Skip to content
GitLab
Projects Groups Snippets
  • /
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
    • Contribute to GitLab
  • Sign in / Register
  • M mozfest-program-2018
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
  • Issues 295
    • Issues 295
    • List
    • Boards
    • Service Desk
    • Milestones
  • Merge requests 0
    • Merge requests 0
  • CI/CD
    • CI/CD
    • Pipelines
    • Jobs
    • Schedules
  • Deployments
    • Deployments
    • Environments
    • Releases
  • Packages and registries
    • Packages and registries
    • Package Registry
    • Infrastructure Registry
  • Monitor
    • Monitor
    • Incidents
  • Analytics
    • Analytics
    • Value stream
    • CI/CD
    • Repository
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Activity
  • Graph
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
Collapse sidebar
  • MozFest (Mozilla Festival)
  • mozfest-program-2018
  • Issues
  • #327
Closed
Open
Issue created Jul 30, 2018 by mozfest-bot@mozfest-bot

Hand-Crafted Threat Modeling \o/

[ UUID ] 7b6b3209-7e42-494f-b1fd-78bf47cba943

[ Session Name ] Hand-Crafted Threat Modeling \o/ [ Primary Space ] Privacy and Security [ Secondary Space ] Web Literacy

[ Submitter's Name ] Etienne Maynier [ Submitter's Affiliated Organisation ] Equalit.ie [ Submitter's GitHub ] @Te-k

[ Other Facilitator 1's Name ] Sid Rao [ Other Facilitator 1's GitHub ] @sidtechnical


[ Language ] French Kannada

[ Localisation Support Requested ] No, I can host the session myself


What will happen in your session?

Threat modelling is the cornerstone of anyone' security and privacy practices. Two years ago, we introduced our threat modelling zine at MozFest (https://www.randhome.io/docs/threat-modeling-zine.pdf). This year,we would like to go a step further with a hands-on session to write custom-made threat models. And because it is MozFest, let's create the most beautiful threat-modelling zine EVER.

During this session, participants will break off into small groups and go through every step of our threat modelling methodology. For each step, we will introduce the idea and present some examples. Then participants will brainstorm their personal answers with their group and complete their zine. We will finally ask each group to give one interesting example to the whole audience from their discussion.

What is the goal or outcome of your session?

To make threat modeling easy, useful and fun. We would like to have everyone leaving our session with a first draft of their personal threat model written in their zine. This threat model will help them identify what practices are important for them, and what new practices/tool they need to focus on. We would like to have this session early in MozFest (if possible), so that we can list the interesting MozFest sessions related to Security and privacy solutions for participants to continue improving their threat model zine during MozFest.

If your session requires additional materials or electronic equipment, please outline your needs.

We will need pens, stickers, colourful tape etc, and printed zines (depending on the room size between 30 and 50)

Time needed

60 mins

Assignee
Assign to
Time tracking