Could something be skipping though the "customer interaction" points in your application?

BOT3 from the OWASP Cornucopia Companion illustrates how automation at scale can be used on gambling sites to make bets fast & furiously, skipping past all the checks and balances, warnings, up-selling and regulatory information.

Read the whole scenario at https://cornucopia.owasp.org/edition/companion/BOT3/1.0/en

Details of new release at https://cornucopia.owasp.org/news/20260508-companion-edition

@owasp #appsec #devops #devsecops #threatmodelling #eop #owasp #cornucopia

Open source and free. Download print-ready files and play Cornucopia together, browse the cards online, or play games online with remote team members.

https://cornucopia.owasp.org

https://copi.owasp.org

If you prefer, printed decks are available to purchase from a vendor as a dual-packaged Website App Edition x Companion Edition combination set:

https://cybersecgames.com/pages/owasp-cornucopia-threat-modeling-collection

@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec

2/2

OWASP Cornucopia - Threat modeling for everyone

OWASP Cornucopia is a mechanism in the form of a card game to assist software development teams identify security requirements in Agile, conventional and formal development processes.

The new Companion Deck for OWASP Cornucopia includes six novel suits to assist threat modelling of Agentic AI, Cloud, DevOps, Frontend, LLM and Automation. The suits can be used alone or in combination with suits from either existing Cornucopia decks: the Website App Edition or Mobile App Edition. My main contribution to this is the Automated Threats (BOT) suit.

https://cornucopia.owasp.org/news/20260508-companion-edition

@owasp #owasp #cornucopia #eop #stride #threatmodelling #devops #devopsec #appsec #infosec

1/2

The Digital Benefits and Disbenefits Cornucopia croupier has dealt the Queen of Cornucopia (CO-Q). The card's focus is confirmation checks. Full details at https://www.digitalbenefits.uk/deck/cornucopia/Q

DBD Cornucopia is a practical tool for teams implementing welfare benefit e-government services. It assists system review to identify how digitisation choices affect claimants adversely.

#welfarebenefits #socialsecurity #socialprotection #egovernment #publicservices #uk #cornucopia

Yes! It’s time to party! The OWASP Foundation is celebrating 25 incredible years of open source security. That’s why OWASP Cornucopia is launching its 25th anniversary edition. #appsec #security #owasp #cornucopia #llm #agentic_ai #devops #cloud #frontend #threatmodeling

The Digital Benefits and Disbenefits Cornucopia croupier has dealt the Jack of Cornucopia (CO-J). The card's focus is navigation. Full details at https://www.digitalbenefits.uk/deck/cornucopia/J

DBD Cornucopia is a practical tool for teams implementing welfare benefit e-government services. It assists system review to identify how digitisation choices affect claimants adversely.

#welfarebenefits #socialsecurity #socialprotection #egovernment #publicservices #uk #cornucopia

The Digital Benefits and Disbenefits Cornucopia croupier has dealt the Six of Cornucopia (CO-6). The card's focus is languages. Full details at https://www.digitalbenefits.uk/deck/cornucopia/6

DBD Cornucopia is a practical tool for teams implementing welfare benefit e-government services. It assists system review to identify how digitisation choices affect claimants adversely.

#welfarebenefits #socialsecurity #socialprotection #egovernment #publicservices #uk #cornucopia

The Digital Benefits and Disbenefits Cornucopia croupier has dealt the Ten of Cornucopia (CO-10). The card's focus is mental models. Full details at https://www.digitalbenefits.uk/deck/cornucopia/10

DBD Cornucopia is a practical tool for teams implementing welfare benefit e-government services. It assists system review to identify how digitisation choices affect claimants adversely.

#welfarebenefits #socialsecurity #socialprotection #egovernment #publicservices #uk #cornucopia

The Digital Benefits and Disbenefits Cornucopia croupier has dealt the Nine of Cornucopia (CO-9). The card's focus is notifications. Full details at https://www.digitalbenefits.uk/deck/cornucopia/9

DBD Cornucopia is a practical tool for teams implementing welfare benefit e-government services. It assists system review to identify how digitisation choices affect claimants adversely.

#welfarebenefits #socialsecurity #socialprotection #egovernment #publicservices #uk #cornucopia

The Digital Benefits and Disbenefits Cornucopia croupier has dealt the King of Cornucopia (CO-K). The card's focus is hiding complexities. Full details at https://www.digitalbenefits.uk/deck/cornucopia/K

DBD Cornucopia is a practical tool for teams implementing welfare benefit e-government services. It assists system review to identify how digitisation choices affect claimants adversely.

#welfarebenefits #socialsecurity #socialprotection #egovernment #publicservices #uk #cornucopia