V2EX threat-modeling

Threat Modeling

Definition / 定义

Threat modeling(威胁建模):一种系统化的安全分析方法,用来识别系统可能面临的威胁、攻击路径与风险,并据此制定缓解措施(如安全需求、设计改进、控制措施)。常用于软件、网络、业务流程与数据系统的安全设计阶段。

Pronunciation / 发音

/θrt mdl/

Examples / 例句

We do threat modeling before we release the app.
我们在发布这个应用之前会进行威胁建模。

Threat modeling helped the team identify trust boundaries, likely attackers, and the most cost-effective mitigations for sensitive data flows.
威胁建模帮助团队识别信任边界、可能的攻击者,以及针对敏感数据流最具成本效益的缓解措施。

Etymology / 词源

该术语由 threat(威胁)modeling(建模/建立模型) 组合而成,字面意思是“对威胁进行建模”。在信息安全工程实践中逐渐固定为专门术语,强调用结构化方法(如数据流图、信任边界、资产清单)来“提前推演”系统如何被攻击。

Related Words / 相关词

Literary Works / 文学作品

  • Threat Modeling: Designing for Security(Adam Shostack)以“threat modeling”为核心概念的经典安全工程著作。
  • Security Engineering: A Guide to Building Dependable Distributed Systems(Ross J. Anderson)讨论系统化安全设计与风险分析,包含与威胁建模紧密相关的方法论。
  • Microsoft Security Development Lifecycle (SDL) documentation(微软 SDL 文档/指南)在安全开发流程中明确强调威胁建模实践与产出物。
关于     帮助文档     自助推广系统     博客     API     FAQ     Solana     2820 人在线   最高记录 6679       Select Language
创意工作者们的社区
World is powered by solitude
VERSION: 3.9.8.5 58ms UTC 09:39 PVG 17:39 LAX 02:39 JFK 05:39
Do have faith in what you're doing.
ubao msn snddm index pchome yahoo rakuten mypaper meadowduck bidyahoo youbao zxmzxm asda bnvcg cvbfg dfscv mmhjk xxddc yybgb zznbn ccubao uaitu acv GXCV ET GDG YH FG BCVB FJFH CBRE CBC GDG ET54 WRWR RWER WREW WRWER RWER SDG EW SF DSFSF fbbs ubao fhd dfg ewr dg df ewwr ewwr et ruyut utut dfg fgd gdfgt etg dfgt dfgd ert4 gd fgg wr 235 wer3 we vsdf sdf gdf ert xcv sdf rwer hfd dfg cvb rwf afb dfh jgh bmn lgh rty gfds cxv xcv xcs vdas fdf fgd cv sdf tert sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf sdf shasha9178 shasha9178 shasha9178 shasha9178 shasha9178 liflif2 liflif2 liflif2 liflif2 liflif2 liblib3 liblib3 liblib3 liblib3 liblib3 zhazha444 zhazha444 zhazha444 zhazha444 zhazha444 dende5 dende denden denden2 denden21 fenfen9 fenf619 fen619 fenfe9 fe619 sdf sdf sdf sdf sdf zhazh90 zhazh0 zhaa50 zha90 zh590 zho zhoz zhozh zhozho zhozho2 lislis lls95 lili95 lils5 liss9 sdf0ty987 sdft876 sdft9876 sdf09876 sd0t9876 sdf0ty98 sdf0976 sdf0ty986 sdf0ty96 sdf0t76 sdf0876 df0ty98 sf0t876 sd0ty76 sdy76 sdf76 sdf0t76 sdf0ty9 sdf0ty98 sdf0ty987 sdf0ty98 sdf6676 sdf876 sd876 sd876 sdf6 sdf6 sdf9876 sdf0t sdf06 sdf0ty9776 sdf0ty9776 sdf0ty76 sdf8876 sdf0t sd6 sdf06 s688876 sd688 sdf86