#threatmodelling — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #threatmodelling, aggregated by home.social.
-
FIRST launches VulnOptiCON 2026 in Luxembourg on AI https://www.byteseu.com/2304037/ #AISafety #AISecurity #ArtificialIntelligence(AI) #AttackSurfaceManagement #CISA #CommonVulnerabilitiesAndExposures(CVE) #ComputerEmergencyResponseTeam(CERT) #CyberRisk #DataManagement #DataScience #ENISA #GRC #IncidentResponse #infosec #Luxembourg #MachineLearning(ML) #NationalCyberSecurityCentre(NCSC) #Nvidia #Patching #SecurityOperationsCentres(SOCs) #ThreatIntelligence #ThreatModelling
-
https://www.europesays.com/lu/11305/ FIRST launches VulnOptiCON 2026 in Luxembourg on AI #AISafety #AISecurity #ArtificialIntelligence(AI) #AttackSurfaceManagement #CISA #CommonVulnerabilitiesAndExposures(CVE) #ComputerEmergencyResponseTeam(CERT) #CyberRisk #DataManagement #DataScience #ENISA #GRC #IncidentResponse #Infosec #Luxembourg #MachineLearning(ML) #NationalCyberSecurityCentre(NCSC) #NVIDIA #Patching #SecurityOperationsCentres(SOCs) #ThreatIntelligence #ThreatModelling
-
"Back in September 2025, we announced an investment in Open Web Docs by the Sovereign Tech Agency to create developer documentation on web security and privacy. This month we've completed the biggest section of the commissioned work: to update the web security documentation on MDN. In this post we'll have a look at what we've added, and what's coming up next.
The docs we've written for MDN consist of four main pillars: Attacks, Defenses, Threat modeling, and Authentication."
https://openwebdocs.org/content/posts/security-docs-sovereign-tech-agency/
#CyberSecurity #WebSecurity #WebDevelopment #ThreatModelling #Authentication
-
"Back in September 2025, we announced an investment in Open Web Docs by the Sovereign Tech Agency to create developer documentation on web security and privacy. This month we've completed the biggest section of the commissioned work: to update the web security documentation on MDN. In this post we'll have a look at what we've added, and what's coming up next.
The docs we've written for MDN consist of four main pillars: Attacks, Defenses, Threat modeling, and Authentication."
https://openwebdocs.org/content/posts/security-docs-sovereign-tech-agency/
#CyberSecurity #WebSecurity #WebDevelopment #ThreatModelling #Authentication
-
"Back in September 2025, we announced an investment in Open Web Docs by the Sovereign Tech Agency to create developer documentation on web security and privacy. This month we've completed the biggest section of the commissioned work: to update the web security documentation on MDN. In this post we'll have a look at what we've added, and what's coming up next.
The docs we've written for MDN consist of four main pillars: Attacks, Defenses, Threat modeling, and Authentication."
https://openwebdocs.org/content/posts/security-docs-sovereign-tech-agency/
#CyberSecurity #WebSecurity #WebDevelopment #ThreatModelling #Authentication
-
"Back in September 2025, we announced an investment in Open Web Docs by the Sovereign Tech Agency to create developer documentation on web security and privacy. This month we've completed the biggest section of the commissioned work: to update the web security documentation on MDN. In this post we'll have a look at what we've added, and what's coming up next.
The docs we've written for MDN consist of four main pillars: Attacks, Defenses, Threat modeling, and Authentication."
https://openwebdocs.org/content/posts/security-docs-sovereign-tech-agency/
#CyberSecurity #WebSecurity #WebDevelopment #ThreatModelling #Authentication
-
"Back in September 2025, we announced an investment in Open Web Docs by the Sovereign Tech Agency to create developer documentation on web security and privacy. This month we've completed the biggest section of the commissioned work: to update the web security documentation on MDN. In this post we'll have a look at what we've added, and what's coming up next.
The docs we've written for MDN consist of four main pillars: Attacks, Defenses, Threat modeling, and Authentication."
https://openwebdocs.org/content/posts/security-docs-sovereign-tech-agency/
#CyberSecurity #WebSecurity #WebDevelopment #ThreatModelling #Authentication
-
The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from https://cybersecgames.com/collections/owasp-cornucopia-collection/products/owasp-cornucopia-web-app-with-companion-edition
My name appears in a few places. Being open source, all the data, code and source files are available free online https://cornucopia.owasp.org
@owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity
-
The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from https://cybersecgames.com/collections/owasp-cornucopia-collection/products/owasp-cornucopia-web-app-with-companion-edition
My name appears in a few places. Being open source, all the data, code and source files are available free online https://cornucopia.owasp.org
@owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity
-
The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from https://cybersecgames.com/collections/owasp-cornucopia-collection/products/owasp-cornucopia-web-app-with-companion-edition
My name appears in a few places. Being open source, all the data, code and source files are available free online https://cornucopia.owasp.org
@owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity
-
The OWASP Cornucopia Web App Companion Set, which celebrates 25 years of the Open Web/World Application Security Project (OWASP), can be bought as a high-quality printed duplex deck from https://cybersecgames.com/collections/owasp-cornucopia-collection/products/owasp-cornucopia-web-app-with-companion-edition
My name appears in a few places. Being open source, all the data, code and source files are available free online https://cornucopia.owasp.org
@owasp #owasp #appsec #threatmodeling #infosec #devsecops #devops #ai #automation #cloud #webapps #cornucopia #threatmodelling #cybersecurity
-
The Website App Edition, has also been joined by a deck to assist with threat modelling mobile app software, and the new Companion Edition. The Companion Edition adds suits with attacks related to Agentic AI, Cloud, Frontend, Large Language Models, DevOps and Automated Threats.
OWASP Cornucopia is open source, free to download/use.
2/2
#threatmodelling #threatmodeling #appsec #devops #softwaresecurity #owasp #owasp25thanniversary #cornucopia
-
The Website App Edition, has also been joined by a deck to assist with threat modelling mobile app software, and the new Companion Edition. The Companion Edition adds suits with attacks related to Agentic AI, Cloud, Frontend, Large Language Models, DevOps and Automated Threats.
OWASP Cornucopia is open source, free to download/use.
2/2
#threatmodelling #threatmodeling #appsec #devops #softwaresecurity #owasp #owasp25thanniversary #cornucopia
-
The Website App Edition, has also been joined by a deck to assist with threat modelling mobile app software, and the new Companion Edition. The Companion Edition adds suits with attacks related to Agentic AI, Cloud, Frontend, Large Language Models, DevOps and Automated Threats.
OWASP Cornucopia is open source, free to download/use.
2/2
#threatmodelling #threatmodeling #appsec #devops #softwaresecurity #owasp #owasp25thanniversary #cornucopia
-
The Website App Edition, has also been joined by a deck to assist with threat modelling mobile app software, and the new Companion Edition. The Companion Edition adds suits with attacks related to Agentic AI, Cloud, Frontend, Large Language Models, DevOps and Automated Threats.
OWASP Cornucopia is open source, free to download/use.
2/2
#threatmodelling #threatmodeling #appsec #devops #softwaresecurity #owasp #owasp25thanniversary #cornucopia
-
The Website App Edition, has also been joined by a deck to assist with threat modelling mobile app software, and the new Companion Edition. The Companion Edition adds suits with attacks related to Agentic AI, Cloud, Frontend, Large Language Models, DevOps and Automated Threats.
OWASP Cornucopia is open source, free to download/use.
2/2
#threatmodelling #threatmodeling #appsec #devops #softwaresecurity #owasp #owasp25thanniversary #cornucopia
-
Just received 4 copies of OWASP Cornucopia Web App Companion Set, which celebrates 25 years of The Open Web/World Application Security Project (OWASP). The duplex pack contains a deck of Website App Edition, a deck of the new Companion Edition, and specially-written booklet. All the data, code and source files are available free online https://cornucopia.owasp.org
Well done CyberSec Games for doing such a great job printing (and selling) this unique pack.
-
Just received 4 copies of OWASP Cornucopia Web App Companion Set, which celebrates 25 years of The Open Web/World Application Security Project (OWASP). The duplex pack contains a deck of Website App Edition, a deck of the new Companion Edition, and specially-written booklet. All the data, code and source files are available free online https://cornucopia.owasp.org
Well done CyberSec Games for doing such a great job printing (and selling) this unique pack.
-
Just received 4 copies of OWASP Cornucopia Web App Companion Set, which celebrates 25 years of The Open Web/World Application Security Project (OWASP). The duplex pack contains a deck of Website App Edition, a deck of the new Companion Edition, and specially-written booklet. All the data, code and source files are available free online https://cornucopia.owasp.org
Well done CyberSec Games for doing such a great job printing (and selling) this unique pack.
-
Just received 4 copies of OWASP Cornucopia Web App Companion Set, which celebrates 25 years of The Open Web/World Application Security Project (OWASP). The duplex pack contains a deck of Website App Edition, a deck of the new Companion Edition, and specially-written booklet. All the data, code and source files are available free online https://cornucopia.owasp.org
Well done CyberSec Games for doing such a great job printing (and selling) this unique pack.
-
After five years, The Digital Identity Event Horizon is published in full today: three problem statements, ten key findings, and dozens of recommendations across policy, protocol, legal, and social contexts.
It's the largest research study in New Design Congress' eight-year history: eight case studies, hundreds of citations, dozens of participants from government, intelligence, civil society, technology, and the field itself.
It is also, without exaggeration, the most alarming body of work we have ever produced.
The argument is straightforward and difficult to reckon with: Digital identity makes societies brittle. In 2026, we find ourselves in an era of digital identity fetishism: flawed age verification schemes, biometric and facial-recognition authenticators, and fragile state-backed identity programmes are rolling out at an unprecedented rate. And every one of them, whether current or emerging, remains vulnerable to social engineering. The success rate for a non-technical attack on a user is now three out of four. These attacks cost US companies an estimated $1.6 billion in the five years to 2017 alone; by 2024, fraud runs to hundreds of billions worldwide.
READ IT HERE https://newdesigncongress.org/en/report/2026/the-digital-identity-event-horizon/
#digitalidentity #privacy #eupol #did #politics #threatmodelling
-
After five years, The Digital Identity Event Horizon is published in full today: three problem statements, ten key findings, and dozens of recommendations across policy, protocol, legal, and social contexts.
It's the largest research study in New Design Congress' eight-year history: eight case studies, hundreds of citations, dozens of participants from government, intelligence, civil society, technology, and the field itself.
It is also, without exaggeration, the most alarming body of work we have ever produced.
The argument is straightforward and difficult to reckon with: Digital identity makes societies brittle. In 2026, we find ourselves in an era of digital identity fetishism: flawed age verification schemes, biometric and facial-recognition authenticators, and fragile state-backed identity programmes are rolling out at an unprecedented rate. And every one of them, whether current or emerging, remains vulnerable to social engineering. The success rate for a non-technical attack on a user is now three out of four. These attacks cost US companies an estimated $1.6 billion in the five years to 2017 alone; by 2024, fraud runs to hundreds of billions worldwide.
READ IT HERE https://newdesigncongress.org/en/report/2026/the-digital-identity-event-horizon/
#digitalidentity #privacy #eupol #did #politics #threatmodelling
-
After five years, The Digital Identity Event Horizon is published in full today: three problem statements, ten key findings, and dozens of recommendations across policy, protocol, legal, and social contexts.
It's the largest research study in New Design Congress' eight-year history: eight case studies, hundreds of citations, dozens of participants from government, intelligence, civil society, technology, and the field itself.
It is also, without exaggeration, the most alarming body of work we have ever produced.
The argument is straightforward and difficult to reckon with: Digital identity makes societies brittle. In 2026, we find ourselves in an era of digital identity fetishism: flawed age verification schemes, biometric and facial-recognition authenticators, and fragile state-backed identity programmes are rolling out at an unprecedented rate. And every one of them, whether current or emerging, remains vulnerable to social engineering. The success rate for a non-technical attack on a user is now three out of four. These attacks cost US companies an estimated $1.6 billion in the five years to 2017 alone; by 2024, fraud runs to hundreds of billions worldwide.
READ IT HERE https://newdesigncongress.org/en/report/2026/the-digital-identity-event-horizon/
#digitalidentity #privacy #eupol #did #politics #threatmodelling
-
After five years, The Digital Identity Event Horizon is published in full today: three problem statements, ten key findings, and dozens of recommendations across policy, protocol, legal, and social contexts.
It's the largest research study in New Design Congress' eight-year history: eight case studies, hundreds of citations, dozens of participants from government, intelligence, civil society, technology, and the field itself.
It is also, without exaggeration, the most alarming body of work we have ever produced.
The argument is straightforward and difficult to reckon with: Digital identity makes societies brittle. In 2026, we find ourselves in an era of digital identity fetishism: flawed age verification schemes, biometric and facial-recognition authenticators, and fragile state-backed identity programmes are rolling out at an unprecedented rate. And every one of them, whether current or emerging, remains vulnerable to social engineering. The success rate for a non-technical attack on a user is now three out of four. These attacks cost US companies an estimated $1.6 billion in the five years to 2017 alone; by 2024, fraud runs to hundreds of billions worldwide.
READ IT HERE https://newdesigncongress.org/en/report/2026/the-digital-identity-event-horizon/
#digitalidentity #privacy #eupol #did #politics #threatmodelling
-
After five years, The Digital Identity Event Horizon is published in full today: three problem statements, ten key findings, and dozens of recommendations across policy, protocol, legal, and social contexts.
It's the largest research study in New Design Congress' eight-year history: eight case studies, hundreds of citations, dozens of participants from government, intelligence, civil society, technology, and the field itself.
It is also, without exaggeration, the most alarming body of work we have ever produced.
The argument is straightforward and difficult to reckon with: Digital identity makes societies brittle. In 2026, we find ourselves in an era of digital identity fetishism: flawed age verification schemes, biometric and facial-recognition authenticators, and fragile state-backed identity programmes are rolling out at an unprecedented rate. And every one of them, whether current or emerging, remains vulnerable to social engineering. The success rate for a non-technical attack on a user is now three out of four. These attacks cost US companies an estimated $1.6 billion in the five years to 2017 alone; by 2024, fraud runs to hundreds of billions worldwide.
READ IT HERE https://newdesigncongress.org/en/report/2026/the-digital-identity-event-horizon/
#digitalidentity #privacy #eupol #did #politics #threatmodelling
-
DBD Cornucopia is now available for teams to play online. Free to use, no registration, no tracking.
Thank you Adarsh Kumar @Adarshkumar0509 from OWASP Cornucopia (open source security threat modelling of software) for adding Digital Benefits and Disbenefits Cornucopia to their Copi online gaming engine.
#welfarebenefits #socialprotection #egovernment #servicedesign #threatmodelling #harms #hci
-
DBD Cornucopia is now available for teams to play online. Free to use, no registration, no tracking.
Thank you Adarsh Kumar @Adarshkumar0509 from OWASP Cornucopia (open source security threat modelling of software) for adding Digital Benefits and Disbenefits Cornucopia to their Copi online gaming engine.
#welfarebenefits #socialprotection #egovernment #servicedesign #threatmodelling #harms #hci
-
DBD Cornucopia is now available for teams to play online. Free to use, no registration, no tracking.
Thank you Adarsh Kumar @Adarshkumar0509 from OWASP Cornucopia (open source security threat modelling of software) for adding Digital Benefits and Disbenefits Cornucopia to their Copi online gaming engine.
#welfarebenefits #socialprotection #egovernment #servicedesign #threatmodelling #harms #hci
-
📆 15-17 June 2026
As part of the @webhackfest, W3C has proposed a breakout session to collaboratively map the Web Security Model, including components, assumptions, trust boundaries, and responsibilities of the Web Platform, with the output feeding the Threat Model for the Web and future security-by-design boilerplate for Web APIs.
https://www.w3.org/events/talks/2026/web-security-model-mapping-collaboratively-the-security-baseline-of-the-web-platform/
#WebHackfest #WebStandards #WebSecurity #ThreatModelling -
📆 15-17 June 2026
As part of the @webhackfest, W3C has proposed a breakout session to collaboratively map the Web Security Model, including components, assumptions, trust boundaries, and responsibilities of the Web Platform, with the output feeding the Threat Model for the Web and future security-by-design boilerplate for Web APIs.
https://www.w3.org/events/talks/2026/web-security-model-mapping-collaboratively-the-security-baseline-of-the-web-platform/
#WebHackfest #WebStandards #WebSecurity #ThreatModelling -
📆 15-17 June 2026
As part of the @webhackfest, W3C has proposed a breakout session to collaboratively map the Web Security Model, including components, assumptions, trust boundaries, and responsibilities of the Web Platform, with the output feeding the Threat Model for the Web and future security-by-design boilerplate for Web APIs.
https://www.w3.org/events/talks/2026/web-security-model-mapping-collaboratively-the-security-baseline-of-the-web-platform/
#WebHackfest #WebStandards #WebSecurity #ThreatModelling -
📆 15-17 June 2026
As part of the @webhackfest, W3C has proposed a breakout session to collaboratively map the Web Security Model, including components, assumptions, trust boundaries, and responsibilities of the Web Platform, with the output feeding the Threat Model for the Web and future security-by-design boilerplate for Web APIs.
https://www.w3.org/events/talks/2026/web-security-model-mapping-collaboratively-the-security-baseline-of-the-web-platform/
#WebHackfest #WebStandards #WebSecurity #ThreatModelling -
📆 15-17 June 2026
As part of the @webhackfest, W3C has proposed a breakout session to collaboratively map the Web Security Model, including components, assumptions, trust boundaries, and responsibilities of the Web Platform, with the output feeding the Threat Model for the Web and future security-by-design boilerplate for Web APIs.
https://www.w3.org/events/talks/2026/web-security-model-mapping-collaboratively-the-security-baseline-of-the-web-platform/
#WebHackfest #WebStandards #WebSecurity #ThreatModelling -
https://www.europesays.com/ch/81228/ What Swiss Cheese teaches us about choosing MDR #CloudSecurity #Cybersecurity #DavidHiggs #EmailSecurity #EnterpriseSecurity #IdentitySecurity #Infosec #ManagedDetectionAndResponse(MDR) #ManagedSecurityServicesProvider(MSSP) #NetworkSecurity #opinion #Rapid7 #SecurityInformationAndEventManagement(SIEM) #SecurityOperationsCentres(SOCs) #SecurityServices #Swiss #Switzerland #SystemOnAChip(SOC) #ThreatDetection #ThreatModelling
-
Very pleased to see the way the new OWASP Cornucopia Companion Edition software threat-modelling game deck looks in print. Thanks to all the volunteers who created it, and made this release happen.
Source data and print-ready files available for free in the project repository // Play for free online // Print your own decks // Buy professionally-printed decks.
https://cornucopia.owasp.org/news/20260508-companion-edition
#owasp #threatmodelling #appsec #devops #software #devsecops @owasp
OWASP Cornucopia, first created in 2012
-
Very pleased to see the way the new OWASP Cornucopia Companion Edition software threat-modelling game deck looks in print. Thanks to all the volunteers who created it, and made this release happen.
Source data and print-ready files available for free in the project repository // Play for free online // Print your own decks // Buy professionally-printed decks.
https://cornucopia.owasp.org/news/20260508-companion-edition
#owasp #threatmodelling #appsec #devops #software #devsecops @owasp
OWASP Cornucopia, first created in 2012
-
Very pleased to see the way the new OWASP Cornucopia Companion Edition software threat-modelling game deck looks in print. Thanks to all the volunteers who created it, and made this release happen.
Source data and print-ready files available for free in the project repository // Play for free online // Print your own decks // Buy professionally-printed decks.
https://cornucopia.owasp.org/news/20260508-companion-edition
#owasp #threatmodelling #appsec #devops #software #devsecops @owasp
OWASP Cornucopia, first created in 2012
-
Very pleased to see the way the new OWASP Cornucopia Companion Edition software threat-modelling game deck looks in print. Thanks to all the volunteers who created it, and made this release happen.
Source data and print-ready files available for free in the project repository // Play for free online // Print your own decks // Buy professionally-printed decks.
https://cornucopia.owasp.org/news/20260508-companion-edition
#owasp #threatmodelling #appsec #devops #software #devsecops @owasp
OWASP Cornucopia, first created in 2012
-
Very pleased to see the way the new OWASP Cornucopia Companion Edition software threat-modelling game deck looks in print. Thanks to all the volunteers who created it, and made this release happen.
Source data and print-ready files available for free in the project repository // Play for free online // Print your own decks // Buy professionally-printed decks.
https://cornucopia.owasp.org/news/20260508-companion-edition
#owasp #threatmodelling #appsec #devops #software #devsecops @owasp
OWASP Cornucopia, first created in 2012
-
Could something be skipping though the "customer interaction" points in your application?
BOT3 from the OWASP Cornucopia Companion illustrates how automation at scale can be used on gambling sites to make bets fast & furiously, skipping past all the checks and balances, warnings, up-selling and regulatory information.
Read the whole scenario at https://cornucopia.owasp.org/edition/companion/BOT3/1.0/en
Details of new release at https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #appsec #devops #devsecops #threatmodelling #eop #owasp #cornucopia
-
Could something be skipping though the "customer interaction" points in your application?
BOT3 from the OWASP Cornucopia Companion illustrates how automation at scale can be used on gambling sites to make bets fast & furiously, skipping past all the checks and balances, warnings, up-selling and regulatory information.
Read the whole scenario at https://cornucopia.owasp.org/edition/companion/BOT3/1.0/en
Details of new release at https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #appsec #devops #devsecops #threatmodelling #eop #owasp #cornucopia
-
Could something be skipping though the "customer interaction" points in your application?
BOT3 from the OWASP Cornucopia Companion illustrates how automation at scale can be used on gambling sites to make bets fast & furiously, skipping past all the checks and balances, warnings, up-selling and regulatory information.
Read the whole scenario at https://cornucopia.owasp.org/edition/companion/BOT3/1.0/en
Details of new release at https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #appsec #devops #devsecops #threatmodelling #eop #owasp #cornucopia
-
Could something be skipping though the "customer interaction" points in your application?
BOT3 from the OWASP Cornucopia Companion illustrates how automation at scale can be used on gambling sites to make bets fast & furiously, skipping past all the checks and balances, warnings, up-selling and regulatory information.
Read the whole scenario at https://cornucopia.owasp.org/edition/companion/BOT3/1.0/en
Details of new release at https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #appsec #devops #devsecops #threatmodelling #eop #owasp #cornucopia
-
Could something be skipping though the "customer interaction" points in your application?
BOT3 from the OWASP Cornucopia Companion illustrates how automation at scale can be used on gambling sites to make bets fast & furiously, skipping past all the checks and balances, warnings, up-selling and regulatory information.
Read the whole scenario at https://cornucopia.owasp.org/edition/companion/BOT3/1.0/en
Details of new release at https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #appsec #devops #devsecops #threatmodelling #eop #owasp #cornucopia
-
Open source and free. Download print-ready files and play Cornucopia together, browse the cards online, or play games online with remote team members.
If you prefer, printed decks are available to purchase from a vendor as a dual-packaged Website App Edition x Companion Edition combination set:
https://cybersecgames.com/pages/owasp-cornucopia-threat-modeling-collection
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
2/2
-
Open source and free. Download print-ready files and play Cornucopia together, browse the cards online, or play games online with remote team members.
If you prefer, printed decks are available to purchase from a vendor as a dual-packaged Website App Edition x Companion Edition combination set:
https://cybersecgames.com/pages/owasp-cornucopia-threat-modeling-collection
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
2/2
-
Open source and free. Download print-ready files and play Cornucopia together, browse the cards online, or play games online with remote team members.
If you prefer, printed decks are available to purchase from a vendor as a dual-packaged Website App Edition x Companion Edition combination set:
https://cybersecgames.com/pages/owasp-cornucopia-threat-modeling-collection
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
2/2
-
Open source and free. Download print-ready files and play Cornucopia together, browse the cards online, or play games online with remote team members.
If you prefer, printed decks are available to purchase from a vendor as a dual-packaged Website App Edition x Companion Edition combination set:
https://cybersecgames.com/pages/owasp-cornucopia-threat-modeling-collection
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
2/2
-
Open source and free. Download print-ready files and play Cornucopia together, browse the cards online, or play games online with remote team members.
If you prefer, printed decks are available to purchase from a vendor as a dual-packaged Website App Edition x Companion Edition combination set:
https://cybersecgames.com/pages/owasp-cornucopia-threat-modeling-collection
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
2/2
-
The new Companion Deck for OWASP Cornucopia includes six novel suits to assist threat modelling of Agentic AI, Cloud, DevOps, Frontend, LLM and Automation. The suits can be used alone or in combination with suits from either existing Cornucopia decks: the Website App Edition or Mobile App Edition. My main contribution to this is the Automated Threats (BOT) suit.
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
1/2
-
The new Companion Deck for OWASP Cornucopia includes six novel suits to assist threat modelling of Agentic AI, Cloud, DevOps, Frontend, LLM and Automation. The suits can be used alone or in combination with suits from either existing Cornucopia decks: the Website App Edition or Mobile App Edition. My main contribution to this is the Automated Threats (BOT) suit.
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
1/2
-
The new Companion Deck for OWASP Cornucopia includes six novel suits to assist threat modelling of Agentic AI, Cloud, DevOps, Frontend, LLM and Automation. The suits can be used alone or in combination with suits from either existing Cornucopia decks: the Website App Edition or Mobile App Edition. My main contribution to this is the Automated Threats (BOT) suit.
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
1/2
-
The new Companion Deck for OWASP Cornucopia includes six novel suits to assist threat modelling of Agentic AI, Cloud, DevOps, Frontend, LLM and Automation. The suits can be used alone or in combination with suits from either existing Cornucopia decks: the Website App Edition or Mobile App Edition. My main contribution to this is the Automated Threats (BOT) suit.
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
1/2
-
The new Companion Deck for OWASP Cornucopia includes six novel suits to assist threat modelling of Agentic AI, Cloud, DevOps, Frontend, LLM and Automation. The suits can be used alone or in combination with suits from either existing Cornucopia decks: the Website App Edition or Mobile App Edition. My main contribution to this is the Automated Threats (BOT) suit.
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec
1/2
-
Great to see the new Companion Edition released by the OWASP Cornucopia project. A year in the making, project leader Johan Sydseter has organised a whole group of volunteers to build out a new deck of playing cards for the application security threat modelling card game.
The new deck with six new suits also celebrates the 25th anniversary of the Open Worldwide Application Security Project (OWASP).
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp @sydseter #appsec #devops #devsecops #threatmodelling #owasp
-
Great to see the new Companion Edition released by the OWASP Cornucopia project. A year in the making, project leader Johan Sydseter has organised a whole group of volunteers to build out a new deck of playing cards for the application security threat modelling card game.
The new deck with six new suits also celebrates the 25th anniversary of the Open Worldwide Application Security Project (OWASP).
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp @sydseter #appsec #devops #devsecops #threatmodelling #owasp
-
Great to see the new Companion Edition released by the OWASP Cornucopia project. A year in the making, project leader Johan Sydseter has organised a whole group of volunteers to build out a new deck of playing cards for the application security threat modelling card game.
The new deck with six new suits also celebrates the 25th anniversary of the Open Worldwide Application Security Project (OWASP).
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp @sydseter #appsec #devops #devsecops #threatmodelling #owasp
-
Great to see the new Companion Edition released by the OWASP Cornucopia project. A year in the making, project leader Johan Sydseter has organised a whole group of volunteers to build out a new deck of playing cards for the application security threat modelling card game.
The new deck with six new suits also celebrates the 25th anniversary of the Open Worldwide Application Security Project (OWASP).
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp @sydseter #appsec #devops #devsecops #threatmodelling #owasp
-
Great to see the new Companion Edition released by the OWASP Cornucopia project. A year in the making, project leader Johan Sydseter has organised a whole group of volunteers to build out a new deck of playing cards for the application security threat modelling card game.
The new deck with six new suits also celebrates the 25th anniversary of the Open Worldwide Application Security Project (OWASP).
https://cornucopia.owasp.org/news/20260508-companion-edition
@owasp @sydseter #appsec #devops #devsecops #threatmodelling #owasp
-
Running threat-crank to update https://github.com/timb-machine/attack-ti with v19 data.