Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Threat Modeling for notation (TS+TP+Envelope) #391

Closed
priteshbandi opened this issue Oct 12, 2022 · 4 comments
Closed

Threat Modeling for notation (TS+TP+Envelope) #391

priteshbandi opened this issue Oct 12, 2022 · 4 comments
Assignees
Milestone

Comments

@priteshbandi
Copy link
Contributor

priteshbandi commented Oct 12, 2022

Threat modeling involves identifying ways that an adversary might try to attack notation and then designing mitigations to prevent, detect or reduce the impact of those attacks.

Aspect:
TS+TP+Envelope - 1 SDE week

Other Aspect is tracked under the issue : #409

@dtzar
Copy link
Contributor

dtzar commented Oct 13, 2022

Discussed on community call today. Would be good to have some brief things written out for process of trying to find vulnerabilities and then if issue(s) found, file issue(s) to help mitigate. Idea would be work shared amongst dev area ownership for those who are most familiar with codebase. Needs estimate.

@dtzar dtzar added this to the RC-1 milestone Oct 13, 2022
@dtzar
Copy link
Contributor

dtzar commented Oct 13, 2022

Putting this for RC-1, but this would be last thing which could potentially be cut and pushed to RC-2. IMO - I believe would be good right after RC-1 and if we find things, ok to release shortly after fix/patches from RC-1.

@vaninrao10 vaninrao10 changed the title Threat Modeling for notation Threat Modeling for notation (TS+TP+Envelope) Oct 20, 2022
@iamsamirzon iamsamirzon moved this from Todo to In Progress in Notary Project Planning Board Nov 3, 2022
@yizha1
Copy link
Contributor

yizha1 commented Nov 9, 2022

Confirmed to move this issue out of rc-1 scope. Now moved to "Discuss". We will review all the issues later for rc-2 release scope.

@yizha1 yizha1 modified the milestones: RC-1, Discuss Nov 9, 2022
@priteshbandi priteshbandi modified the milestones: Discuss, RC-2 Nov 23, 2022
@yizha1 yizha1 modified the milestones: RC-2, Discuss Dec 14, 2022
@yizha1
Copy link
Contributor

yizha1 commented Aug 4, 2023

@yizha1 yizha1 closed this as completed Aug 4, 2023
@github-project-automation github-project-automation bot moved this from In Progress to Done in Notary Project Planning Board Aug 4, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
Status: Done
Development

No branches or pull requests

4 participants