Threat Modeling (designing For Security)

By (author) Shostack Adam
Ships between 4 and 6 weeks
By (author) Shostack Adam
Short description/annotation:
The only security book to be chosen as a Dr. Dobbs Jolt Award Finalist since Bruce Schneier''s Secrets and Lies and Applied Cryptography! Adam Shostack is responsible for security development lifecycle threat modeling at Microsoft and is one of a handful of threat modeling experts in the world.
Description:

The only security book to be chosen as a Dr. Dobbs Jolt Award Finalist since Bruce Schneier''s Secrets and Lies and Applied Cryptography!

Adam Shostack is responsible for security development lifecycle threat modeling at Microsoft and is one of a handful of threat modeling experts in the world. Now, he is sharing his considerable expertise into this unique book. With pages of specific actionable advice, he details how to build better security into the design of systems, software, or services from the outset. You''ll explore various threat modeling approaches, find out how to test your designs against threats, and learn effective ways to address threats that have been validated at Microsoft and other top companies.

Systems security managers, you''ll find tools and a framework for structured thinking about what can go wrong. Software developers, you''ll appreciate the jargon-free and accessible introduction to this essential skill. Security professionals, you''ll learn to discern changing threats and discover the easiest ways to adopt a structured approach to threat modeling.

  • Provides a unique how-to for security and software developers who need to design secure products and systems and test their designs
  • Explains how to threat model and explores various threat modeling approaches, such as asset-centric, attacker-centric and software-centric
  • Provides effective approaches and techniques that have been proven at Microsoft and elsewhere
  • Offers actionable how-to advice not tied to any specific software, operating system, or programming language
  • Authored by a Microsoft professional who is one of the most prominent threat modeling experts in the world

As more software is delivered on the Internet or operates on Internet-connected devices, the design of secure software is absolutely critical. Make sure you''re ready with Threat Modeling: Designing for Security.


Table of contents:

Introduction xxi

Part I Getting Started 1

Chapter 1 Dive In and Threat Model! 3

Learning to Threat Model 4

Threat Modeling on Your Own 26

Checklists for Diving In and Threat Modeling 27

Summary 28

Chapter 2 Strategies for Threat Modeling 29

“What’s Your Threat Model?” 30

Brainstorming Your Threats 31

Structured Approaches to Threat Modeling 34

Models of Software 43

Summary 56

Part II Finding Threats 59

Chapter 3 STRIDE 61

Understanding STRIDE and Why It’s Useful 62

Spoofing Threats 64

Tampering Threats 67

Repudiation Threats 68

Information Disclosure Threats 70

Denial-of-Service Threats 72

Elevation of Privilege Threats 73

Extended Example: STRIDE Threats against Acme-DB 74

STRIDE Variants 78

Exit Criteria 85

Summary 85

Chapter 4 Attack Trees 87

Working with Attack Trees 87

Representing a Tree 91

Example Attack Tree 94

Real Attack Trees 96

Perspective on Attack Trees 98

Summary 100

Chapter 5 Attack Libraries 101

Properties of Attack Libraries 101

CAPEC 104

OWASP Top Ten 108

Summary 108

Chapter 6 Privacy Tools 111

Solove’s Taxonomy of Privacy 112

Privacy Considerations for Internet Protocols 114

Privacy Impact Assessments (PIA) 114

The Nymity Slider and the Privacy Ratchet 115

Contextual Integ

More Information
Author By (author) Shostack Adam
Date Of Publication Apr 25, 2014
EAN 9781118809990
Contributors Shostack Adam
Publisher John Wiley & Sons Inc
Languages English
Country of Publication United Kingdom
Width 180 mm
Height 226 mm
Thickness 36 mm
Product Forms Paperback / Softback
Weight 0.862000
Write Your Own Review
Only registered users can write reviews. Please Sign in or create an account