In professional security speak Threat is something unwanted that might happen to your blog. Generally there are only few abbreviated by STRIDE:
They are
1.Spoofing
2.Tampering
3.Repudiation
4.Information disclosure
5.Elevation of rights
Spoofing : Stealing your identity (for example, your User Name and Password that you use to logon into your blog).
Tampering. Modifying the data on your blog (for example, defacement of your blog’s homepage).
Repudiation. Less relevant to blogging but in a nutshell it is the ability by hacker to deny what he has done.
Information disclosure. Exposing private information like passwords.
Denial of service. Making your blog unavailable.
Elevation of rights. Gaining higher privileges, such as administrative ones, that can make possible performing harmful actions on your blog.
They are
1.Spoofing
2.Tampering
3.Repudiation
4.Information disclosure
5.Elevation of rights
Spoofing : Stealing your identity (for example, your User Name and Password that you use to logon into your blog).
Tampering. Modifying the data on your blog (for example, defacement of your blog’s homepage).
Repudiation. Less relevant to blogging but in a nutshell it is the ability by hacker to deny what he has done.
Information disclosure. Exposing private information like passwords.
Denial of service. Making your blog unavailable.
Elevation of rights. Gaining higher privileges, such as administrative ones, that can make possible performing harmful actions on your blog.
No comments:
Post a Comment