Part of the ki-secure suite
kiStride
Draw a data flow diagram and let kiStride automatically surface STRIDE threats for every process, store, and trust boundary.
The Model
Six Threat Categories, Covered Automatically
S
Spoofing
Impersonating a user, process, or system.
T
Tampering
Modifying data or code without authorization.
R
Repudiation
Denying an action without a way to prove otherwise.
I
Information Disclosure
Exposing data to unauthorized parties.
D
Denial of Service
Degrading or denying service to legitimate users.
E
Elevation of Privilege
Gaining capabilities without proper authorization.