Request & Response Threats RRS feed

  • Question

  • While I was showing demo to a team. One question came up.

    Why do I need to add a response data flow. As this generates almost the same threats. 

    Why would I want to do additional work.

    They were also challenging the effectiveness of the Tool, in terms of identifying unique threats. Most of them seems to be repeating.

    Can anyone share their views for the above.

    Thanks  & Regards,


    Monday, April 23, 2018 10:50 AM