FlowStrider Automates Continuous Data‑Flow Threat Modeling
FlowStrider is an open‑source architectural threat modeling tool developed to automate and streamline the identification, mitigation, documentation, and management of security threats based on data flow representations of software systems. It supports continuous threat modeling by integrating into CI/CD pipelines, is fully scriptable and extensible, and works with practice‑oriented workflows to lower the effort required for threat analysis. The tool is language‑agnostic, uses structured data‑flow graphs to elicit threats, and produces structured reports to aid security assessment in development workflows.
https://gitlab.com/dlr-dw/automated-threat-modeling/flowstrider
Comments
Post a Comment