#threat-modeling — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #threat-modeling, aggregated by home.social.
-
The issue I have with AI threat modeling tools is that you mainly use them alone. Nobody else then you will see these beautiful models and learn about the threats unless you present them to someone. When you do, they will mostly forget them the moment you leave the room.
#security #threatmodeling -
The issue I have with AI threat modeling tools is that you mainly use them alone. Nobody else then you will see these beautiful models and learn about the threats unless you present them to someone. When you do, they will mostly forget them the moment you leave the room.
#security #threatmodeling -
New by me: CybersecKyle Security How-To Series: Blue Team Fundamentals, Part 4 - Threat Modeling a Small Target
#Cybersecurity #InfoSec #ThreatModeling #AppSec #CybersecKyleHowTo
-
New by me: CybersecKyle Security How-To Series: Blue Team Fundamentals, Part 4 - Threat Modeling a Small Target
#Cybersecurity #InfoSec #ThreatModeling #AppSec #CybersecKyleHowTo
-
New by me: CybersecKyle Security How-To Series: Blue Team Fundamentals, Part 4 - Threat Modeling a Small Target
#Cybersecurity #InfoSec #ThreatModeling #AppSec #CybersecKyleHowTo
-
New by me: CybersecKyle Security How-To Series: Blue Team Fundamentals, Part 4 - Threat Modeling a Small Target
#Cybersecurity #InfoSec #ThreatModeling #AppSec #CybersecKyleHowTo
-
New by me: CybersecKyle Security How-To Series: Blue Team Fundamentals, Part 4 - Threat Modeling a Small Target
#Cybersecurity #InfoSec #ThreatModeling #AppSec #CybersecKyleHowTo
-
OWASP Cornucopia just released v3.4.5
A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!
Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?
#ai #games #security #threatmodeling
OWASP Cornucopia v3 with EoP a... -
OWASP Cornucopia just released v3.4.5
A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!
Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?
#ai #games #security #threatmodeling
OWASP Cornucopia v3 with EoP a... -
OWASP Cornucopia just released v3.4.5
A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!
Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?
#ai #games #security #threatmodeling
OWASP Cornucopia v3 with EoP a... -
OWASP Cornucopia just released v3.4.5
A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!
Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?
#ai #games #security #threatmodeling
OWASP Cornucopia v3 with EoP a... -
OWASP Cornucopia just released v3.4.5
A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!
Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?
#ai #games #security #threatmodeling
OWASP Cornucopia v3 with EoP a... -
ENISA Secure by Design and Default Playbook got published. www.enisa.europa.eu/sites/defaul...
It’s a practical guide to secure by design and default principles for SMEs.
I am happy to share that I am one of its contributors.
#threatmodeling #securebydesign #enisa #security
enisa.europa.eu/sites/default/... -
ENISA Secure by Design and Default Playbook got published. www.enisa.europa.eu/sites/defaul...
It’s a practical guide to secure by design and default principles for SMEs.
I am happy to share that I am one of its contributors.
#threatmodeling #securebydesign #enisa #security
enisa.europa.eu/sites/default/... -
The next one in the #peoplebehindosco series is Felix.
Hi @Gronner 👋
Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.
His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling
Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.
-
The next one in the #peoplebehindosco series is Felix.
Hi @Gronner 👋
Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.
His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling
Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.
-
The next one in the #peoplebehindosco series is Felix.
Hi @Gronner 👋
Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.
His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling
Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.
-
The next one in the #peoplebehindosco series is Felix.
Hi @Gronner 👋
Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.
His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling
Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.
-
The next one in the #peoplebehindosco series is Felix.
Hi @Gronner 👋
Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.
His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling
Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.
-
Most AI security audits miss 70% of the attack surface. Training data, prompt pipelines, model weights, and agentic tool calls are #AI's real battleground. Free open-source #threatmodeling toolkit for engineers and architects:
https://github.com/hwyler/ai-threat-modeling-toolkit -
Most AI security audits miss 70% of the attack surface. Training data, prompt pipelines, model weights, and agentic tool calls are #AI's real battleground. Free open-source #threatmodeling toolkit for engineers and architects:
https://github.com/hwyler/ai-threat-modeling-toolkit -
Most AI security audits miss 70% of the attack surface. Training data, prompt pipelines, model weights, and agentic tool calls are #AI's real battleground. Free open-source #threatmodeling toolkit for engineers and architects:
https://github.com/hwyler/ai-threat-modeling-toolkit -
Most AI security audits miss 70% of the attack surface. Training data, prompt pipelines, model weights, and agentic tool calls are #AI's real battleground. Free open-source #threatmodeling toolkit for engineers and architects:
https://github.com/hwyler/ai-threat-modeling-toolkit -
Most AI security audits miss 70% of the attack surface. Training data, prompt pipelines, model weights, and agentic tool calls are #AI's real battleground. Free open-source #threatmodeling toolkit for engineers and architects:
https://github.com/hwyler/ai-threat-modeling-toolkit -
OWASP v3: With EoP and PHANTOM-B
We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.
Read more: dev.to/owasp/owasp-...
#ai #games #security #appsec #threatmodeling #cornucopia
OWASP Cornucopia v3.4: With Eo... -
OWASP v3: With EoP and PHANTOM-B
We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.
Read more: dev.to/owasp/owasp-...
#ai #games #security #appsec #threatmodeling #cornucopia
OWASP Cornucopia v3.4: With Eo... -
OWASP v3: With EoP and PHANTOM-B
We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.
Read more: dev.to/owasp/owasp-...
#ai #games #security #appsec #threatmodeling #cornucopia
OWASP Cornucopia v3.4: With Eo... -
OWASP v3: With EoP and PHANTOM-B
We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.
Read more: dev.to/owasp/owasp-...
#ai #games #security #appsec #threatmodeling #cornucopia
OWASP Cornucopia v3.4: With Eo... -
OWASP v3: With EoP and PHANTOM-B
We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.
Read more: dev.to/owasp/owasp-...
#ai #games #security #appsec #threatmodeling #cornucopia
OWASP Cornucopia v3.4: With Eo... -
"Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.
CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.
https://postquantum.com/post-quantum/criminals-rent-quantum-crqc/
-
"Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.
CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.
https://postquantum.com/post-quantum/criminals-rent-quantum-crqc/
-
"Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.
CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.
https://postquantum.com/post-quantum/criminals-rent-quantum-crqc/
-
"Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.
CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.
https://postquantum.com/post-quantum/criminals-rent-quantum-crqc/
-
"Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.
CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.
https://postquantum.com/post-quantum/criminals-rent-quantum-crqc/
-
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
@alice But you're not going to pick that one anymore. #threatmodeling
-
@alice But you're not going to pick that one anymore. #threatmodeling
-
@alice But you're not going to pick that one anymore. #threatmodeling
-
@alice But you're not going to pick that one anymore. #threatmodeling
-
@alice But you're not going to pick that one anymore. #threatmodeling
-
Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at https://techbash.com/
Save 12% on standard registration thru 7/31 with code SUMMERSALE
-
Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at https://techbash.com/
Save 12% on standard registration thru 7/31 with code SUMMERSALE
-
Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at https://techbash.com/
Save 12% on standard registration thru 7/31 with code SUMMERSALE
-
Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at https://techbash.com/
Save 12% on standard registration thru 7/31 with code SUMMERSALE
-
Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at https://techbash.com/
Save 12% on standard registration thru 7/31 with code SUMMERSALE
-
For parents in the digital age, physical security protocols require a threat-modeling update.
Legacy "stranger danger" paradigms fail against modern social engineering tactics. We must teach children to recognize behavioral anomalies rather than physical profiles.
Implement an offline, zero-knowledge family verification token (code word) to secure pick-up vectors.
Full documentation and actionable framework: https://securelylife.com/modern-stranger-danger-tips/
-
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
📩 Send me a message or visit shehackspurple.ca to learn more about training, workshops, and speaking opportunities.
tanya AT shehackspurple DOT ca
#SecurityAwarenessMonth #AppSec #SecureCoding #ThreatModeling #AISecurity #CyberSecurity
4/4 -
The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from https://cybersecgames.com/collections/owasp-cornucopia-collection/products/owasp-cornucopia-web-app-with-companion-edition
My name appears in a few places. Being open source, all the data, code and source files are available free online https://cornucopia.owasp.org
@owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity
-
The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from https://cybersecgames.com/collections/owasp-cornucopia-collection/products/owasp-cornucopia-web-app-with-companion-edition
My name appears in a few places. Being open source, all the data, code and source files are available free online https://cornucopia.owasp.org
@owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity
-
The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from https://cybersecgames.com/collections/owasp-cornucopia-collection/products/owasp-cornucopia-web-app-with-companion-edition
My name appears in a few places. Being open source, all the data, code and source files are available free online https://cornucopia.owasp.org
@owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity
-
The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from https://cybersecgames.com/collections/owasp-cornucopia-collection/products/owasp-cornucopia-web-app-with-companion-edition
My name appears in a few places. Being open source, all the data, code and source files are available free online https://cornucopia.owasp.org
@owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity
-
The Website App Edition, has also been joined by a deck to assist with threat modelling mobile app software, and the new Companion Edition. The Companion Edition adds suits with attacks related to Agentic AI, Cloud, Frontend, Large Language Models, DevOps and Automated Threats.
OWASP Cornucopia is open source, free to download/use.
2/2
#threatmodelling #threatmodeling #appsec #devops #softwaresecurity #owasp #owasp25thanniversary #cornucopia