Core Idea
Start security with threat modeling: STRIDE sorts attacks into six named classes so each one gets a matching countermeasure.
- Threat modeling is identifying vulnerabilities up front so you can prevent and mitigate them.
- STRIDE: spoofing, tampering, repudiation, information disclosure, denial of service, and elevation of privilege, each with an example.
- The note is a compact reference for that shared vocabulary.
Threat Modeling
Threat modeling is the process of identifying vulnerabilities so you can put measures in place to prevent and mitigate them.
The STRIDE model is a framework for identifying potential security threats in systems.
- Spoofing:
- Impersonating another entity, such as a user, device, or process.
- Example: Using stolen credentials to log in as someone else.
- Tampering:
- Modifying data during storage or transit without authorization.
- Example: Altering files or network packets.
- Repudiation:
- Denying an action or transaction without the ability to prove it occurred.
- Example: A user denies transferring money due to lack of logging.
- Information Disclosure:
- Unauthorized access to sensitive information.
- Example: Leaking customer data due to poor encryption.
- Denial of Service (DoS):
- Disrupting service availability by overwhelming or incapacitating the system.
- Example: A DDoS attack on a web server.
- Elevation of Privilege:
- Gaining higher access rights than intended.
- Example: Exploiting a vulnerability to gain administrative access.