![]() ![]() So you if you feel you can improve up this, step up and let everyone know!!Ĭongratulations to the SDL team for creating an innovative way to approach the concept of threat modeling. Kaip Galite perkelti 'Threat Modeling Tool v3.1.8' sukurtus grsmi modelius 'Microsoft Threat Modeling Tool 2014' formatu. And that's a good thing.Įven more impressive is that they have released the game under Creative Commons Attribution license which gives you freedom to share, adapt and remix the game. Migracija 'v3' modeliams 'Microsoft Security Development Lifecycle' arba 'SDL Threat Modeling Tool' leidia vartotojams lengviau atnaujinti senesnius grsmi modelius. You can see a short video on how to play and some more information about the game by checking our Adam's post here. In the end, it is a game that makes it possible to have more fun when thinking about threats. Each card has a more specific threat on it. Shostack is the author of 'Threat Modeling: Designing for Security' and the co-author of 'The New School of Information Security.' This webinar took place on 20th December 2021. The deck contains 74 playing cards in 6 suits: one suit for each of the STRIDE threats (Spoofing, Tampering, Repudiation, Information disclosure, Denial of Service and Elevation of Privilege). While at Microsoft, he drove the Autorun fix into Windows Update, was the lead designer of the SDL Threat Modeling Tool v3 and created the 'Elevation of Privilege' game. If you aren't, you can download it here.ĮoP is a card game for 3-6 players. If you are at RSA this week, drop by the Microsoft booth and pick the game up for free. ![]() If you have a team that is new to the whole process of threat modeling, you will want to check it out. According to Adam, " Elevation of Privilege is the easiest way to get started threat modeling". ![]() I have had the pleasure over the past few months to spend some time playing with an early rendition of " Elevation of Privilege: The Threat Modeling Game". ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. Archives
December 2022
Categories |