Threat Risk Modeling

Sabah Al‐Fedaghi, Asad A. Alrashed · 2010

Application development security utilizes a list of threats that identify and organize application security classes of attack. The developed system is decomposed into relevant components and then each component is analyzed for threats. Data flow diagrams (DFDs) are typically used to graphically represent a system. In this paper we propose a flow-based model as an alternative methodology for identification and classification of threats.

Read the paper · More papers on PaperTik