---
title: "STRIDE"
description: "A threat-classification checklist from Microsoft's Security Development Lifecycle: spoofing, tampering, repudiation, information disclosure, denial of service and elevation of privilege."
canonical: https://aigovernanceengineer.com/glossary/stride
author: "Jorge García Aibar"
license: "CC BY 4.0 (https://creativecommons.org/licenses/by/4.0/)"
doi: https://doi.org/10.5281/zenodo.22956197
version: "0.5.0"
updated: 2026-09-25
---

# STRIDE

A threat-classification checklist from Microsoft's Security Development Lifecycle: spoofing, tampering, repudiation, information disclosure, denial of service and elevation of privilege [1]. For an AI system it is walked per element of the data-flow diagram and then extended with AI-specific catalogues such as MITRE ATLAS and the OWASP lists.

- Developed in: [ch. 15, Threat modelling the deployed system](https://aigovernanceengineer.com/bok/governing-deployment#threat-modelling-the-deployed-system); [ch. 05, Pattern: AI Threat Model](https://aigovernanceengineer.com/patterns/ai-threat-model)
- Chapters: [ch. 05, Patterns](https://aigovernanceengineer.com/bok/patterns) · [ch. 06, The Role](https://aigovernanceengineer.com/bok/the-role) · [ch. 15, Deployment](https://aigovernanceengineer.com/bok/governing-deployment)
- Contrast with: [ATLAS](https://aigovernanceengineer.com/glossary/atlas)
- In the glossary chapter: https://aigovernanceengineer.com/bok/glossary#t-stride

## Sources

[1] Threats: Microsoft Threat Modeling Tool (the STRIDE model: spoofing, tampering, repudiation, information disclosure, denial of service, elevation of privilege; the tool is a core element of the Security Development Lifecycle). Microsoft Learn. 2017-08-17. https://learn.microsoft.com/en-us/azure/security/develop/threat-modeling-tool-threats (verified: primary)
