/plushcap/analysis/doppler/doppler-the-stride-threat-model-and-doppler

What is the STRIDE threat model?

What's this blog post about?

The STRIDE Model, developed by Praerit Garg and Loren Kohnfelder of Microsoft, is a framework for communicating digital infrastructure threats. It includes six major attack vectors and system vulnerabilities: Spoofing, Tampering, Repudiation, Information disclosure, Denial of service, and Elevation of privilege. The model is generalized enough to apply to any system but requires adaptation based on the platform's needs. Threat modeling, a proactive process in software development, uses STRIDE to anticipate potential security threats and design defenses accordingly. Doppler, a developer-first secrets management tool, integrates with other development tools and environments to help store, disseminate, and protect secrets while minimizing damage in the event of a breach.

Company
Doppler

Date published
Nov. 12, 2024

Author(s)
Dylan Villeneuve

Word count
730

Hacker News points
None found.

Language
English


By Matt Makai. 2021-2024.