Commit Graph

67 Commits

Author SHA1 Message Date
Micha 8e5a96ee97
Merge branch 'master' into master 2023-07-13 18:53:08 +02:00
Mohammed A Imran 738111478c
Update README.md 2023-04-13 22:08:48 +08:00
Bimo Adi Nugroho ce98e4a46f Edited the Threat Model Examples 2023-04-13 16:25:39 +07:00
Bimo Adi Nugroho 917300b116 Added new references on Threat Model Examples 2023-04-13 15:49:48 +07:00
Micha 79fcbe99d8
Incorporate SOC/SIEM guidance 2023-03-22 14:00:12 +01:00
Micha aaa02909b3
Add reference to OpenSSF CII project page 2023-01-19 10:17:00 +01:00
Håkon Nikolai Stange Sørum 396e73d43d
Update README.md 2022-10-31 10:24:29 +01:00
Håkon Nikolai Stange Sørum 4bb7f813e5
Update README.md 2022-10-31 10:13:22 +01:00
IgorSasovets 55f21a7d26
Added one more free course on Threat Modeling 2022-10-30 16:06:54 +02:00
Mohammed A Imran f482870e87
Merge pull request #28 from izar/master
Added 'Securing Systems', CAIRIS and 'from the trenches'
2022-09-14 14:14:16 +08:00
IWS 5f7196ac92
Adding draw.io threat modeling libraries
Making draw.io more useful for threat modeling.
2022-09-01 15:01:44 -04:00
Izar Tarandach 2d67ca984a Added 'Securing Systems', CAIRIS and 'from the trenches' 2022-08-17 10:47:37 -04:00
Sivakumar 3ad089c01c
Minor alignment changes 2022-07-07 15:39:24 +05:30
Sivakumar 3d7979ca30
Update README.md 2022-07-07 15:33:03 +05:30
Sivakumar 6dbb92dff3
Add CTMP certification to the paid course group 2022-07-07 15:29:34 +05:30
Mohammed A Imran 2722ef4346
Merge branch 'master' into master 2022-06-01 17:14:16 +08:00
Mohammed A Imran 432435dde3
Update README.md 2022-06-01 17:07:52 +08:00
Mohammed A Imran a7717cd458
Update README.md 2022-06-01 17:04:26 +08:00
Mohammed A Imran 7f6bc3b12e
Update README.md 2022-06-01 17:01:49 +08:00
Sivakumar 3fbda68892
Update README.md 2022-06-01 14:28:35 +05:30
Sivakumar 0fb18ebad7
Update README.md 2022-06-01 10:28:10 +05:30
Sivakumar 3910c78b9f
Update README.md 2022-06-01 10:11:32 +05:30
Sivakumar 63a4c753fd
Update README.md 2022-06-01 10:05:24 +05:30
Sivakumar 65f03b019c
Update README.md 2022-06-01 09:46:04 +05:30
david cervigni 89d11eda2d add secpillars.com blog and trustedfirmware.org example 2022-05-30 14:32:32 +02:00
Mohammed A Imran 68f590cc03
Merge branch 'master' into master 2022-05-30 15:51:46 +08:00
Mohammed A Imran d7c2567c40
Merge pull request #23 from priyaoz/patch-1
Fix the link for Kubernetes Threat Model
2022-05-30 15:41:12 +08:00
Mohammed A Imran 7e4331fd2f
Merge branch 'master' into add-threat-modeling-card-game 2022-05-30 15:40:33 +08:00
Mohammed A Imran 1695df35c8
Merge pull request #21 from denhamparry/master
Add Kubernetes Threat Modeling
2022-05-30 15:39:18 +08:00
Sivakumar 0435ec11be
Update README.md 2022-05-30 12:47:02 +05:30
Mikhail Rusakovich 0eff2f597d TicTaaC Threat Modeling tool reference 2022-05-14 23:07:01 +03:00
Priya M 3f7f5b418e
Fix the link for Kubernetes Threat Model
Edited the link for the Kubernetes Thread Model.
2022-04-30 18:05:10 +10:00
Christoph Niehoff cb4c389001
Added mention of the online version of eop and cornucopia card games 2022-03-25 14:25:03 +01:00
Lewis Denham-Parry 62fba86821
docs: add Kubernetes Threat Modeling
- add link to paid Kubernetes Threat Modeling workshop
2021-11-24 10:26:24 +00:00
xntrik b2d3feb53b Add Deciduous 2021-09-28 15:22:32 +08:00
Mohammed A Imran c4849c3023
Merge pull request #19 from security-prince/patch-1
Proposal to add Threagile
2021-06-19 16:44:27 +08:00
Mohammed A Imran 8223a2c611
Add Oauth2 threat model 2021-06-19 16:43:03 +08:00
Ishaq Mohammed 4d4744349c
Adding Threagile 2021-06-16 21:00:33 +05:30
Mohammed A Imran 4007c2b134
Merge branch 'master' into patch-1 2021-04-28 00:00:56 +08:00
Mohammed A Imran ffb18e21ca
Merge branch 'master' into patch-1 2021-04-27 23:58:30 +08:00
Mohammed A Imran 114d44b51b
Merge pull request #14 from owangen/owangen-patch-1
Update README.md
2021-04-27 18:48:31 +08:00
Mohammed A Imran 2a35e1e94d
Merge pull request #15 from hyakuhei/Add-mal-lang
Add MAL to the free tools section
2021-04-27 18:31:07 +08:00
Mohammed A Imran bbfbd7d3e3
Merge pull request #16 from izar/master
Added Threat Modeling Manifesto
2021-04-27 18:30:14 +08:00
Tutamantic 500a0553fc
+ Tutamen Paid Tool
Tutamen is available for use.
2021-03-08 23:42:11 +00:00
Tutamantic 0668329ad3
+ Rapid Threat Model Prototyping to Free Courses
RTMP is a threat modelling technique that decreases the time to make a threat model by focusing on getting the Access Control issues sorted first (Elevation of privilege in STRIDE). It uses STRIDE as its main description language but allows for integration with CWE and OWASP Top 10.
https://github.com/geoffrey-hill-tutamantic/rapid-threat-model-prototyping-docs

RTMP allows a practioner to add metadata describing the threats and mitigations directly to software diagrams, speeding up the whole threat modeling process. This is done through 11 simple steps which can be repeated across all sizes of projects.

RTMP also outlines how to properly integrate these steps into Agile workstreams and how to best use the outputs of a threat model (Threats & Mitigations).
2021-03-08 23:23:26 +00:00
Izar Tarandach 8f43195062 Added Threat Modeling Manifesto 2021-02-09 12:16:16 -05:00
Robert b7dca66108
Update README.md 2021-02-04 12:52:42 -08:00
Robert c0e891f062
Update README.md 2021-02-04 12:51:51 -08:00
Robert 3dea6aa096
Update README.md 2021-02-04 12:51:26 -08:00
Robert 023b1aaccf
Added MAL to the list of free tools
Added MAL, I think it's interesting and readers of this page may find it useful. 

I'm not in any way associated with Foreseeti.
2021-02-04 12:50:36 -08:00