Disclaimer

News & Events

Informatica 08, HES-So, Fribourg

4. – 6. März 2008. Im Rahmen der vom Bund zur Förderung des Informatik-Nachwuchses ins Leben gerufenen Informatica 08, finden an diesen Tagen an der Hochschule für Technik und Architektur in Fribourg Workshops zum Thema «Sicherheit im Internet» statt.

Als Partner der HES-So wird Dreamlab die beiden Vorträge und Workshops in deutscher Sprache abhalten.

In diesen 2-stündigen Workshops soll den Studenten vermittelt werden, wie man seinen PC schützt und sich angesichts der Gefahren des Internets korrekt verhält. Während des ersten Teils des Workshops wird erklärt, wie man sich vor Angriffen aus dem Internet zu schützen. Danach wird in einem praktische Teil gezeigt, wie man seinen Laptop und seine Anwendungen so einrichtet, dass er optimalen Schutz gewährleistet ist.

OpenExpo 2008, BEA, Bern

Am 12. und 13. März 2008 öffnet die OpenExpo in Bern zum vierten Mal ihre Tore. Die grösste Schweizer Konferenz und Messe zu Open Source Software organisiert durch den Verein /ch/open und die topsoft ist seit Herbst 2007 erneut gewachsen und internationaler geworden: In den 51 Fachreferaten werden neben Schweizer Experten zahlreiche Redner aus Deutschland, Österreich, Italien, Frankreich, Dänemark, Belgien, England und den USA zu begrüssen sein.

Auch Dreamlab wird in Vertretung durch Philipp Egli, Head Auditor und Geschäftsleitungsmitglied, am Eröffnungstag um 11.30 Uhr ein Fachreferat zum Thema «Certified Secure Web – Take the Best Out of Two» halten.

Certified Secure Web verbindet zwei Open Source Methodologien zur Quantifizierung operativer Sicherheit mit dem Ziel, eine zuverlässige und reproduzierbare Grundlage für die Zertifizierung der Sicherheit von Webapplikationen zu schaffen.

topsoft 08

Daneben wird Dreamlab mit einem eigenen Messestand im Rahmen der gleichzeitig stattfindenden «Topsoft» präsent sein und hier die umfangreichen Schulungen und Produkte im IT-Security Bereich vorstellen.

Max Moser at BlackHat Briefings 2008

Max Moser, head of Dreamlab Winterthur and senior security analyst, gives a speech at the BlackHat Briefings 2008 on how to crack 27Mhz based wireless keyboards. He is one of the first Swiss to speak on a BlackHat Briefing. The Black Hat Briefings bring together the brightest minds from government agencies and global corporations with some of the world's most respected hackers. This year's BlackHat Briefing takes place in Washington D.C from February 18th to February 21st. Max Moser will reveal unpublished details regarding the cracking of Logitech devices in his speech.

Dreamlab will publish the slides in the news section after the end of the conference.

Review: OSSTMM Evening Talk with Pete Herzog on January 22nd 2008 at the University of Bern
Pete Herzog
Pete Herzog talks about perfect security

OSSTMM 3.0 and the RAV (Risk Assessment Value) – these were the main subjects of an event organized by Dreamlab Technologies Ltd. The event was booked out and judging from the reaction of the audience the event was a great success.

ISECOM founder Pete Herzog held a highly interesting key note about the new open security manual OSSTMM 3.0. For the first time ever in public he revealed details about the new RAV in OSSTMM 3.0 making IT security now even more measurable and applicable.

After his key note a panel discussion took place. Along with Pete Herzog the following experts participated therein:

  • Prof. Dr. Bernhard Hämmerli, Lucerne University of Applied Science, Vize Präsident ISSS
  • Giampaolo Trenta, CISO, Bank Julius Bär, Zürich
  • André Ringger, IT-Security Solution Architect, Credit Suisse, Zürich
  • Pietro Brossi, Academic Director, Zurich University of Applied Science, Winterthur
  • Christoph Spycher, IT-Security Manager, Bâloise, Basel

The discussion was further fueled up by inspiring and provocative contributions from the audience.

For all that missed out on the event Dreamlab provides you with the keynote slides and video as well as further downloadable information concerning the new RAV:

Dreamlab at LIFT 2008 in Geneva, Switzerland
LIFT Conference 2008

Nicolas Mayencourt and Philipp Egli, members of the executive board of Dreamlab Technologies AG, promote our newest research results at LIFT 2008:

Interlocks is an application which aggregates and visualizes connections between Italian companies and their members of the board. Within seconds complex relations can be queried and visualized. LIFT takes place simultaneously in Geneva (Switzerland) and Seoul (South Korea) from February 6th to 8th 2008. The focus of the conference is on new technologies and their impact on our society.

OSSTMM Evening Talk with Pete Herzog on January 22nd 2008 at the University of Bern

The success of OSSTMM – Open Source Security Testing Methodology Manual – as a methodological approach to problem solving is based on three principles: Cross-plattform applicability, observance of all industry standards and regulations and RAV (Risk Assessment Value). RAV makes risks measurable and therefore also calculable.

World first: Dreamlab Technologies Switzerland cracks wireless keyboard encryption

Wireless keyboards and mice are becoming an increasingly common sight on desks. However, wireless hardware carries large hidden risks. Dreamlab Technologies has shown that it is possible to capture and decrypt keystrokes, meaning that user names, passwords, bank details or confidential correspondence can be very easily eavesdropped.

For further infromation please read our whitepaper and watch our video demonstration.

XSIO – Cross Site Image Overlaying
Our employee Sven Vetsch, who's responsible for web technologies security at Dreamlab Switzerland, wrote a paper about an new attack type he named «XSIO – Cross Site Image Overlaying». Sven Vetsch shows how to perform a XSIO attack and details the impact such an attack would have. For more information please read the paper:
Dreamlab in the Media
Sven Vetsch, Security Tester and Adviser at Dreamlab Technologies, published an article on web application security in the current Netzwoche (Vol.30 2007). The article gives a basic introduction to web application security and to the main attack vectors. On September 19th Sven Vetsch speaks in the name of the OWASP Switzerland Local Chapter at the Security Zone 2007. His speach on web application security testing takes place at the event hall 550 in Zurich-Oerlikon.
IT-Security Bulletin August 2007
This is the first «IT-Security Bulletin» ever published by the experts of Dreamlab Technologies SA. Based on mutual request of our customers for more informations about actual threats and dangers in IT-Security we decided, to put together a overview of the actual situation and future prospects. This Bulletin will be reviewed at regular intervals and then automatically distributed to our mailing list. If you would like to benefit from this informations too, please send us anemail.
Dreamlab Germany on tour
This month Carola Kummert and Arne Blankerts are speakers on the «Free and Open Source Conference 2007» in St. Augustin (Bonn, Germany). They have two talks about XUL, the Mozilla XML Userinterface Language. The conference itself is focussed on Open Source and Free Software, so the session panel was starting on technical issues and doesnt end up by the of some lawyer's talk about current legal situation in Germany («Hacker's article», patent situation, «archiving must» of web sites, ...).
Dreamlab in the Media
Our colleague Carola Kummert published an article on XSS attacks and howto elude them. The article appeard in the current UpTimes issue (Vol.22007), a journal brought out by the German Unix User Group (GUUG). Carola Kummert is head of education for Dreamlab Technologies in Germany.
New Dreamlab Office in Winterthur, Switzerland
Today on July 1st Dreamlab Technologies opened a new branch office in Winterthur, Zurich. This expansion is part of Dreamlab Technologies global and regional expansion strategy and guarantees an optimal support service for our clients in Eastern Switzerland. The new office is managed by Max Moser, Senior Security Expert and Adviser. Max Moser is supported by Philipp Schrödel, Security Expert and Adviser.
Dreamlab in the Media
Endre Bangerter and Nicolas Mayencourt published an article on quantification of operational security in the current Digma issue, Vol.2 2007. Digma is a quarterly journal for data law and information security, published by Schulthess, Zurich.
Tweakfest 2007
The Digital Culture Association has arranged the Tweakfest 2007 with the festival theme «Metaverse». At the three day festival for media culture & digital lifestyle from May 24–26, 2007 in Zurich, Switzerland, the global digital avantgarde met with icons like Steve Wozniak, Co-Founder of Apple Computer. At the Tweakfest the most innovative creatores, researchers and managers of Switzerland convene to take part in various debates and presentations. Dreamlab was also participating in this event in the form of a speak by Sven Vetsch who talked about the Open Web Application Security Project in his position as the actual leader of the OWASP Local Chapter Switzerland.
LinuxTag 2007 Strong Appearance

LinuxTag 2007 opens its doors from May 30 to June 2, 2007 at Berlin Expo Center under the Funkturm with the goal to invite users and experts to learn more about the potential of Linux, Open Source, and Free Software. Our colleagues Carola Kummert and Arne Blankerts manage Dreamlab’s Appearance at the LinuxTag in Berlin. Not only to provide our wide range of interesting open Source products, like the hybrid IDS Prelude, the security testing framework BackTrack, the Open Source Security Testing Methodology Manual (OSSTMM) and the security expert educational courses OPST / OPSA and OPSE but also as speakers about new web 2.0 Technologies.

Web 2.0- Applikationen mit JSON
Carola Kummert (Dreamlab Technologies AG), Arne Blankerts (Dreamlab Technologies)
June 2 , 15.00 – 16.00 / Saal 3 Berlin

Create cross- platform web applications with XUL
Carola Kummert (Dreamlab Technologies AG), Arne Blankerts (Dreamlab Technologies)
June 2, 17.00 - 18.00 / Saal 3 Berlin

CeBIT 2007 – BackTrack wins PC Professionell Innovation Award
Dreamlab congratulates its colleague Max Moser on the PC Professionell innovation award 2006/2007. Every year, the German testing magazine honours innovations and products which represent extraordinary inventions, innovative thinking and courage. The Linux live distribution BackTrack of Max Moser and his team at remote-exploit.org wins in the category Open Source, securing the prize against two of the most successful Linux distributions, PrOOo-Box and Ubuntu!
Dreamlab Member of the W3C HTML Working Group
Sebastian Schnitzenbaumer, Security Developer at Dreamlab, was appointed member of the W3C HTML Working Group. The Working Group will maintain and produce incremental revisions to the HTML specification, which includes the series of specifications previously published as XHTML version 1. Both XML and \«classic HTML» syntaxes will be produced. Dreamlab is a member of the World Wide Web Consortium W3C.
Dreamlab promotes OSSTMM and Asterisk at the OpenExpo 2007, Berne, Switzerland
Dreamlab was invited to promote its services and products at the OpenExpo 2007, a Swiss event for free and open source software which took place in Berne on March 7th and 8th. Thomas Bader, trainer at Dreamlab Technologies, gave a speech on «Security Audits in compliance with OSSTMM». The Open Source Security Testing Methodology Manual is the first worldwide open standard for security testing and assures quantifiable, consistent and repeatable audit results. The OSSTMM is edited by ISECOM, of whom Dreamlab is the affiliate for Switzerland, France and Germany. André Roth, solution architect at Dreamlab Technologies, discussed advantages and possibilities of VoIP telephony using the open source software Asterisk.
Dreamlab congratulates the BFH-TI Biel on the Swiss Technology Award
Dreamlab congratulates its IT security Know-How partner BFH-TI Biel on the Swiss Technology Award 2007. The team around Professor Michael Höckel, head of Fuel Cell Department, and the CEKA Ltd. receive the exceptional price «Preserve Resources» for the first commercial Swiss fuel cell stack. The second laureate is AXSionics, a spin-off company of the BFH-TI Biel, who receives the Swiss Technology Award for its biometric Internet Passport. Both projects will be demonstrated at the CeBIT 2007 in Hannover.
Dreamlab expands to Hamburg, Germany
With the beginning of the year 2007 Dreamlab Technologies opened a new office in Hamburg, Germany. The new Dreamlab office is managed by Carola Kummert and Arne Blankerts, both specialized in IT-Security, PHP, XML and XUL internet-based implementations.
Dreamlab at CeBIT 2007, Hannover, Germany
Dreamlab represents ISECOM at the CeBIT 2007 from March 15th to 20th in Hannover, Germany. Visit us at Germany's leading business event for the digital world and learn more about ISECOM.
Max Moser joins Dreamlab
Dreamlab has won over Max Moser to work with Dreamlab as Security Developer. Max Moser is the editor of BackTrack, the world most downloaded security Live-CD. BackTrack is open source based and contains many security related tools such as sniffers, enumeration tools, exploits, scanner and fuzzers. Max Moser is part of our team since December 1st 2006.
Course Schedule Updated
Our OSSTMM Security Professional Certification Course Schedule for 2006 has been updated.
Register now and join the hands-on Training for Security Professionals.
Learn more about our courses.
Dreamlab at the Orbit-iEX ‘06, Zurich, Switzerland
From May 16th to 19th 2006 Dreamlab will be present at the Solution Park of IX Europe. Meet us there and learn more about Open Standard-based Security Solutions.
Dreamlab at EUROSEC, Paris, France
Dreamlab and Swisscom Fixnet will talk about their success story of operative security excellence at EUROSEC, 4th of April 2006.
CCC 05, Chaos Computer Club Conference, Berlin, Germany
Dreamlab Security Researchers will participate at the CCC 05 to discuss the latest trends of IT Security applied.
Dreamlab has moved to larger offices
Dreamlab has moved to larger offices at Monbijoustrasse 36 to have more space.
CCC 04, Chaos Computer Club Conference, Berlin, Germany
Dreamlab participates at the CCC 04 to get latest insights in technology trends of IT Security.
Workshop «Linux Installation Day», HP Interex .CH, Zurich, Switzerland
As Linux experts DreamLab has been invited by HP Interex.CH to perform a workshop at the Linux Installation Day.
CISO Summit, Noga Hilton Hotel Geneva, Switzerland
DreamLab has represented ISECOM at the Chief Information Security Summit (CISO) in Geneva. MIS Training’s annual CISO Executive Summit is an intensive learning and networking experience that addresses the unique challenges faced by today’s CISO.
Colloque «Intelligence Informationelle 2004», Paris, France
DreamLab is invited by the Institut en Recherche Intelligence Informationelle IR2I to take part a the colloque «Intelligence Informationelle 2004» at the Institut national des Hautes Etudes en Sécurity INHESI in Paris, France.
A-IS: Speech at the «33. Sitzung Ausschuss Informatiksicherheit», Berne, Switzerland
DreamLab has been invited by the «Informatiksicherheitsorgan Bund ISB», to present the Institute of Security and Open Methodologies ISECOM and the Open Source Security Testing Methodology Manual OSSTMM.

Current news

Valid XHTML 1.1
OSSTMM ISECOM Certified Secure Web W3C Member PreludeIDS Partner OWASP Member