School of Computing

Threat Modelling for Active Directory

David Chadwick

In Proceedings of Eighth Annual IFIP TC-6 TC-11 Conference on Communications and Multimedia Security, pages 182-196, Windermere, UK, September 2004.

Abstract

This paper analyses the security threats that can arise against an Active Directory server when it is included in a Web application. The approach is based on the STRIDE classification methodology. The paper also provides outline descriptions of countermeasures that can be deployed to protect against the different threats and vulnerabilities identified here.

Download publication 58 kbytes (PDF)

Bibtex Record

@inproceedings{2281,
author = {David Chadwick},
title = {{Threat Modelling for Active Directory}},
month = {September},
year = {2004},
pages = {182-196},
keywords = {determinacy analysis, Craig interpolants},
note = {},
doi = {},
url = {http://www.cs.kent.ac.uk/pubs/2004/2281},
    publication_type = {inproceedings},
    submission_id = {22756_1131444973},
    booktitle = {Proceedings of Eighth Annual IFIP TC-6 TC-11 Conference on Communications and Multimedia Security},
    address = {Windermere, UK},
}

School of Computing, University of Kent, Canterbury, Kent, CT2 7NF

Enquiries: +44 (0)1227 824180 or contact us.

Last Updated: 21/03/2014