Threats Flashcards
1
Q
Threat Models
A
STRIDE (Microsoft): threat based. threat categories
PASTA: Risk based on value of assets. Uses 7 steps.
VAST: Threat modeling that combines threat and risk management in the Agile programming process.
2
Q
STRIDE 6 Threat classifications
A
Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, Elevation of privilege
3
Q
PASTA threat classification meanings
A
Process for attack simulation and threat analysis
4
Q
Reduction Analysis
A
Decomposing a system or application into its parts as part of the threat analysis process.