Multiple choice

Security professionals that construct threat models often classify threats in terms of _______.

  1. Attack trees

  2. STRIDE

  3. Trike

  4. Open Source Requirements

Reveal answer Fill a bubble to check yourself
B Correct answer
Explanation

STRIDE (Spoofing, Tampering, Repudiation, Information disclosure, Denial of service, Elevation of privilege) is a widely used framework for classifying threats during the threat modeling process.