locked
Threat Modeling Tool: Lots of long term unfixed bugs. RRS feed

  • Question

  • Using the current version of the tool (7.1.60126.1)

    1.)  The data flow referenced in the Title field is not updated from an older modified value: 

    An adversary may sniff communications XXXXX to gain access to sensitive data, where XXXX is an older label that has been changed, but this keeps using the original value for this label.


    2.) The title field says this: "An adversary may exploit unused services or privleged features in..."  While the Description field say this "An adversary may use unused features or privledged services on...".  So while both mis-spell "privileged" in the same way, they reverse the order of the terms in this phrase...  I believe the Description field is the correct order of terms!

    Monday, March 18, 2019 3:36 PM

Answers

  • Christopher,

    Thanks for your feedback.

    1) We have the first issue in our backlog.

    2) With regards to the spelling / phrasing issue, can you please specify what template you are using in your model? I'm not able to find that exact phrasing in either of the current templates we support:

    Azure Template

    Standard Template

    Thursday, April 11, 2019 5:57 PM