home.social

#threat-modeling — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #threat-modeling, aggregated by home.social.

fetched live
  1. The issue I have with AI threat modeling tools is that you mainly use them alone. Nobody else then you will see these beautiful models and learn about the threats unless you present them to someone. When you do, they will mostly forget them the moment you leave the room.

    #security #threatmodeling

  2. The issue I have with AI threat modeling tools is that you mainly use them alone. Nobody else then you will see these beautiful models and learn about the threats unless you present them to someone. When you do, they will mostly forget them the moment you leave the room.

    #security #threatmodeling

  3. OWASP Cornucopia just released v3.4.5

    A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!

    Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?

    #ai #games #security #threatmodeling

    OWASP Cornucopia v3 with EoP a...

  4. OWASP Cornucopia just released v3.4.5

    A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!

    Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?

    #ai #games #security #threatmodeling

    OWASP Cornucopia v3 with EoP a...

  5. OWASP Cornucopia just released v3.4.5

    A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!

    Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?

    #ai #games #security #threatmodeling

    OWASP Cornucopia v3 with EoP a...

  6. OWASP Cornucopia just released v3.4.5

    A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!

    Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?

    #ai #games #security #threatmodeling

    OWASP Cornucopia v3 with EoP a...

  7. OWASP Cornucopia just released v3.4.5

    A Special thanks to Prajakta G Kamble, Adarsh Kumar and Khushal Malhotra for all the bug fixes. Cornucpia is now more secure and stable than ever!

    Did you know that OWASP Cornucopia v3 now comes with EoP and PHANTOM-B?

    #ai #games #security #threatmodeling

    OWASP Cornucopia v3 with EoP a...

  8. ENISA Secure by Design and Default Playbook got published. www.enisa.europa.eu/sites/defaul...

    It’s a practical guide to secure by design and default principles for SMEs.

    I am happy to share that I am one of its contributors.
     
    #threatmodeling #securebydesign #enisa #security

    enisa.europa.eu/sites/default/...

  9. ENISA Secure by Design and Default Playbook got published. www.enisa.europa.eu/sites/defaul...

    It’s a practical guide to secure by design and default principles for SMEs.

    I am happy to share that I am one of its contributors.
     
    #threatmodeling #securebydesign #enisa #security

    enisa.europa.eu/sites/default/...

  10. The next one in the #peoplebehindosco series is Felix.

    Hi @Gronner 👋

    Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.

    His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling

    Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.

  11. The next one in the #peoplebehindosco series is Felix.

    Hi @Gronner 👋

    Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.

    His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling

    Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.

  12. The next one in the #peoplebehindosco series is Felix.

    Hi @Gronner 👋

    Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.

    His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling

    Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.

  13. The next one in the #peoplebehindosco series is Felix.

    Hi @Gronner 👋

    Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.

    His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling

    Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.

  14. The next one in the #peoplebehindosco series is Felix.

    Hi @Gronner 👋

    Felix is a software engineer with more than 10 years experience in the automotive and medical industry. Working at XITASO he focuses on building secure and safe systems. Besides that he provides trainings on security, safety, software architecture and Rust. To learn in and with a community he organises the SWEC and is a member of the iSAQB. He loves learning by exploring: building small embedded system or tools, mostly in Rust. In his spare time he enjoys playing pen & paper games, miniature figure painting and playing the drums.

    His Tags: #AppSec, #Embedded, #Rust, #ThreatModeling

    Thank you very much for your work as a volunteer and your support in organizing the Open Security conference. Stay tuned and follow the hashtag #peoplebehindosco for more people behind osco.

  15. OWASP v3: With EoP and PHANTOM-B

    We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.

    Read more: dev.to/owasp/owasp-...

    #ai #games #security #appsec #threatmodeling #cornucopia

    OWASP Cornucopia v3.4: With Eo...

  16. OWASP v3: With EoP and PHANTOM-B

    We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.

    Read more: dev.to/owasp/owasp-...

    #ai #games #security #appsec #threatmodeling #cornucopia

    OWASP Cornucopia v3.4: With Eo...

  17. OWASP v3: With EoP and PHANTOM-B

    We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.

    Read more: dev.to/owasp/owasp-...

    #ai #games #security #appsec #threatmodeling #cornucopia

    OWASP Cornucopia v3.4: With Eo...

  18. OWASP v3: With EoP and PHANTOM-B

    We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.

    Read more: dev.to/owasp/owasp-...

    #ai #games #security #appsec #threatmodeling #cornucopia

    OWASP Cornucopia v3.4: With Eo...

  19. OWASP v3: With EoP and PHANTOM-B

    We’re thrilled to bring you v3.4 with an update that expands how we identify threats, whether you're mapping out traditional applications or diving into AI architectures.

    Read more: dev.to/owasp/owasp-...

    #ai #games #security #appsec #threatmodeling #cornucopia

    OWASP Cornucopia v3.4: With Eo...

  20. "Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.

    CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.

    postquantum.com/post-quantum/c

    #threatmodeling #CRQC #infosec #PQC

  21. "Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.

    CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.

    postquantum.com/post-quantum/c

    #threatmodeling #CRQC #infosec #PQC

  22. "Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.

    CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.

    postquantum.com/post-quantum/c

    #threatmodeling #CRQC #infosec #PQC

  23. "Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.

    CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.

    postquantum.com/post-quantum/c

    #threatmodeling #CRQC #infosec #PQC

  24. "Criminals will rent a quantum computer to break encryption." Most repeated claim in quantum security. But it's not going to work quite like that.

    CRQCs will be export-controlled, auth-gated, compliance-monitored. Cloud quantum access won't be on a credit card. The rental threat model assumes a market no government will permit.

    postquantum.com/post-quantum/c

    #threatmodeling #CRQC #infosec #PQC

  25. Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at techbash.com/

    Save 12% on standard registration thru 7/31 with code SUMMERSALE

    #ai #security #threatmodeling #workshops #devconf #poconos

  26. Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at techbash.com/

    Save 12% on standard registration thru 7/31 with code SUMMERSALE

    #ai #security #threatmodeling #workshops #devconf #poconos

  27. Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at techbash.com/

    Save 12% on standard registration thru 7/31 with code SUMMERSALE

    #ai #security #threatmodeling #workshops #devconf #poconos

  28. Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at techbash.com/

    Save 12% on standard registration thru 7/31 with code SUMMERSALE

    #ai #security #threatmodeling #workshops #devconf #poconos

  29. Spend a half-day learning about threat modeling with AI at TechBash 2026! 4-day attendees choose their workshop track. Check out this year's options at techbash.com/

    Save 12% on standard registration thru 7/31 with code SUMMERSALE

    #ai #security #threatmodeling #workshops #devconf #poconos

  30. For parents in the digital age, physical security protocols require a threat-modeling update.

    Legacy "stranger danger" paradigms fail against modern social engineering tactics. We must teach children to recognize behavioral anomalies rather than physical profiles.

    Implement an offline, zero-knowledge family verification token (code word) to secure pick-up vectors.

    Full documentation and actionable framework: securelylife.com/modern-strang

    #FamilySafety #InfoSec #ThreatModeling #ParentingTips

  31. The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from cybersecgames.com/collections/

    My name appears in a few places. Being open source, all the data, code and source files are available free online cornucopia.owasp.org

    @owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity

  32. The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from cybersecgames.com/collections/

    My name appears in a few places. Being open source, all the data, code and source files are available free online cornucopia.owasp.org

    @owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity

  33. The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from cybersecgames.com/collections/

    My name appears in a few places. Being open source, all the data, code and source files are available free online cornucopia.owasp.org

    @owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity

  34. The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from cybersecgames.com/collections/

    My name appears in a few places. Being open source, all the data, code and source files are available free online cornucopia.owasp.org

    @owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity

  35. The Website App Edition, has also been joined by a deck to assist with threat modelling mobile app software, and the new Companion Edition. The Companion Edition adds suits with attacks related to Agentic AI, Cloud, Frontend, Large Language Models, DevOps and Automated Threats.

    OWASP Cornucopia is open source, free to download/use.

    2/2

    #threatmodelling #threatmodeling #appsec #devops #softwaresecurity #owasp #owasp25thanniversary #cornucopia

    @owasp
    @adamshostack