Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Microsoft > Tools & Applications

February 20th, 2009, 15:13 GMT · By

Download Free Tool that Helped Bulletproof Windows, Out of Beta

SHARE:

Adjust text size:


Windows PC Concept
Enlarge picture
The SDL Threat Modeling Tool is one of the results of the Windows Security Push of February 2002, which ultimately led to the creation of the Security Development Lifecycle. Back in September 2008, the Redmond company revealed that it was planning to share the best practices for developing secure software with all members of the industry. But the software giant's initiative did not stop at the Security Development Lifecycle model. In addition to the SDL Pro Network, the SDL Optimization Model, the SDL Threat Modeling Tool was also released as a free download in order to help software developers bulletproof the applications designed
to run on top of the Windows platform. The latest version of the SDL Threat Modeling Tool, namely 3.1, is now available for download.

“Innovative features in the Microsoft SDL Threat Modeling Tool v3 include: automation - guidance and feedback in drawing threat diagrams; STRIDE Framework: Guided analysis of threats and mitigations; integration - issue-tracking systems; and reporting capabilities - security activities and testing in the verification phase,” Microsoft revealed.

With Windows Vista as the sole operating system supported, the SDL Threat Modeling Tool 3.1 is set up to streamline the process associated with analyzing system security. The tool will flag design issues early in the software lifecycle, according to Microsoft, and permit engineers to address them ahead of making products available to the general public. SDL Threat Modeling Tool 3.1 has been released to manufacturing (RTM'ed) and went live on the Download Center on February 19, 2009, as it debuted into Beta in November 2008.

“The Microsoft SDL Threat Modeling Tool is a core element of the SDL. The tool is part of the design phase of the SDL and allows software architects to identify and mitigate potential security issues early, when they are relatively easy and cost-effective to resolve. The Microsoft SDL Threat Modeling Tool enables software architects to: communicate about the security design of their systems; analyze those designs for potential security issues using a proven methodology; and suggest and manage mitigations for security issues,” Microsoft added.

SDL Threat Modeling Tool 3.1 RTM is available for download here.

TELL US WHAT YOU THINK:

2,465 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Hack Contest: IE8, Firefox, Safari, Opera on Windows 7

No Custom Windows 7 Boot Screen

Windows Small Business Server 2008 Update Rollup 1 Available

Download Microsoft Application Request Routing 1.0

IE8 RC Protect Mode Disabled by Default

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM