Threat Model — STRIDE Analysis
Automated threat identification based on your architecture components
STRIDE Threat Categories
S
Spoofing Identity
Attacker pretends to be something or someone else. Affects authentication mechanisms.
T
Tampering with Data
Malicious modification of data in transit or at rest. Affects data integrity.
R
Repudiation
Performing actions that cannot be traced back. Affects audit and logging.
I
Information Disclosure
Exposing information to unauthorized individuals. Affects confidentiality.
D
Denial of Service
Making system unavailable. Affects availability and uptime.
E
Elevation of Privilege
Gaining capabilities without authorization. Affects access control.