STRIDE is a threat modelling process for the identification of threats developed at Microsoft. It provides a mnemonic for each of the six categories of threats it identifies:
- Spoofing - illegally accessing and then using the authentication information of another user
- Tampering - malicious modification of data
- Repudiation - denying performing an action
- Information disclosure - exposure of information to individuals who are not supposed to have access to it
- Denial of Service (DoS) - denial of service to valid users
- Elevation of privilege - gaining of privileged access by an unprivileged user
Address: https://docs.microsoft.com/en-us/previous-versions/commerce-server/ee823878(v=cs.20)