SOURCE: Trustwave

July 15, 2008 09:57 ET

Members of Trustwave's SpiderLabs to Deliver Briefings at Black Hat 2008

Company Experts to Present FLEX, AMF 3 and BlazeDS: An Assessment and Meet the Owner of a Real Hacked Company -- Forensic Analysis

CHICAGO, IL--(Marketwire - July 15, 2008) - Trustwave, the leading provider of on-demand data security and payment card industry compliance management solutions to businesses and organizations throughout the world, announces that three security experts will deliver briefings at Black Hat 2008. The presentations will be delivered by members of SpiderLabs, the advanced security team at Trustwave responsible for incident response and forensics, ethical hacking and application security tests.

FLEX, AMF 3 and BlazeDS: An Assessment

--  When: August 6, 2008; 3:15 p.m. - 4:30 p.m.
    
--  Where: Caesars Palace Casino and Hotel, Augustus 3 & 4
    
--  Who: Application security experts Jacob Carlson, senior security
    engineer at Trustwave, and Kevin Stadmeyer, application security consultant
    at Trustwave.
    
--  Description: Adobe FLEX with BlazeDS offers developers a streamlined
    application development paradigm, allowing them to create rich Internet
    applications with little exertion. However, ease of implementation often
    results in incomplete engineering. In this presentation, Carlson and
    Stadmeyer offer their assessment of the FLEX and BlazeDS application
    architectures as well as detailed examination of the Action Message Format
    version 3. Developers and administrators will be provided clear examples of
    how to do things wrong, how to do them right and explain exactly how each
    component works internally.
    
    While little information is available in the field regarding a FLEX
    application, Trustwave's security experts will share the knowledge
    they've gained in migrating towards a Flex application environment.
    Additionally, the briefing will provide information to both security
    assessors and developers about a technology that is soon to be
    prevalent, but is not yet widely understood.
    

Meet the Owner of a Real Hacked Company -- Forensic Analysis

--  When: August 7, 2008; 5:45 p.m. - 6:05 p.m.
    
--  Where: Caesars Palace Casino and Hotel, Palace Ballroom Salon 2
    
--  Who: Information security expert Mark Shelhart, Forensic Practice
    Manager at Trustwave.
    
--  Description: Shelhart will introduce attendees to a real business
    owner that was compromised by credit card hackers. The owner will tell his
    story, followed by information by the forensic investigator that worked the
    case. Details of what the attacker specifically did, along with EnCase
    screenshots, will be provided. Additionally, the business owner will
    comment on what the security compromise meant to him, his family and his
    business. With over 14 years of experience in information security,
    Shelhart has expertise in investigating system and network compromises and
    can share information that can only be found through experience.
    

"Black Hat is the definitive conference for security researchers, with advanced technical topics focusing on new security attacks evolving and developing now, as well as, new cutting edge attack countermeasures and detection techniques," says Robert J. McCullen, chairman and CEO of Trustwave. "Our organization is proud to have three of our security experts speak at Black Hat, proving Trustwave is constantly staying ahead of advanced issues facing security experts today."

About Black Hat

The Black Hat briefings are a series of highly technical information security conferences that bring together thought leaders from all facets of the infosec world -- from the corporate and government sectors to academic and even underground researchers. The environment is strictly vendor-neutral and focused on the sharing of practical insights and timely, actionable knowledge. Black Hat remains the best and biggest event of its kind, unique in its ability to define tomorrow's information security landscape.

About Trustwave

Trustwave is the leading provider of on-demand and subscription-based information security and payment card industry compliance management solutions to businesses and government entities throughout the world. For organizations faced with today's challenging data security and compliance environment, Trustwave provides a unique approach with comprehensive solutions that include its flagship TrustKeeper® compliance management software and other proprietary security solutions. Trustwave has helped more than 30,000 organizations -- ranging from Fortune 500 businesses and large financial institutions to small and medium-sized retailers -- manage compliance and secure their network infrastructure, data communications and critical information assets. Trustwave is headquartered in Chicago with offices throughout North America, South America, Europe, Africa, China and Australia.

Contact Information

  • MEDIA CONTACT:
    Michelle Genser
    Trustwave
    Email Contact
    312-873-7288