
§03 Security & Privacy
Threat Modeling in an Afternoon: A Focussed Exercise for Small Teams
Threat modeling is an essential exercise that security teams use to identify security flaws before an application is released. Draw this on a…
Identity, trust and the plumbing of the web·on the home of the Yadis discovery protocol since 2005
§03 Section
Threat models, session and data protection, and privacy treated as an engineering requirement rather than a paragraph in a policy.

§03 Security & Privacy
Threat modeling is an essential exercise that security teams use to identify security flaws before an application is released. Draw this on a…

§03 Security & Privacy
It was late on a Friday. Odds rolled in fast. Bets queued up. Then, bets froze. Payouts stalled. Support lines lit. The root cause was not epic. A…

§03 Security & Privacy
Friday night. A big promo drops. Sign-ups jump. Deposits look clean. Support is quiet. By Monday, the bonus pool is gone, VIPs are upset, and a few…

§03 Security & Privacy
For most small projects, the biggest security concern is not having advanced defenses, but actively stopping the primary leaking points. From the…

§03 Security & Privacy
Web applications tend to use a defining function or routine called a session to keep a user logged in until:
The Yadis wiki is the reason this section exists. Browse the archive →