screenshot of a linkedin post by ryan castellucci 23 hours ago Involve developers in threat modeling with "abuser stories": "As a thief, I want to be able to reset passwords using SMS verification, so that I can compromise any account by bribing a telco employee." "As a spammer, I want to know immediately when my content is blocked/removed, so that I can quickly learn to evade detection." "As an stalker, I want to track my ex's every move, so that I can 'coincidentally' run into them at any time."
https://media.infosec.exchange/infosec.exchange/media_attachments/files/112/166/580/853/578/971/original/fe3c2d28656840d0.png