This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "User:Dominic Chell"

From OWASP
Jump to: navigation, search
m (Creating user page with biography of new user.)
 
m
Line 1: Line 1:
I have over 10 years industry experience, the majority of which has been working in security. I have also continuously maintained CHECK Team Leader status since 2007.
+
Security consultant, trainer and author with significant experience delivering engagements to financial, government and retail organisations.
  
I have significant experience in delivering consultancy to organisations in the financial, government and commercial sectors. In addition to consultancy, I have provided training courses to a variety of audiences, including at the BlackHat security conference in Las Vegas.
+
Notable achievements:
 +
- CHECK/CREST Team Leader since 2007
 +
- Lead author for the Mobile Application Hacker's Handbook (ISBN-10: 1118958500)
 +
- Founding director of MDSec
 +
- Subject matter expert for CompTIA Secure iOS Development examination
  
Whilst the majority of my work is performed under NDA, occasionally I dabble in research outside of work. Here are some of my findings:
+
Public speaking engagements:
 +
- Breaking Secure Mobile Applications, HackInTheBox 2014 KL
 +
- Breaking Secure Mobile Apps, BSides MCR 2014
 +
- Practical Attacks Against Encrypted VoIP Communications, HackInTheBox 2013 KL
 +
- iOS Application (in)Security, OWASP Manchester March 2012
 +
- Evaluating iOS Applications, OWASP Dublin February 2012
  
CVE-2011-0204: Apple ImageIO TIFF Heap Overflow
+
Training engagements:
CVE-2011-0194: Apple ImageIO TIFF Image Integer Overflow
+
- The Mobile App Security Bootcamp, 44Con 2014
CVE-2011-1931: FFMpeg Out of Array Write in AMV Parsing
+
- The Mobile App Security Bootcamp, AppSecEU 2014
CVE-2010-1845: Apple ImageIO PSD Image Memory Corruption
 
  
Further details can be found at:
+
Specialties: mobile security, C/C++/Java code review, reverse engineering, web application testing, infrastructure penetration testing, vulnerability research and exploit development
http://packetstormsecurity.org/files/author/5950/
 
 
 
Specialties
 
Product assessment, web application testing, infrastructure penetration testing, mobile application assessment & software security evaluations.
 

Revision as of 14:37, 21 January 2015

Security consultant, trainer and author with significant experience delivering engagements to financial, government and retail organisations.

Notable achievements: - CHECK/CREST Team Leader since 2007 - Lead author for the Mobile Application Hacker's Handbook (ISBN-10: 1118958500) - Founding director of MDSec - Subject matter expert for CompTIA Secure iOS Development examination

Public speaking engagements: - Breaking Secure Mobile Applications, HackInTheBox 2014 KL - Breaking Secure Mobile Apps, BSides MCR 2014 - Practical Attacks Against Encrypted VoIP Communications, HackInTheBox 2013 KL - iOS Application (in)Security, OWASP Manchester March 2012 - Evaluating iOS Applications, OWASP Dublin February 2012

Training engagements: - The Mobile App Security Bootcamp, 44Con 2014 - The Mobile App Security Bootcamp, AppSecEU 2014

Specialties: mobile security, C/C++/Java code review, reverse engineering, web application testing, infrastructure penetration testing, vulnerability research and exploit development