Threat Modeling

Microsoft is offering a free download for a Threat Modeling Tool written by Frank Swiderski (author of Threat Modeling). I haven't tried it out yet, as I am no longer involved in security-related issues, but threat modeling tools, in general, are good for focusing attention on what you are actually trying to protect. Supporters of DRM software, for example, would benefit from using one of these tools, if only to notice how broken their model is.

And here I saw "Threat Modeling" and thought it would be about things like bioweapons and truck bombs.


I haven't used the tool yet, but I imagine that a threat modeling tool should be generic enough to be used for any type of threat. The logical process is the same.

