ISADM: An Integrated STRIDE, ATT&CK, and D3FEND Model for Threat Modeling Against Real-world Adversaries
Khondokar Fida Hasan, Hasibul Hossain Shajeeb, Chathura Abeydeera, Benjamin Turnbull, and Matthew Warren

TL;DR
ISADM is a hybrid threat modeling framework for FinTech cybersecurity that combines asset classification, real-world adversary behaviors, and countermeasures, validated through industry case studies to improve proactive defense strategies.
Contribution
This paper introduces ISADM, a novel integrated threat model combining STRIDE, ATT&CK, and D3FEND tailored for FinTech, with a frequency-based scoring for risk prioritization.
Findings
Successfully replicates real attack patterns in case studies.
Enhances proactive threat assessment and resource allocation.
Bridges asset-centric and adversary-centric analysis.
Abstract
FinTechs increasing connectivity, rapid innovation, and reliance on global digital infrastructures present significant cybersecurity challenges. Traditional cybersecurity frameworks often struggle to identify and prioritize sector-specific vulnerabilities or adapt to evolving adversary tactics, particularly in highly targeted sectors such as FinTech. To address these gaps, we propose ISADM (Integrated STRIDE-ATTACK-D3FEND Threat Model), a novel hybrid methodology applied to FinTech security that integrates STRIDE's asset-centric threat classification with MITRE ATTACK's catalog of real-world adversary behaviors and D3FEND's structured knowledge of countermeasures. ISADM employs a frequency-based scoring mechanism to quantify the prevalence of adversarial Tactics, Techniques, and Procedures (TTPs), enabling a proactive, score-driven risk assessment and prioritization framework. This…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsInformation and Cyber Security · Network Security and Intrusion Detection · Infrastructure Resilience and Vulnerability Analysis
