For more information about our portfolio, visit the official page on gnucitizen.com.

GNUCITIZEN is driven by a passion for innovation and information security. Our portfolio acts as a reference of our current and future work and it illustrates our unique culture and style.

GNUCITIZEN Products

The GNUCITIZEN work goes beyond our public research projects and speaking engagements.

» Blogsecurify

Blogsecurify is a division of GNUCITIZEN. The initiative was established to provide social media security services through our free automated testing engine. The Blogsecurify team is also engaged to deliver quality content on issues concerning social media technologies.

» Netsecurify

Netsecurify is a division of GNUCITIZEN. The initiative was established to provide network security services through our free automated testing engine. The service is still in private-beta.

» Websecurify

Websecurify is a division of GNUCITIZEN. The initiative was established to provide a fee web application security framework for automated and manul penetration testing. The service is still in private-beta.

» Secapps

Secapps serves as an application directory of all online tools which the GNUCITIZEN team has built over the years.

» Securls

Securls serves as an information security intelligence tool, combining news and articles from the best information security resources online.

GNUCITIZEN has authored several industry-recognized information security papers and presentations.

» Client-side Security

This paper was presented in Black Hat Europe 2008, Hack in the Box Dubai 2008, Black Hat USA 2008 and Hack in the Box KL 2008. This paper describes numerous techniques for attacking Clients-side technologies. The content of the paper is based on the research that has been conducted over the past year, before publication, by the GNUCITIZEN team.

» Cracking into Embedded Devices

The presentation covers cracking into embedded devices by exploiting vulnerabilities present on default software running on the target device. The presentation is focused on vulnerabilities that can be exploited remotely.

» For my next trick... hacking Web2.0

This paper outlines some of the dangers of Web2.0 by combining fictional stories with real technology. Each story begins with a prologue, which introduces the problem, and finishes with a conclusion, which summarizes the attack techniques that are described within the story's context.

» Exegesis of Virtual Hosts Hacking

This is the first paper written on the topic of virtual hosts hacking. It covers basic skills such as passive discovery techniques and (almost) stealth active discovery techniques. It also presents possible scenarios of exploitation.

Our blog is one of the leading information security resources on the Web today.

Printed Publications

GNUCITIZEN has been involved in the publication of several industry-recognized information security books.

» Google Hacking for Penetration Testers Second Edition

Google Hacking for Penetration Testers, Volume 2 shows the art of torquing Google used by security professionals and system administrators to find sensitive information and self-police their own organizations.

 

» Cross Site Scripting Attacks: XSS Exploits and Defense

The book provides examples of XSS malware and demonstrates real cases where XSS is a dangerous risk that exposes internet users to remote access, sensitive data theft, and monetary losses.

 

Conferences and Public Speaking Engagements

GNUCITIZEN members are constantly invited to present on some of the world's largest information security events.

» Black Hat

The Black Hat Briefings are a series of highly technical information security conferences that bring together thought leaders from all faces of the infosec world.

» HITB - Hack in The Box

Hack in the Box (HITB) is one of the leading information security conferences in the Middle East and Asia.

» OWASP - Open Web Application Security Project

The Open Web Application Security Project (OWASP) is a worldwide free and open community focused on improving the security of application software.

» CONFidence

CONFidence is a well-established information security event in Poland. The event brings toghether some of the best minds in the information security field in Europe.

Media Coverage

GNUCITIZEN's work has been featured in many popular electronic and printed media outlets.

For more information regarding our constantly expanding portfolio, please contact us or visit our cutting-edge blog.