Security Researcher and Reverse Engineer
Greater Boston Area
Security Researcher and Reverse Engineer
Greater Boston Area
(Self-Employed; Myself Only; Computer & Network Security industry)
October 2005 — Present (3 years 10 months)
• Provide security evaluations for client networks.
• Develop new attack and evasion techniques for client security software products.
• Reverse engineer third-party software to identify unknown security vulnerabilities.
• Provide analysis and exploits for published vulnerabilities.
• Provide analysis and neutered versions of viruses, worms, and malware.
(Privately Held; 201-500 employees; Computer & Network Security industry)
2005 — 2006 (1 year)
• Reverse engineer Malware and Spyware for use in creating removal signatures and identifying new functionality.
• Aided in development of new detection and removal procedures for emerging Malware and Spyware threats.
• Created a test suite for QA to verify detection and removal procedures.
• Perform competitive analysis on products and technologies for future integration into SpySweeper.
• Contributed to published papers including “The State of Spyware”.
(Public Company; 10,001 or more employees; CSCO; Computer Networking industry)
May 2004 — April 2005 (1 year)
• Verified the security effectiveness of the Cisco Security Agent (CSA) against new exploits, Malware and hacker
threats.
• Created, modified and reverse engineered viruses, worms and Malware.
• Analyzed new vulnerabilities and attacks on Windows, Linux, CSA and other software applications.
• Developed proof of concept and commercial grade exploits for vulnerabilities.
• Developed and analyzed intrusion prevention system evasion techniques.
• Developed automated exploit and regression testing software.
• Managed server running honeyd and Snort, which was used to detect infected computers.
• Wrote test plans and documentation for all testing performed.
(Privately Held; 1-10 employees; Computer & Network Security industry)
August 2003 — May 2004 (10 months)
• Penetration testing and vulnerability development on all internal security products.
• Identified and fixed various weaknesses in web applications, firewall access control lists, VPN implementations
and operating system vulnerabilities.
• Developed hardened servers based on various Linux distributions and Microsoft Windows platforms for clients and
in-house use. Implemented many security features such as Intrusion Detection/Prevention Systems, mandatory
access control lists, Kernel patches, custom firewalls, file integrity checkers and other open source or custom
tools.
• Secured variety of services such as dns, ftp, ssh, Apache, Microsoft IIS, Active Directory and Exchange.
• Developed future products, which included a secure mail and web proxy, for various clients including an ISP.
(Privately Held; 51-200 employees; Computer & Network Security industry)
October 2003 — October 2003 (1 month)
• Participated in the 'Hacker Wargame Research Project’.
• Breached the security of three Microsoft Windows 2000 Servers (an IIS server, a SQL server, and an Exchange
Server) as part of a cognitive research study.
Blackhat