STRIDE (security)
STRIDE is a system developed by Microsoft for thinking about computer security threats. It provides a mnemonic for security threats in six categories.
The threat categories are:
- Spoofing of user identity
- Tampering
- Repudiation
- Information disclosure (privacy breach or data leak)
- Denial of service (D.o.S)
- Elevation of privilege
The STRIDE name comes from the initials of the six threat categories listed. It was initially proposed for threat modelling, but is now used more broadly.
See also
- DREAD: Risk assessment model - another mnemonic for security threats
- Cyber security and countermeasure
External links
This article is issued from Wikipedia - version of the Monday, July 20, 2015. The text is available under the Creative Commons Attribution/Share Alike but additional terms may apply for the media files.