🏠 Accueil
基準測試
📊 Tous les Benchmarks 🦖 Dinosaure v1 🦖 Dinosaure v2 ✅ To-Do List Apps 🎨 Pages Libres 🎯 FSACB - Showcase 🌍 Traduction
Modèles
🏆 Top 10 Modèles 🆓 Modèles Gratuits 📋 Tous les Modèles ⚙️ Modes Kilo Code
Ressources
💬 Prompts IA 📖 人工智能詞彙表 🔗 Liens Utiles
advanced

Comprehensive Threat Modeling

#security #threat-modeling #api #risk-analysis

Perform a threat model analysis on a hypothetical fintech API.

Act as a Security Architect. Perform a comprehensive threat model assessment for a new RESTful API for a peer-to-peer payment platform. Assume the API uses OAuth 2.0 and handles sensitive financial data. Identify potential threats across the STRIDE model (Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, Elevation of Privilege). For each identified threat, propose a specific mitigation strategy involving cryptography, rate limiting, input validation, or infrastructure design. Prioritize the risks by severity.