This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "User:Dominic Chell"

From OWASP
Jump to: navigation, search
m (Creating user page with biography of new user.)
 
 
(One intermediate revision by the same user not shown)
Line 1: Line 1:
I have over 10 years industry experience, the majority of which has been working in security. I have also continuously maintained CHECK Team Leader status since 2007.
+
Security consultant, trainer and author with significant experience delivering engagements to financial, government and retail organisations.
  
I have significant experience in delivering consultancy to organisations in the financial, government and commercial sectors. In addition to consultancy, I have provided training courses to a variety of audiences, including at the BlackHat security conference in Las Vegas.
+
Notable achievements:
 +
* CHECK/CREST Team Leader since 2007
 +
* Lead author for the Mobile Application Hacker's Handbook (ISBN-10: 1118958500)
 +
* Founding director of MDSec
 +
* Subject matter expert for CompTIA Secure iOS Development examination
  
Whilst the majority of my work is performed under NDA, occasionally I dabble in research outside of work. Here are some of my findings:
+
Public speaking engagements:
 
+
* Breaking Secure Mobile Applications, HackInTheBox 2014 KL
CVE-2011-0204: Apple ImageIO TIFF Heap Overflow
+
* Breaking Secure Mobile Apps, BSides MCR 2014
CVE-2011-0194: Apple ImageIO TIFF Image Integer Overflow
+
* Practical Attacks Against Encrypted VoIP Communications, HackInTheBox 2013 KL
CVE-2011-1931: FFMpeg Out of Array Write in AMV Parsing
+
* iOS Application (in)Security, OWASP Manchester March 2012
CVE-2010-1845: Apple ImageIO PSD Image Memory Corruption
+
* Evaluating iOS Applications, OWASP Dublin February 2012
 
 
Further details can be found at:
 
http://packetstormsecurity.org/files/author/5950/
 
 
 
Specialties
 
Product assessment, web application testing, infrastructure penetration testing, mobile application assessment & software security evaluations.
 

Latest revision as of 14:40, 21 January 2015

Security consultant, trainer and author with significant experience delivering engagements to financial, government and retail organisations.

Notable achievements:

  • CHECK/CREST Team Leader since 2007
  • Lead author for the Mobile Application Hacker's Handbook (ISBN-10: 1118958500)
  • Founding director of MDSec
  • Subject matter expert for CompTIA Secure iOS Development examination

Public speaking engagements:

  • Breaking Secure Mobile Applications, HackInTheBox 2014 KL
  • Breaking Secure Mobile Apps, BSides MCR 2014
  • Practical Attacks Against Encrypted VoIP Communications, HackInTheBox 2013 KL
  • iOS Application (in)Security, OWASP Manchester March 2012
  • Evaluating iOS Applications, OWASP Dublin February 2012