
Adam Shostack -- Fast, cheap and good threat models
The Application Security Podcast
00:00
Is There a Better Future Than That Than Threat Modelling?
The threat modelling process doesn't even exist any more, because it's just ingrained. The way we build software here is always we file bugs that look like this. And i can tell the new higher because they haven't learned to file bugs that read like this. I think we got a ways to go. But that' certainly, in my mind, that's the utopian future, where developers just understand security and think about it, and we don't need process of methodology. You know, that's really interesting, because as these things evolve, we develop these ultra light weight ways of doing things.
Transcript
Play full episode