KeesCook

Differences between revisions 6 and 7
Revision 6 as of 2006-10-01 00:13:12
Size: 4458
Editor: sites
Comment: reorg, links
Revision 7 as of 2006-10-01 00:44:20
Size: 5055
Editor: sites
Comment: future
Deletions are marked like this. Additions are marked like this.
Line 38: Line 38:
In the near-time, I want to start doing manual code audits of as much of Ubuntu as I can get my arms around. I want to help define and implement protected execution environments. Some of the task has already been done ([http://en.wikipedia.org/wiki/NX_bit NX bit], GccSsp), but there will always be work in other areas (["SELinux"], AppArmor, [http://www.grsecurity.net/ grsecurity]). Security is a moving target.

In the long-term, I want to contribute to developing code analysis tools (both static and dynamic), so that more software can be examined for common problems automatically.

About Me

Hi! I work for Canonical as an Ubuntu Security Engineer. My work is to stay alert, curious, and creative while keeping one step ahead of the bad guys. When I'm not working, I've been known to play with MythTV and generally poke around at video formats.

Community

I've only recently become involved in the Ubuntu community, but have been using Ubuntu since Hoary. (I had been a Debian user for a few years prior to Ubuntu.) As the lead sysadmin at [http://www.osdl.org/ OSDL], I chose Ubuntu as the default distro for all new servers, replaced most of the aging RedHat systems, and kept the visitor lobby stocked with fresh Ubuntu CDs. Nothing beats having a Debian system with a regular release cycle.

More recently, I have been involved in:

Outside of Ubuntu, I'm involved in other communities. I am a [http://kernel.org/ kernel.org] admin, where I work on maintaining the mirror network for the Linux Kernel, as well as handling user accounts. I am a lurker/janitor for the [http://inkscape.org/ Inkscape] project, through which I'm also involved in the [http://openclipart.org/ Open Clip Art Library] and [http://creativecommonsopen.com/ Creative Commons]. I have [http://conferences.oreillynet.com/cs/os2006/view/e_sess/9252 presented] for two years running at [http://conferences.oreillynet.com/os2006/ OSCON], and I attend [http://defcon.org/ DefCon] annually. This year, with the rest of my team, we won the [http://nopsr.us/ctf2006/ Capture The Flag] security competition.

Software

Future

I have been an advocate of free software since I first understood what the GPL meant. I love tweaking and patching and helping make things better; I've always had a knack for getting software to behave in unexpected ways. I think finding security problems is fun, and I want to spend my time hunting down and squashing those problems where ever I can find them. Free software already has a strong security reputation, and I want to help keep it that way.

In the near-time, I want to start doing manual code audits of as much of Ubuntu as I can get my arms around. I want to help define and implement protected execution environments. Some of the task has already been done ([http://en.wikipedia.org/wiki/NX_bit NX bit], GccSsp), but there will always be work in other areas (["SELinux"], AppArmor, [http://www.grsecurity.net/ grsecurity]). Security is a moving target.

In the long-term, I want to contribute to developing code analysis tools (both static and dynamic), so that more software can be examined for common problems automatically.


CategoryHomepage

KeesCook (last edited 2011-09-23 15:08:24 by kees)