Threat Modeling: Finding the Worst Vulnerabilities You’ll Never Write

Speaker: Matthew Butler

Threat Modeling is fundamental to understanding risk. We do it every day: driving a car, crossing a street, walking alone at night in a strange city. Darkness, isolation, insecurity, vulnerability all trigger our threat modeling instincts. And that’s exactly where our systems operate. In this talk, we’ll see how to use threat modeling to find the worst vulnerabilities hidden in the complexity of our systems by uncovering architectural flaws early, exposing attack surfaces, identifying attack vectors. You can’t code your way out of a bad architecture but you can threat model your way out.

