Skip to main content

WB-D-3 — Admin API flooded to lock out legitimate administration

Component: Wallet Backend. Mitigations: Operator network segmentation reduces exposure; no dedicated rate limit on admin port. Action: Add deployment-level rate limiting/WAF policy for admin endpoint where exposed.

PropertyValue
SectionDenial of Service
Ownerplatform

Mapped Controls

ControlTitle
SID-HARD-02Input Validation and Injection Prevention
SID-HARD-03Network Segmentation (Separate Server Ports)

Source: STRIDE analysis (April 2026), architecture/stride-threat-model.md