I performed a variety of odd research assistant jobs. I penetration tested some commercial products, like the Sharp Zaurus SL5500. I wrote a vulnerability report for that PDA, and was cited in the NIST publication "Guidelines on PDA Forensics" for my findings. I also pen-tested a network security appliance for a local company (ShoreGroup). They were rather happy with the advice, and continue to award SAI with numerous contracts to this day.
I also wrote some software for SELinux policy analysis. Some other folks in the lab worked on a relational data model for implementing the policy. I helped by making packages and developing a front-end web-based (webmin) gui for the policy engine, based on work by Hitachi SK....
Posted @ 12:11AM, June 16, 2007
by K. Reid Wightman | Permalink
Answer this question | See all answers for this question
|