Learn more about Threat Modeling
Contents
How can I learn about Threat Modeling?
There are lots of threat modeling approaches and tools. Here’s a short list of great resources that will get you headed in the right direction!
- https://www.threatmodelingmanifesto.org/
- https://safecode.org/safecodepublications/tactical-threat-modeling/
- https://www.owasp.org/index.php/Category:Threat_Modeling
- https://cheatsheetseries.owasp.org/cheatsheets/Threat_Modeling_Cheat_Sheet.html
- https://www.sans.org/top25-software-errors/
- https://learning.oreilly.com/library/view/threat-modeling-designing/9781118810057/
- https://learning.oreilly.com/library/view/threat-modeling/9781492056546/
Are there talks at BlackHat or DEF CON about Threat Modeling?
Yes! A lot of security related talks will touch on some aspects of Threat Modeling. That said there are several talks and workshops specifically around Threat Modeling.
BlackHat USA Workshops
- Adam Shostack’s Threat Modeling Intensive
- Advanced Whiteboard Hacking – aka Hands-on Threat Modeling
Diana Initiative
DEF CON