# Threat Modeling Tooling from 2017

DevFeed: [Threat Modeling Tooling from 2017](<https://devfeed.tech/articles/threat-modeling-tooling-from-2017-37051.md>)

Original publisher: [Read original article](<https://shostack.org/blog/threat-modeling-tooling-from-2017/>)

Author: Adam

Published: 2017-12-28T00:00:00Z

Content type: opinion

Language: en

Sources: [Shostack & Friends Blog](<https://devfeed.tech/sources/shostack-friends-blog.md>)

Topics: [Tooling](<https://devfeed.tech/topics/tooling.md>), [Application Security](<https://devfeed.tech/topics/application-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [Behavior-driven development](<https://devfeed.tech/topics/bdd.md>), [Web](<https://devfeed.tech/topics/web.md>)

Tags: [application-security](<https://devfeed.tech/tags/application-security.md>), [bdd](<https://devfeed.tech/tags/bdd.md>), [cloud-security](<https://devfeed.tech/tags/cloud-security.md>), [collaboration](<https://devfeed.tech/tags/collaboration.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [tooling](<https://devfeed.tech/tags/tooling.md>)

## AI overview

A retrospective on threat-modeling tooling from 2017 highlights OWASP Threat Dragon, Tutamen, security-language initiatives, BDD-Security, and IriusRisk. The article emphasizes web-based collaboration, simple diagram-to-threat-list workflows, structured threat and control stories, and application security risk management.

## Source excerpt

[no description provided]