Back to all posts
Lab 36Sunday, October 4, 20262 min read

Threat Model a Sneaker Marketplace with PASTA

cybersecuritythreatmodelingpastaapplicationsecuritysqlinjectionapilabslearningprocess
View original post

Lab Objective

Use the seven PASTA stages to model a fictional mobile sneaker marketplace and connect business objectives to technical risks, attack paths, controls, and detection telemetry.

Environment and Materials

  • a written PASTA worksheet
  • a data-flow diagram for product search and purchase processing
  • an attack tree for user-data compromise
  • a temporary Markdown report or notebook

No live application, API, database, or payment provider is required.

Procedure

  1. Define business and security objectives for accounts, listings, messaging, purchasing, and payment-related processing.
  2. Define the technical scope: mobile client, APIs, authentication, application server, SQL database, encryption, and payment provider.
  3. Draw the application decomposition and mark trust boundaries.
  4. Identify at least two threats, such as SQL injection and credential theft.
  5. Identify enabling vulnerabilities, such as unsafe SQL construction or missing object-level authorization.
  6. Build attack paths from attacker input to business impact.
  7. Select controls and telemetry that reduce risk and support detection.

Expected Evidence

The result should include a data-flow diagram, an attack tree, a risk/control matrix, and explicit limitations. A threat model identifies assumptions to validate; it does not prove that a live system is vulnerable.

Security Takeaways

PASTA keeps application security connected to business impact. Parameterized queries, strong authentication, server-side authorization, least privilege, encryption, and monitoring work together across trust boundaries.