Threat Modeling

Systematic threat modeling skill for applications, APIs, and systems using STRIDE, PASTA, Attack Trees, DREAD, LINDDUN, and OCTAVE. Use when assessing security architecture, creating data flow diagrams (Mermaid), enumerating threats from OpenAPI specs or architecture docs, building attack trees, mapping threats to NIST/CIS/OWASP ASVS controls, or producing a threat model report. Triggers on requests to threat model, analyze attack surface, create a DFD, apply STRIDE, or design security mitigations.

hardw00t Updated

File contents

hardw00t/ai-security-arsenal/tree/main/skills/threat-modeling commit f2a40d3b6d

Frequently asked questions

npx skillmds@latest add hardw00t/threat-modeling