Figure 8.3.
A complex diagram mapping various security threats and vulnerabilities in a system.
Graph describing the relationship between LINDDUN (blue) and STRIDE (red) threat trees. The first part of the ids stand for each of the categories of LINDDUN (Linkability, Identifiability, Non-repudiation, Detectability, Unawareness, and Non-compliance – Disclosure of information is not represented as it is understood as the Information disclosure already captured by STRIDE) and STRIDE (only for those related to LINDDUN: Spoofing identity, Tampering, Information disclosure and Elevation of privilege). The second part after the “_” represents the type of DFD component (entity, data flow, data store, process). Labels in the edges represent indications extracted from LINDDUN descriptions in the corresponding threat trees.

or Create an Account

Close Modal
Close Modal