# Threat Model Thursday: curl

DevFeed: [Threat Model Thursday: curl](<https://devfeed.tech/articles/threat-model-thursday-curl-37021.md>)

Original publisher: [Read original article](<https://shostack.org/blog/threat-model-thursday-curl/>)

Author: Adam

Published: 2022-12-29T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [cURL](<https://devfeed.tech/topics/curl.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [client](<https://devfeed.tech/topics/client.md>)

Tags: [analysis](<https://devfeed.tech/tags/analysis.md>), [client](<https://devfeed.tech/tags/client.md>), [command-line](<https://devfeed.tech/tags/command-line.md>), [curl](<https://devfeed.tech/tags/curl.md>), [models](<https://devfeed.tech/tags/models.md>), [report](<https://devfeed.tech/tags/report.md>)

## AI overview

The article reviews a threat model for curl, focusing on its context, system diagrams, threat actors, attack vectors, findings, and methodology. It considers the work generally solid while suggesting improvements to diagram structure, trust boundaries, and the treatment of attack paths.

## Source excerpt

Looking at a threat model for curl, the command line web client.