Closed zeroXten closed 4 years ago
STRIDE isn't used to categorise threats, but as an aid to discovering them, so some threats may feel naturally associated with more than one STRIDE type.
It would also be nice if it were a non-mandatory field.
Migrated to new issue in the OWASP area repo : https://github.com/OWASP/threat-dragon-core/issues/3
STRIDE isn't used to categorise threats, but as an aid to discovering them, so some threats may feel naturally associated with more than one STRIDE type.