Part of the ki-secure suite

kiStride

Draw a data flow diagram and let kiStride automatically surface STRIDE threats for every process, store, and trust boundary.

The Model

Six Threat Categories, Covered Automatically

S

Spoofing

Impersonating a user, process, or system.

T

Tampering

Modifying data or code without authorization.

R

Repudiation

Denying an action without a way to prove otherwise.

I

Information Disclosure

Exposing data to unauthorized parties.

D

Denial of Service

Degrading or denying service to legitimate users.

E

Elevation of Privilege

Gaining capabilities without proper authorization.