Toreon / threat-model-playbook
โ80Updated 3 years ago
Related projects โ
Alternatives and complementary repositories for threat-model-playbook
- The Security Champion Framework provides both a measuring stick and a roadmap generator for Champion Programs.โ104Updated 10 months ago
- ๐๏ธ STRIDE vs. ASVS equivalence tableโ75Updated 2 months ago
- Segment's Threat Modeling training for our engineersโ238Updated 3 years ago
- This is a companion to the Security Engineer Questionsโ200Updated 11 months ago
- โ33Updated 3 years ago
- A small tool to help developers understand a huge set of security requirements from appsec teamsโ45Updated 2 years ago
- The Open Threat Modeling Format (OTM) defines a platform independent way to define the threat model of any system.โ169Updated 9 months ago
- โ121Updated last year
- โ61Updated last year
- Easy-to-use Threat modeling-as-a-Code (TaaC) solution following DevSecOps principles. Simple CI/CD integration as well as console usage. โฆโ55Updated 4 months ago
- Presentations, training modules, and other education materials from Duo Security's Application Security team.โ71Updated 3 years ago
- A small set of scripts to summarize AWS Security Groups, and generate visualizations of the rules.โ62Updated 4 years ago
- AI featured threat modeling and security review actionโ40Updated this week
- โ30Updated 2 years ago
- Threat Modeling Manifestoโ27Updated 4 months ago
- Core model including reused documentationโ89Updated 2 months ago
- โ80Updated this week
- A unified DevSecOps Framework that allows you to go from iterative, collaborative Threat Modeling to Application Security Test Orchestratโฆโ274Updated this week
- An extensive list of resources related to threat modelling. Gotta catch โem all!โ31Updated this week
- ๐งฎ An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessmentโ151Updated 3 years ago
- โ18Updated 2 years ago
- Systematic Universal Security Testing Orchestrationโ37Updated 2 years ago
- โ36Updated 3 years ago
- StartLeft is an automation tool for generating Threat Models written in the Open Threat Model (OTM) format from a variety of different soโฆโ48Updated this week
- A place to gather and organize information about using threat modeling frameworks to deal with social conflict in online systemsโ56Updated 10 months ago
- KaiMonkey provides vulnerable infrastructure as code (IaC) to help explore and understand common cloud security threats exposed via IaC.โ96Updated 11 months ago
- โ70Updated 3 weeks ago
- threatspec - continuous threat modeling, through codeโ332Updated 3 years ago
- materials we hand outโ138Updated last month
- This repository stores content that can be used to design a Rapid Threat Model Prototyping process for a software development group.โ156Updated last year