Lab 36Sunday, October 4, 20262 min read
Threat Model a Sneaker Marketplace with PASTA
cybersecuritythreatmodelingpastaapplicationsecuritysqlinjectionapilabslearningprocess
View original postLab Objective
Use the seven PASTA stages to model a fictional mobile sneaker marketplace and connect business objectives to technical risks, attack paths, controls, and detection telemetry.
Environment and Materials
- a written PASTA worksheet
- a data-flow diagram for product search and purchase processing
- an attack tree for user-data compromise
- a temporary Markdown report or notebook
No live application, API, database, or payment provider is required.
Procedure
- Define business and security objectives for accounts, listings, messaging, purchasing, and payment-related processing.
- Define the technical scope: mobile client, APIs, authentication, application server, SQL database, encryption, and payment provider.
- Draw the application decomposition and mark trust boundaries.
- Identify at least two threats, such as SQL injection and credential theft.
- Identify enabling vulnerabilities, such as unsafe SQL construction or missing object-level authorization.
- Build attack paths from attacker input to business impact.
- Select controls and telemetry that reduce risk and support detection.
Expected Evidence
The result should include a data-flow diagram, an attack tree, a risk/control matrix, and explicit limitations. A threat model identifies assumptions to validate; it does not prove that a live system is vulnerable.
Security Takeaways
PASTA keeps application security connected to business impact. Parameterized queries, strong authentication, server-side authorization, least privilege, encryption, and monitoring work together across trust boundaries.