Brett Crawley -- Threat Modeling Gameplay with EoP
The Application Security Podcast - Podcast tekijän mukaan Chris Romeo and Robert Hurlbut - Tiistaisin
 
   Brett Crawley discusses the Elevation of Privilege (EoP) card game, a powerful tool for threat modeling in software development. The discussion explores recent extensions to the game including privacy-focused suits and TRIM (Transfer, Retention/Removal, Inference, Minimization) categories. Crawley emphasizes that threat modeling shouldn't end with the game but should be an ongoing process throughout an application's lifecycle, ideally starting before implementation. He also shares insights fr...
 
 