Artikel und White Papers
Die Fachkenntnis unserer Mitarbeiterinnen und Mitarbeiter ist sehr gefragt: Sie gehören internationalen Kommissionen an, halten Vorträge auf Konferenzen und schreiben Bücher und Fachartikel.
Werfen Sie einen Blick auf die Liste von Vorträgen und Veröffentlichungen.
| Thema |
Event/ Medium |
Autor/ Sprecher |
|---|---|---|
| atsec Newsletter Germany 09/2010 |
Newsletter | various |
| Untrusted Developers - Code Integrity in a Distributed Development Environment |
White Paper | Cavness, Kurth, Mueller |
| atsec Newsletter US 07/2010 |
Newsletter | various |
| How Does Your Company’s Identity Security Compare with that of the Federal Government? |
ISSA Meeting | Holt |
| Are You Prepared to Successfully Pass a PCI-DSS and/or a FISMA Certification Assessment? |
SHARE Conference | Pattinson |
| Making Sure of Security: Contrasting FISMA and ISO/IEC 27001 |
White Paper | Pattinson |
| atsec Newsletter US 02/2010 |
Newsletter | various |
| Payment Card Industry Compliance For Large Computing Systems |
White Paper | various |
| atsec Newsletter Germany 12/2009 |
Newsletter | various |
| Beyond Common Criteria’s Mutual Recognition |
White Paper | Ochel |
| KVM Security Comparison |
White Paper | Mueller |
| Secure Network Zones |
ISSE 2009 | Wimmer |
| Evidence based Evaluations Chances and Challenges |
10th ICCC | Kurth |
| Trusting Virtual Trust |
10th ICCC | Powell |
| Taking White Hats to the Laundry: How to Strengthen Testing in CC |
10th ICCC | Vassilev |
| An Attack Surface based Approach to Evaluation |
10th ICCC | Kurth |
| Beyond Common Criteria’s Mutual Recognition |
White Paper | Ochel |
| atsec Newsletter Germany 08/2009 |
Newsletter | various authors |
| Assurance in Implementation Correctness of Cryptographic Algorithms Gained Through the NIST Cryptographic Algorithm Validation Program |
Whitepaper | Pattinson |
| Heiter bis Wolkig |
iX - 5/2009 | Mueller |
| Common Criteria: National Validation Scheme Differences: CCEVS, CSEC and BSI |
Whitepaper | Pattinson, Hake, Krummeck, Persson |
| Secure Coding Guidelines |
White paper | Shiralkar, Grove |
| Penetration Testing in der Praxis |
Talk at FH BRS | Wienzek |
| FIPS 140-2 DTR XML Templates |
ZIP archive | Masino |
| Introducing Assurance Measures for Security Target |
9th ICCC, Korea | Mao |
| Integration of Architectural Requirements into the CC Structure | 9th ICCC, Korea | Kurth, Pingel |
| Measuring the Effectiveness of a Security Development Process | 9th ICCC, Korea | Kurth, Grimm |
| Designing the Trusted Service Bus for EAL5 |
9th ICCC, Korea | Ochel |
| Comparison of CC Functionality & FISMA 800-53 Controls |
White paper | Fiona Pattinson |
| Using SCAP to Detect Vulnerabilities |
White paper | S. Weingart |
| Personal Brokerage of Web Service Access |
IEEE Security and Privacy, vol. 5, no. 5, pp. 24-31, Sept/Oct, 2007 | A. Vassilev |
| Smart cards and the holy grail of Internet security |
Keynote presentation at the International symposium on Recent Developments in Cryptography and Information Security, August 29-31, 2007 | A. Vassilev |
| Security benefits from OS virtualization: Real or Virtual? |
White paper | A. Vassilev |
| The futility of secrets? | Opinion, Information Security, p.10, March 2007 | A. Vassilev |
| Do Federal Security Regulations help? | Opinion, Information Security, p.10, January 2007 | A. Vassilev |
| You say potayto, I say potato: Bridging PKI standards with a .NET smart card |
E-Smart 2006, September, 2006, Sophia-Antipolis, French Riviera, France | A. Vassilev |
| Microsoft Smart Card Cryptographic Support with Cryptoflex .NET Smart Card | Cartes 2005 International Conference, Paris, France | A. Vassilev |
| Authentication Framework for Real People |
E-Smart 2004, September 22-24, 2004, Sophia-Antipolis, French Riviera, France | A. Vassilev |
| Examining the impact of .NET on smart card middleware | Software Architecture and Design Conference, Houston, Texas, September 8-10, 2003 | A. Vassilev |
| Authentication Framework for Smart Cards,” Lecture Notes In Informatics (Gesellschaft für Informatik Edition) | BIOSIG 2003: Biometrics and Electronic Signatures vol. P-31, 51-59, 2003. ISBN 3-88579-360-1 | A. Vassilev |
| Physical Security Devices for Computer Subsystems: A Survey of Attacks and Defenses 2008 |
Whitepaper | Weingart |
| Operating System Evaluations - What security functionality is expected |
8th ICCC, Rome | Kurth, Farrel (IBM) |
| How To Eat A Mammoth |
8th ICCC, Rome | Krummeck |
| Economical Use of Formal Methods |
8th ICCC, Rome | Yi Mao |
| Secure System Design |
8th ICCC, Rome | Pattinson |
| CC in the Real World |
8th ICCC, Rome | Pattinson |
| XML-based Security Targets for tool-supported evaluations |
8th ICCC, Rome | Ochel |
| CC quick reference |
atsec document | Pattinson |
| Dumm gelaufen - Stromausfall am Wochenende |
Behoerdenspiegel, Germany | atsec GmbH |
| A quick quide to the Linux evaluations |
White Paper | Mueller, Pattinson |
| Certifying Information Security Management Systems |
White Paper | Fiona Pattinson |
| Wireless Intrusion Detection und Prevention Systeme – Ein Überblick |
BSI Kongress 2007, Bonn | Hofherr |
| Wireless Intrusion detection |
14. DFN-CERT Workshop "Sicherheit in vernetzten Systemen" | Hofherr |
| Common Criteria Certification in China: A comparison with the schemes of the CCRA |
atsec website | Kurth, Liu, Ochel, Pattinson, Li |
| How to Write Site Security Targets |
7th ICCC Conference, Lanzarote | Krummeck |
| Applying the Draft CC Version 3.0 to Linux - Experience from a Trial Evaluation |
7th ICCC Conference, Lanzarote | Kurth |
| Addressing consumer needs to increase the demand for Common |
7th ICCC Conference, Lanzarote | Ochel |
| IT Security Assurance and Common Criteria |
TickIT International | Pattinson |
| WLAN Sicherheit | Book, Heise Verlag | Hofherr |
| atsec publishes Content Description of PAS 56:2003 "Guide to business continuity management" |
atsec website | Rauer |
| Efficient CC Evaluations |
atsec website | Mueller |
| How Useful are Product Security Certifications for Users of Products? |
ZISC Information Security Colloquium SS 2005 | Kurth |
| Information Security Assurance - Why there's no single solution |
Information Storage + Security Journal | Pattinson |
| Deriving Security for Mixed IT System Architectures from Evaluated Products |
6th International Common Criteria Conference, Tokyo, 2005 | Ochel |
| "Aktuelle Erfahrungen mit der Evaluierung von Open Source Software" | Kurth | |
| Garantiert sicher - Evaluierung von IT-Sicherheit. |
iX Magazin für professionelle Informationstechnik, 05/2005 | Ochel |
| "BS 7799-2 and the CC" Supporting the Business of Software Development |
5th International Common Criteria Conference, Berlin, 09/2004 | Pattinson |
| The Evaluated Configuration - Defining a user-friendly Target of Evaluation |
5th International Common Criteria Conference, Berlin, 09/2004 | Mueller, Ochel |
| Increased information flow needs for high-assurance composite evaluations |
Second IEEE International Information Assurance Workshop, 2004 | Kurth |
| Security Assurance: Smart Cards and the Bigger Picture |
CardTech Secur tech, 2004 | Pattinson |
| Debian on Handheld Computers |
UKUUG Linux 2003 Conference, Edinburgh, Scotland, 2003 | Weidner |
| PKI soll sichere Kommunikation gewährleisten |
Magazin fuer professionelle Informationstechnik, 09/2001 | Ochel, Weissmann |
| e-business Risk Management with Tivoli Risk Manager |
IBM Redbook, 2001 | Wimmer |
| Revision control using RCS and vic |
Internal Training, 2001 | Weidner |
| Unix tools and software compilation |
Internal Training, 2001 | Weidner |
| Reflections on Trusting Trusted Third Parties | 23rd NISSC, Baltimore, 2000 | Kurth |
| KRISIS - Key Recovery in Secure Information Systems | The Open Group Security Program Group Meeting, Amsterdam, 1998 | Kurth |
| Business Use of Cryptography |
The Copenhagen Hearing, 1998 | Kurth |
| Falsch Verbunden - Gefahr durch DNS-Spoofing [dangers of DNS spoofing] |
c't, 10/1997 | Weidner |
| The Future of Electronic Commerce | 20th NISSC, Baltimore, 1997 | Kurth |
| Kabelsalat: Ethernet für Einsteiger |
Linux Magazin, 05/1996 | Weidner |
| Integration of Digital Signatures into the European Business Register | 19th NISSC, Baltimore, 1996 | Kurth |
| Security Assurance in Information Systems | S. K. Katsikas and D. Gritzalis (ed), Information Systems Security: Facing the Information Society of the of the 21st Centrury, Chapman & Hall, 1996 | Kurth |
| Proceedings of ESORICS `96 | ESORICS, Rome, 1996 | Kurth |
| Linux for Workgroups |
Linux Magazin, 08/1995 | Weidner |
| Security Assurance Issues for TTP Services | TEDIS EDITT Workshop, Barcelona, 1995 | Kurth u.a. |
| The TMach Experience | 18th NISSC, Baltimore, 1995 | Kurth |
| "Der Weihnachtsmann kommt nicht" (Software selbst installiert) | Linux Magazin, 12/1994 | Weidner |
| "Emacs-Zaubereien: GNU Calc" |
Linux Magazin, 11/1994 | Weidner |
| "Emacs-Zaubereien: gcc und gdb" | Linux Magazin, 10/1994 | Weidner |
| Security Evaluations in Practice | Panel, ESORICS, 1994 | Kurth |
| Apparent Differences Between the US TCSEC and the European ITSEC | 14th Nat'l Computer Security Conf., Washington, 1991 | Kurth |
| Formale Spezifikation und Verifikation - Ein Überblick | VIS, 1991 | Kurth |
| Security Apects in CALS | CALS Europe, 1990 | Kurth |
| Paper Output Labeling in a Dedicated System Running under MVS, Proceedings of the | 8th NCSC, Gaithersburg, 1985 | Kurth |
| Problem areas in electronic signatures |
7. Deutscher Präventionstag, Düsseldorf | Ochel |
| The AIX Survival Guide |
Addison-Wesley | Siegert |
