CSAW - CyberSecurity Competition 2011

Judges

2011 Judges

Renaud Deraison, Chief Research Officer, Tenable Network Security

Mr. Deraison is known in the global security community as the father of the world-renowned Nessus Vulnerability Scanner. His original creation, Nessus, celebrated its 10th anniversary in 2008 and is considered the de-facto standard for vulnerability scanning worldwide.

At Tenable, Renaud is responsible for driving all vulnerability, configuration and event and log research. In addition, Renaud is instrumental in the design of Tenable's Unified Security Monitoring enterprise solution.

Prior to Tenable, Mr. Deraison was the primary author and visionary of the Nessus Vulnerability Scanner. Mr. Deraison released the first version of Nessus in the spring of 1998 at the ripe age of 17. He worked for SolSoft, and founded his own computing security consulting company, "Nessus Consulting S.A.R.L." Under Renaud's leadership, Nessus has won numerous awards, including the 2002 Network Computing "Well Connected" award and PC Magazine's 2003 "Open Source Product of the Year" award. Mr. Deraison also is an editorial board member of the Common Vulnerabilities and Exposures Organization, has presented at a variety of security conferences including Black Hat and CanSecWest and has had his work published in several magazines and books.
 

Dan Guido, iSEC Partners | https://www.isecpartners.com/
Dan Guido is a Security Consultant at iSEC Partners, where he specializes in incident response, application security and penetration testing. Before joining iSEC, Dan worked for the Federal Reserve System’s incident response team, where he developed and ran a threat intelligence program to report on current trends in cybercrime, threats to payment systems and nation-state cyber espionage activities.

In addition to his work at iSEC, Dan is an adjunct faculty member at NYU:Poly, where he teaches a graduate computer science course in penetration testing and vulnerability analysis. He has presented his experiences teaching at information security conferences such as SOURCE Boston and SummerCon.

Dean De Beer, Principal, zero(day)solutions | zerodaysolutions.com

Dino Dai Zovi, Principal, Trail of Bitshttp://trailofbits.com/
Dino Dai Zovi, currently an independent security consultant and researcher, has been working in information security for over 9 years with experience in red teaming, penetration testing, software security and information security management. Mr. Dai Zovi is also a regular speaker at information security conferences, having presented his independent research on memory corruption exploitation techniques, 802.11 wireless client attacks and Intel VT-x virtualization rootkits over the last 10 years at conferences around the world including DEFCON, Black Hat and CanSecWest. He is a co-author of the books "The Mac Hacker's Handbook" (Wiley, 2009) and “The Art of Software Security Testing” (Addison-Wesley, 2006). In 2008, eWEEK named him one of the 15 Most Influential People in Security. He is perhaps best known in the information security and Mac communities for winning the first PWN2OWN contest at CanSecWest 2007. 

Erik Cabetas, Director of Information Security @ an NYC e-commerce startup http://erik.cabetas.com
Erik has a decade of Information Security experience. He was part of the winning team for DEFCON CTF in 2003. As a CSAW CTF judge he is looking to award points for out-of-the-box thinking and complete and total ownage of the CTF applications and servers.

 

Marcin Wielgoszewski, Gotham Digital Science http://www.gdssecurity.com/

Marcin Wielgoszewski is a Security Consultant at Gotham Digital Science LLC, specializing in software security, penetration testing and secure SDLC training. Marcin most recently spoke at Black Hat USA and DEFCON, as well as SummerCon earlier this year. In addition, he has presented at the OWASP NY/NJ Metro Chapter.
 

 

Stephen Ridley, Matasano Securityhttp://www.dontstuffbeansupyournose.com
Stephen Ridley is a Senior Researcher at Matasano Security LLC, specializing in reverse engineering and software security. Prior to Matasano, Stephen worked at McAfee as a founding member of the Security Architecture research group. Before that, Stephen did reverse engineering and software vulnerability research in a "skunkworks" team at a leading U.S. Defense and Intelligence contractor. He is privately credited with vulnerability discoveries in popular COTS packages as well as open-source software. Stephen has written for several trade magazines and been quoted in publications such as "Wired" and "Security Focus." He has also taught reverse engineering and software security to companies from the Fortune 500 and to Military and Defense agencies both domestic and abroad. He has most recently been invited to speak at ReCon, SyScan Singapore, EuSecWest (Netherlands) and Black Hat Vegas on his recent research on evading and reversing software Sandboxing technologies. Stephen currently lives in Manhattan, New York.

Ryan Seu, Facebook

Ryan is a Security Engineer at Facebook where he splits his time between hardening Facebook's ever-expanding infrastructure and handling various security incidents around the company.

In his previous life, Ryan worked to secure Barnes & Noble Inc. from payment card breaches and prior to that, he worked at United Parcel Service as a network security engineer. Ryan is CISSP certified and holds a BS in Electrical Engineering from Cornell University.