science|MIT Connection Science]], [[wiki/Paul Scharre|Paul Scharre]], [[wiki/Peter Warren Singer|Peter Warren Singer]], [[wiki/Sue Gordon|Sue Gordon]] [[wiki/City of Austin|City of Austin]], [[wiki/College of Natural Sciences at the University of Texas at Austin|College of Natural Sciences at UT Austin]], [[wiki/Department of Integrative Biology at the University of Texas at Austin|Department of Integrative Biology at UT Austin]], [[wiki/Department of Population Health at Dell Medical School|Department of Population Health at Dell Medical School]], [[wiki/John Ring LaMontagne Center for Infectious Disease|John Ring LaMontagne Center for Infectious Disease]], [[wiki/Meyers Lab|Meyers Lab]], [[wiki/National Academy of Sciences|National Academy of Sciences]], [[wiki/Proceedings of the National Academy of Sciences|Proceedings of the National Academy of Sciences]], [[wiki/University of Texas System|University of Texas System]] [[wiki/Centers for Disease Control and Prevention|Centers for Disease Control and Prevention]], [[wiki/National Academies of Sciences, Engineering, and Medicine|National Academies of Sciences, Engineering, and Medicine]] ### Foundational publications and strategic frameworks (2) Key works that established the networked-conflict and information-environment lineage. [[wiki/LikeWar|LikeWar]], [[wiki/Networks and Netwars|Networks and Netwars]] ### Acronyms and alias routes (34) Search and acronym routes that resolve common shorthand to canonical concepts. [[wiki/CAC|CAC]], [[wiki/DAG|DAG]], [[wiki/DIVA|DIVA]], [[wiki/DTRA|DTRA]], [[wiki/FDA|FDA]], [[wiki/GNN|GNN]], [[wiki/KEV|KEV]], [[wiki/KST|KST]], [[wiki/Model Order Reduction|Model Order Reduction]], [[wiki/NCTC|NCTC]], [[wiki/NVD|NVD]], [[wiki/Neutron Transport|Neutron Transport]], [[wiki/NNSA|NNSA]], [[wiki/Nuclear Effects Modeling|Nuclear Effects Modeling]], [[wiki/Oden Institute for Computational Engineering and Sciences|Oden Institute for Computational Engineering and Sciences]], [[wiki/OPSEC|OPSEC]], [[wiki/Pho-Ices|Pho-Ices]], [[wiki/PHO-ICES|PHO-ICES]], [[wiki/PIV|PIV]], [[wiki/PKI|PKI]], [[wiki/Predictive Engineering and Computational Science|Predictive Engineering and Computational Science]], [[wiki/PSAAP|PSAAP]], [[wiki/Radiation Field|Radiation Field]], [[wiki/Receptor Model|Receptor Model]], [[wiki/SCI|SCI]], [[wiki/SBOM|SBOM]], [[wiki/SSVC|SSVC]], [[wiki/Source-Transport-Receptor Model|Source-Transport-Receptor Model]], [[wiki/TACC|TACC]], [[wiki/TIDE|TIDE]], [[wiki/CVSS|CVSS]], [[wiki/VEX|VEX]] [[wiki/PNAS|PNAS]], [[wiki/UT Pandemics|UT Pandemics]] ## Four states every citizen should distinguish One literacy lesson governs every route: 1. **Ground truth** is what actually exists or occurred. 2. **Observed evidence** is what a sensor, witness, institution, record, source, or system received. 3. **Inferred state** is an interpretation of that evidence: identity, relationship, intent, network structure, or causal explanation. 4. **Predicted state** is a conditional model of what may happen next. Confusing these layers turns a model output into a fact, a proximity into culpability, a watchlist match into identity, or an intelligence lead into courtroom evidence. Keeping them distinct makes stronger security analysis and more competent oversight possible. **As of:** 2026-09-23