Threat Modeling Hackathon

Join our highly anticipated annual Threat Modeling Hackathon to collaborate with top threat practitioners from around the globe. Enhance your threat modeling skills, share knowledge, or mentor others.

About the Hackathon

Threat Modeling Hackathon, launched in 2023 quickly became one of the industry's leading virtual hackathons focusing on threat modeling. This three-week event offers you the opportunity to collaborate with a team of 4-5 threat practitioners in your time zone (or the nearest one) to solve a secure software design challenge.

With the guidance of mentors and engaging workshops, you'll tackle the challenge through robust threat modeling exercises, identify potential security risks, and propose innovative solutions. Whether you're a seasoned threat modeler or just starting out, we've got your back every step of the way.

Here's what to expect

Three-Week Immersive Threat Modeling Journey
Collaborate with security pros and developers from around the globe as you navigate a comprehensive three-week program designed to enhance your threat modeling prowess.
Expert-led Threat Modeling Training
Equip yourself with threat modeling knowledge and skills taught by leading threat modeling experts. Past speakers include Adam Shostack, Chris Romeo, Kim Wuyts, Luis Servin, and more.
Mentorship Opportunities
Receive personalized guidance and mentorship from leading threat modeling professionals throughout the duration of the event.
Exciting Prizes
Compete for a chance to win fantastic prizes. Past prizes include a $2,500 Amazon voucher and an exclusive private session of the Elevation of Privilege Game hosted by Adam Shostack himself.

Previous champions

2024
Arron Johnson (Team Captain)
Alicia Haumann
Ivan Smetskoy
Jan Andersen
Prasanna Srinivasan

Champion Threat Models

Featured Threat Model 04
A threat model for AI-assisted software featuring extensive frameworks and threat libraries, including STRIDE, LINDDUN, Plot4.ai, OWASP, and others.
Featured Threat Model 03
A threat model of a rideshare app, created by the 2024 Hackathon Finalist team using a combination of STRIDE and LINDDUN GO as the primary methodologies.
Featured Threat Model 02
A threat model of a rideshare app created by the finalist team of the 2023 Threat Modeling Hackathon using ATASM, c4 methodology, and graphviz.
Featured Threat Model 01
The scope of the threat model is a microservice application (RideShare) and associated directly interacting entities such as data stores and middleware.

Past Mentors

Zoe Braiterman
2023
CIO
Mutual Knowledge Systems
Mark Merkow
2023
Application Security Engineer
Freeport-McMoRan
Jeroen Verwoest
2023
Product Owner, Threat Modeling
ABN AMRO Bank
Steven Wierckx
2024
Product Security Team Lead
Toreon
Avi Douglen
2023
Founder and CEO
Bounce Security
Tyson Garrett
2024
CTO
TrustOnCloud
Simone Curzi
2024
Cyber Security Principal Consultant
Microsoft
Natalia Girabet Massot
2024
Tech Lead
IriusRisk
Michael Bernhardt
2024
Product Security Manager
Telefónica Germany
Joshua Holmes
2024
Cyber Security Consultant
secureIO GmbH
Mariia Tiurina
2024
Senior Application Security Engineer
Outseer
Jonny Tennyson
2024
Head of Customer Success
Secure Code Warrior
Georges Bolssens
2024
Threat Modeling Consultant
Toreon
James Rabe
2024
Global Technical Program Manager
IriusRisk
John Taylor
2023, 2024
Sr. Manager, Global Cybersecurity A&E Application Security and Design
Deloitte
Altaz Valani
2024
Principal Advisory Director
Info-Tech Research Group
Edouard Stoka
2024
Sr. Application Security Architect
ADP
Daniel Agota
2023, 2024
Sr. Security Consultant
Career break
Dave Soldera
2024
Security Architect
Electronic Arts
Álvaro Pérez
2024
Sr. Developer & Security Champion
IriusRisk
Atul Chaturvedi
2024
Cyber Security Architect
Fiskars Group

Past Speakers

Adam Shostack
Adam Shostack
President
Shostack + Associates
Kim Wuyts
Kim Wuyts
Manager, Cyber & Privacy
PwC Belgium
Luis Servín
Luis Servín
Platform Security Lead
Hapag-Lloyd AG
Chris Romeo
Chris Romeo
CEO & Co-founder
Devici

Past Judges

Lesley Nuttall
2023
IBM Cloud
IBM
Sebastien Deleersnyder
2023
Co-founder & CTO
Toreon
Robert Hurlbut
2024
Principal Application Security Architect / Threat Modeling Lead
Aquia Inc
Kim Wuyts
2024
Manager, Cyber & Privacy
PwC
Avi Douglen
2024
Founder and CEO
Bounce Security
Izar Tarandach
2023
Sr. Principal Security Architect
SiriusXM
Brook Schoenfield
2023, 2024
CTO & Chief Security Architect
Resilient Software Security, LLC
Adam Shostack
2023
President
Shostack + Associates