A zero-day attack exploits a security vulnerability that is unknown to the software vendor and for which no patch exists yet - hence 'zero days' of protection available. The term refers to the amount of time the vendor has had to fix it (zero), not the timing of the attack. Options B and C incorrectly interpret it as referring to specific times or dates. Zero-day vulnerabilities are particularly dangerous because no defense exists until the vendor becomes aware and releases a patch.