Home
ABOUT
PROJECTS
  Trike
  PNA
  Books
  Moonracer
ETCETERA
WORK

TRIKE

An
     octopus on a tricycle

A Conceptual Framework for Threat Modeling

Starting in late 2003, I've been doing a considerable amount of research on threat modeling, along with Brenda Larcom, Mike, and Stephanie Smith.

Trike has been conducted entirely as a private endeavor, and is copyright 2003-2007 Eleanor Saitta, Brenda Larcom, Michael Eddington, and Stephanie Smith.  All rights reserved.

ToorCon 2005 Slides

We spoke on Trike at Toorcon 2005.  The code used has been released as Trike v1 build 5 on the main trike site.  Here's the slides:

Draft of v1 Methodology Document

The paper below describes the current stable state of the Trike methodology.  We're continuing our research beyond this point, but I wanted to get something released to start a discussion in the community and get things moving along the right lines.  This is still technically a draft of the paper; the primary content is complete, but it does not yet contain the fully worked examples which will be in the final paper; I will release the final version as soon as possible.  The paper is available both here and on the main Trike site.

Logo

We've got a snazzy new logo for the project, from Ellen of Gershamabbo.com.  She was wonderful to work with; you should definitely go to her for all your logo needs.