saurabhlime
saurabhlime
I completely agree with not mandating the Att&ck tactic step. Though we can pre-select the att&ck layer based on the process that is selected for Threat modelling(Cloud, container, network, IAAS...
Helpful resource to visualize STRIDE mapping to MITRE's Attack CAPEC. https://ostering.com/blog/2022/03/07/capec-stride-mapping/
What's the plan for fixing this issue? Is there a temporary fix?
When can this be merged?