Threat Models
STRIDE (Microsoft): threat based. threat categories
PASTA: Risk based on value of assets. Uses 7 steps.
VAST: Threat modeling that combines threat and risk management in the Agile programming process.
STRIDE 6 Threat classifications
Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, Elevation of privilege
PASTA threat classification meanings
Process for attack simulation and threat analysis
Reduction Analysis
Decomposing a system or application into its parts as part of the threat analysis process.