Dirk Wetter

Results 382 comments of Dirk Wetter

Hello out there, thanks for your thoughts. The idea of the threat modeling chapter was to have classes of threats. Those classes represent vectors, not particular threats. A particular threat...

@hartwork : If a ticket is done it'll be closed ;-) I have a started a threat model map I created for my talk in Amsterdam (https://www.owasp.org/images/d/df/Dirk_Wetter_-_Docker_Top10-AMS.pdf). It is in...

When you look more thorough or from a closer distance at it: yes. @PauloASilva put that together using gitbook-cli (see #5). I am not familiar at all with gitbook, so...

> unnatural letter spacing .. or like a kerning problem using this font. The example above seems to be equally spaced. But... ![Screenshot_20200930_102723](https://user-images.githubusercontent.com/8036727/94661612-95ee2a00-0307-11eb-9a25-1267ba405c34.png) .. in this example the kerning for...

Good to hear! Let me know when it's time to do anything in this repo for you!

Thanks! You're right. partly however it is there - in the threat model at least., see https://github.com/OWASP/Docker-Security/blob/master/001%20-%20Threats.md. The concrete point belongs to D08. This needs to be filled with content...

I'd rather leave this open at the moment as I on my list was a review of the vector specific threats and maybe then an addition of specific threats.

@Aut0R3V : if you want to spend some cycles: you could work on a threat map like the one Timo contributed: https://raw.githubusercontent.com/OWASP/Docker-Security/master/assets/threats.png First, that should be in an editable format,...

Hi @danehrlich1, in order to put the cart behind the horse, intended is to provide a structure first for each single D-point. Technical hints will go into one of the...