ScholarGate
Assistent
Machine learningSecurity Analysis

STRIDE/DREAD trusselsmodellering

STRIDE/DREAD trusselsmodellering er en Microsoft-udviklet metodologi til systematisk identifikation og prioritering af sikkerhedstrusler i softwaresystemer. STRIDE opregner trusselskategorier (Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, Elevation of Privilege), og DREAD scorer trusler efter Damage, Reproducibility, Exploitability, Affected Users og Discoverability.

Åbn i MethodMindSnartVideoSnartDownload slides

Læs hele metoden

Kun for medlemmer

Log ind med en gratis konto for at læse dette afsnit.

Log ind

Kilder

  1. Shostack, A. (2008). Threat Modeling: Designing for Security. Microsoft Press. ISBN: 0735619913
  2. Howard, M., & Lipner, S. (2006). The Security Development Lifecycle. Microsoft Press. ISBN: 0735622140
  3. Schoenfield, B. (2015). Securing the Internet of Things. Apress. ISBN: 1430268271

Sådan citerer du denne side

ScholarGate. (2026, June 3). STRIDE and DREAD Threat Modeling Methodology. ScholarGate. https://scholargate.app/da/numerical-methods/stride-dread-threat-modeling

ScholarGateSTRIDE/DREAD Threat Modeling (STRIDE and DREAD Threat Modeling Methodology). Hentet 2026-06-15 fra https://scholargate.app/da/numerical-methods/stride-dread-threat-modeling · Datasæt: https://doi.org/10.5281/zenodo.20539026