xDECAF: An Extensible Data Flow Diagram Analysis Framework for Information Security
xDECAF introduces an extensible data-flow-diagram analysis framework tailored for security threat modelling — a potential addition to Secure-by-Design architecture reviews.
Summary written by editorial AI · Source link below
arXiv:2607.05913v1 Announce Type: cross Abstract: xDECAF is an extensible tool for architecture-based data flow analysis with a focus on information security. It combines an extended data flow diagram metamodel of labeled flows and nodes, a domain-specific constraint language with different flow operations, and a browser-based editor backed by an analysis engine. In this paper, we present the xDECAF tool library and a curated catalog of over 20 example models with documented constraints and exp
Editorial Analysis
Formalised, tool-supported data-flow analysis can improve consistency and coverage in threat modelling — particularly valuable for organisations adopting Secure-by-Design mandates under CRA or NIS2.
Evaluate xDECAF as a candidate tool for standardising threat-modelling practices across development teams.
Forward-looking interpretation drafted by editorial AI under human review — not a reproduction of the source. See methodology.
External link — opens at arXiv Crypto & Security in a new tab.
More from the Tools Desk
- SafeGuard: A Lightweight Client-Server Architecture for Real-Time Endpoint Threat Detection and Response14 Jul
- Breach at the Beach: Play the Ultimate Entra ID CTF13 Jul
- Secret Scanner Agent: Extracting Secrets and Access Context from Unstructured Documents13 Jul
- Bluetooth Low Energy Security Testing, Consolidated: Introducing Caeruleus10 Jul
- i-EXAM: Instructable and Explainable Attack Connectivity Graph Modeler8 Jul