Skip to content

Details

Awakening Threat Models, VAST threat modeling inside code to power DevSecOps (45 min)
This talk presents a novel, integrated Threat Modeling as Code (TMAC) approach that combines the OWASP pytm and Threatspec to achieve Secure by Design. Proposed a dual nature method establishes a single, version-controlled source via md files by analyzing a system's architectural design via pytm and capturing feature-specific threats directly in source code annotations via Threatspec.

Events in Mesa, AZ
Application Security
Web Security
Hacking
Information Security

Members are also interested in