atomic-data-docs icon indicating copy to clipboard operation
atomic-data-docs copied to clipboard

Threat modelling like STRIDE for overall security design/principles

Open AlexMikhalev opened this issue 3 years ago • 0 comments

I think we need to add a threat model, like https://en.wikipedia.org/wiki/STRIDE_(security) into our documentation and also highlight how atomic data server features prevent common threats: Threat Desired property Spoofing Authenticity Tampering Integrity Repudiation Non-repudiability Information disclosure Confidentiality Denial of Service Availability Elevation of Privilege Authorization

For example, what if I want to take over an agent account and I will brute force the private key?

AlexMikhalev avatar Jun 14 '22 10:06 AlexMikhalev