🏠 Trang chủ
Benchmark
📊 Tất cả benchmark 🦖 Khủng long v1 🦖 Khủng long v2 ✅ Ứng dụng To-Do List 🎨 Trang tự do sáng tạo 🎯 FSACB - Trình diễn cuối cùng 🌍 Benchmark dịch thuật
Mô hình
🏆 Top 10 mô hình 🆓 Mô hình miễn phí 📋 Tất cả mô hình ⚙️ Kilo Code
Tài nguyên
💬 Thư viện prompt 📖 Thuật ngữ AI 🔗 Liên kết hữu ích
advanced

Conduct a Threat Modeling Exercise

#security #threat-modeling #api #fintech

Perform a comprehensive threat modeling assessment for a fintech API gateway.

Act as a Chief Information Security Officer. Conduct a threat modeling assessment (using STRIDE methodology) for a new RESTful API gateway that handles payment authorization requests. Identify potential threats related to spoofing, tampering, repudiation, information disclosure, denial of service, and elevation of privilege. For each identified threat, propose a specific mitigation strategy involving cryptographic controls, rate limiting, or input sanitization. Detail the authentication and authorization flow required to mitigate these risks.