Downloads

Übersicht

Diese Publikationen stehen Ihnen als pdf PDF Datei zur Verfügung:

   
2011 Dez Sophos Roadshow "Anatomy of an Attack": "Cloud Computing - Sonnenschein oder Donnerwetter?"
2011 Dez HTML5 Web Security
2011 Okt Compass Live-Hacking an der it-sa: VoIP im Visier
2011 Okt Compass Live-Hacking an der it-sa: Phishing
2011 Okt Compass Live-Hacking an der it-sa: Mobile Security
2011 Sep Beer-Talk # 2 - iPhone Security
2011 Aug BlackHat / Defcon 2011, Las Vegas - Field report by Compass
2011 Jul Beer-Talk # 1 - HTML5 Web Security
2011 Jun Swiss IT Leadership Forum 2011 - Cyberwar
2011 Jun Digicomp HackingDay 2011 - Cybercrime heute
2011 May SCS3 - IPv6 & Cyber Security - Alaa Al-Din Al-Radhi
2011 May SCS3 - Open Web Application Security Project - Antonio Fontes
2011 May SCS3 - Potential dangers of Activex attacks - Brian Mariani
2011 May SCS3 - Threats On Your Smartphone - Celil Ünüver
2011 May SCS3 - How to beat a dragon with a shark - Christian Beek
2011 May SCS3 - ZeuS MitMo: a real case of banking fraud through mobile phones - Daniel L. Creus
2011 May SCS3 - Achieving Low-Latency Security - Darren Turnbull
2011 May SCS3 - Social Engineering - “Because there is no patch for human stupidity” - Dave Wollmann
2011 May SCS3 - Data Breaches: Legal Obligations And Practices For Businesses - David Rosenthal
2011 May SCS3 - Corporate IT Forensic Readiness - Bruce Nikkel
2011 May SCS3 - Hunting Slowloris and Friends -Christian Folini
2011 May SCS3 - Collective Prediction in Digital Social Networks Through Discovery of Collaborative Innovation Networks - Peter A. Gloor
2011 May SCS3 - Exploiting SCADA Systems - Jeremy Brown
2011 May SCS3 - Application Security as a Team Effort - Jörg Ewald
2011 May SCS3 - iOS applications reverse engineering - Julien Bachmann
2011 May SCS3 - Obfuscated Malc0de Hunting with Emulator+Disassembler - Lee Ling Chuan
2011 May SCS3 - Is Switzerland under attack? - Marc Henauer
2011 May SCS3 - HTTP Parameter Pollution Vulnerabilities in Web Applications - Marco Balduzzi
2011 May SCS3 - I Control Your Code – Attack Vectors Through the Eyes of Software-based Fault Isolation - Mathias Payer
2011 May SCS3 - Modern Criminal Networks: Infrastructure and Tasks Segmentation of Today's Criminal Groups in Cyberspace - Mauro Vignati
2011 May SCS3 - Cyber Warfare Prediction - Daniel Ng (Ching Wa)
2011 May SCS3 - Cryptography: how to break it in practice if you must? - Pascal Junod
2011 May SCS3 - Botnet Resistant Coding - Rothschild/Greko
2011 May SCS3 - Auditing the Hacker’s Mind : wrong myths, real facts and the Hackers Profiling Project (HPP) - Raoul Chiesa
2011 May SCS3 - Attacks against governmental organizations and appropriate incident response procedures - Reto Inversini
2011 May SCS3 - Cookiejacking - Rosario Valotta
2011 May SCS3 - Relay Attacks on Passive Keyless Entry and Start Systems in Modern Cars - Srdjan Capkun
2011 May SCS3 - Fixing the Fundamental Failures of End-Point Security - Stefan Frei
2011 May SCS3 - DOM XssIdentificationand Exploitation - Stefano Di Paola
2011 May SCS3 - Strong Authentication in Web Application“State of the Art 2011” - Sylvain Maret
2011 May SCS3 - Reality check: 2011 Verizon Data Breach Investigations Report - Thijs Bosschert
2011 May SCS3 - HTML5 Web Security - Thomas Röthlisberger
2011 May SCS3 - Protecting Web Applications with Port Knocking - Yiannis Pavlosoglou
2011 Mar Records Managmement Konferenz - Cloud Security / Social Media
2011 Feb HEIG-VD Security Days - Social Engineering Attacks
2011 Mobilephone Security
2010 Nov W-jax, München - XML External Entity Attacks (XXE)
2010 Sept Compass Event - ASP.NET und ViewState Security
2010 Sept Compass Event - Bypassing Same Origin Policy für Mash Ups
2010 Sept Compass Event - Apple iOS 4 Privacy
2010 Sept Compass Event - Mobile Security
2010 Sept Compass Event - Windows Attack
2010 Feb MCTA - Workshop zum Thema "Mobile Security"
2009 Okt Compass Event - Security Evaluation des Crealogix CLX.Sentinel
2009 Okt Compass Event - Social Engineering Angriffe
2009 Okt Compass Event - Compass erweitert NMAP um SCTP
2009 Okt Compass Event - 0-day Exploits: Sind wir machtlos?
2009 Jul Die Cyberbüchse der Pandora
2009 Jun Social Engineering Test Cases
2009 Mai SCSII - Oracle Security
2009 Mai SCSII - Reverse Code Engineering
2009 Mai SCSII - WLAN Security
2009 Mai SCSII - VPN with Windows 7
2009 Mai SCSII - NFS
2009 Mai SCSII - Hacking Legal
2009 Mai SCSII - Anti-Virus Secrets
2009 Mai SCSII - ZFS
2009 Mai SCSII - Unix Security
2009 Mai SCSII - Lsrunase Supercrypt
2009 Mai SCSII - Observation Plugin
2009 Mai SCSII - Hacker Paragraph
2009 Mai SCSII - Internet Threats
2009 Mai SCSII - Raiffeisen E-Banking Security
2009 Mai SCSII - Windows Update
2009 Mai SCSII - Cybercrime Today
2009 Mai SCSII - FastFlux / ZeuS
2009 Mai SCSII - DECT Hacking
2009 Mai SCSII - DriveBy Infection
2008 Nov XSS Shell
2008 Nov Smartcard APDU Analysis
2008 Nov Teredo - Ipv6 Security
2008 Nov Vmware Device Driver Exploit
2008 Nov E-Banking Trends
2008 Nov Cross Site Request Forgery
2008 Okt Internet in China - The Great Firewall
2008 Aug Summary Blackhat / Defcon 2008
2008 Mai Malware Distribution
2008 Apr Web 2.0 Event - Slides
2008 Feb Summary Blackhat / Defcon 2007
2008 Feb Breaking TOR Anonymity
2007 Nov Hash Injection Attacke
2007 Okt Wireless Drive-By Hacking
2007 Okt DNS Attacken - Advanced Methoden
2007 Okt Verseuchung von Viren über E-Bay Hardware
2007 Okt Browser Plugins und Extensions - the Hackers View
2007 Okt Kerberos Session Hijacking Attacke
2007 Okt Tempest Attacke - Abhören des LCD Screen
2007 Aug Solaris10 into Active Directory Integration
2007 Jun U3 USB Stick (In-)Security
2007 Jan Universal PDF XSS
2006 Dez Hardening Checkliste Windows 2003 Intranet Basis
2006 Dez Hardening Checkliste Exchange 2003
2006 Dez Hardening Checkliste Windows XP
2006 Dez Hardening Checkliste IIS 6.0 im Intranet
2006 Dez Hardening Checkliste Microsoft SQL Server 2000
2006 Dez Hardening Checkliste ISA Server 2004 Intranet
2006 Dez Summary Blackhat / Defcon 2006
2006 Okt Skype Trojaner
2006 Okt BHO (Browser Helper Object) Angriff
2006 Okt Shellcode Proxying/CoreImpact
2006 Okt Oracle Datenbank Sicherheit
2006 Okt Static/Dynamic Payload Analysis
2006 Okt IE Fuzzing and Microsoft Incident Handling
2006 Jun Phishing-Frühwarnsystem
2006 Mai Ratgeber zu Solaris-Ermittlungen
2006 Mar Harddisk ATA Security
2005 Nov Time Stamping Authority
2005 Nov Terminal Server Break-Out
2005 Nov Advanced Phishing
2005 Nov MELANI
2005 Nov Hackerspuren in Web Applikationen
2005 Nov VoIP Angriffe
2005 Okt Forensik in E-Business-Anwendungen
2005 Jul Bedrohungen Web-Applikationen
2005 Feb Securing Wireless Networks
2004 Dez 24-Stunden-Spiel "Die Computer-Knacker"
2004 Nov Sicherheit bei automatisierten Windows Installationen
2004 Okt Covert Channel - Inside Out
2004 Okt Computerforensik und -kriminalität
2004 Aug .NET Basics & Security
2004 Apr Inside-Out Attacks
2004 Apr Spyware Analysis
2004 Apr Windows Evidence Gathering
2004 Apr Überwachung elektronischer Kommunikation
2004 Apr J2EE Trojaner
2004 Apr Windows 2003 - Security Hints
2004 Mar Chrooting Unix Services (Apache, MySQL, Tomcat)
2003 Sept Laptop Security
2003 Sept Kernel Hooks und Spy-Detection
2003 Aug Argus PitBull B1 Erläuterungen
2003 Jul Cross Site Scripting Attacken
2003 Jun TCP/IP Gender Ganger
2003 Mai Questions to Penetration Test
2003 Apr LASEC SSL Sicherheitslücke
2003 Mar Cross Site Tracing Schwachstelle in Web Anwendungen
2003 Mar Linux ptrace Sicherheitslücke
2003 Mar SSL Sicherheitslücke - Timing Attack
2003 Mar Präsentation zum Thema Security Assessment
2003 Mar Rechtliche Aspekte von Security Assessments
2003 Jan Finjan SurfinGate V5.6 Security Considerations
2003 Jan Session Fixation Schwachstelle in Web Anwendungen
2003 Jan Webservices Sicherheitsüberlegungen
2003 Jan VPN Gefahrenanalyse
2003 Jan Shatter Attack
2003 Jan Security von Wireless Networks
2002 Okt Java Datenstrom Inspection
2002 Okt File-Type Analyse (Content Filter)
2002 Jun Hardening Windows NT
2002 Feb Leitfaden Penetration Tests isb.admin.ch
2001 Jun Hardening Oracle
2001 Mar Hardening Solaris
2000 Okt Hardening WebSphere
1999 Nov Leitfaden Tiger-Team Services FGSEC

Aktuelles

HTML5 Web Security
07.12.11 - HTML5 Security Research Bericht

Review BlackHat/Defcon 2011
08.11.11 - Wie jedes Jahr waren auch heuer zwei Security Analysten der Compass Security AG an der BlackHat und Defcon in Las Vegas.

Oracle RDC Onsite XSS Vulnerability
18.10.11 - Compass Security hat eine Schwachtelle in ORACLE RDC ONSITE gefunden.

Kursprogramm - Neu iPhone & iPad Hands-On Kurs
06.10.11 - Erstmals wird der iPhone & iPad Compass Kurs in der Schweiz durchgeführt

it-sa 2011: Compass veranschaulicht IT-Bedrohungen in Live-Hacking-Demonstrationen
28.09.11 - Compass Security AG zeigt mit Live-Hacking-Demos auf der Fachmesse it-sa in Nürnberg neueste Angriffe auf iPhone und Mobile Devices. Besuchen Sie unseren Messestand in Halle 12, Stand 226.