Threat Modeling With Good Questions and Without Checklists - Farshad Abasi - ASW #335 episode artwork

EPISODE · Jun 17, 2025 · 1H 8M

Threat Modeling With Good Questions and Without Checklists - Farshad Abasi - ASW #335

from Application Security Weekly (Video)

What makes a threat modeling process effective? Do you need a long list of threat actors? Do you need a long list of terms? What about a short list like STRIDE? Has an effective process ever come out of a list? Farshad Abasi joins our discussion as we explain why the answer to most of those questions is No and describe the kinds of approaches that are more conducive to useful threat models. Resources: https://www.eurekadevsecops.com/agile-devops-and-the-threat-modeling-disconnect-bridging-the-gap-with-developer-insights/ https://www.threatmodelingmanifesto.org https://kellyshortridge.com/blog/posts/security-decision-trees-with-graphviz/ In the news, learning from outage postmortems, an EchoLeak image speaks a 1,000 words from Microsoft 365 Copilot, TokenBreak attack targets tokenizing techniques, Google's layered strategy against prompt injection looks like a lot like defending against XSS, learning about code security from CodeAuditor CTF, and more! Show Notes: https://securityweekly.com/asw-335

Episode metadata supplied by the publisher feed · Published Jun 17, 2025

Embed this episode

NOW PLAYING

Threat Modeling With Good Questions and Without Checklists - Farshad Abasi - ASW #335

0:00 1:08:00

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Application Security Weekly (Video)?

This episode is 1 hour and 8 minutes long.

When was this Application Security Weekly (Video) episode published?

This episode was published on June 17, 2025.

Can I download this Application Security Weekly (Video) episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!