All,
Anurag Agarwal wrangled a group of people at the OWASP Portugal summit
to collect thinking on Threat Modeling. Unfortunately, I got double-
booked and ended up serving on a Mozilla Security panel.
Anurag posted results from his session on the OWASP wiki and I thought
you guys might be interested:
http://www.owasp.org/index.php/OWASP_Threat_Modelling_Project
He is currently seeking volunteers to contribute to the project. To
him, next steps include:
1. High level project roadmap with milestones.
2. Call for participants
3. Review existing resources within OWASP to align with threat
modeling
project.
4. Come up with a threat modeling methodology
5. Publish the first draft
If you're interested, please subscribe to the mailing list
https://lists.owasp.org/mailman/listinfo/owasp-threat-modelling-project
Perhaps this group can serve has his discussion playground!
-jOHN