Quantcast
Nitesh Dhanjani

https://twitter.com/nitesh_dhanjani

Author, speaker


Areas of Expertise:
  • IT strategy
  • security strategy
  • application security strategy
  • ethical hacking
  • cloud computing
  • virtualization
  • consulting
  • speaking
  • training
  • writing

Biography

Nitesh Dhanjani is a well known security researcher, author, and speaker. Dhanjani is currently Senior Manager at a large consulting firm where he advises some of the largest corporations around the world on how to establish enterprise wide information security programs and solutions. Dhanjani is also responsible for evangelizing brand new technology service lines around emerging technologies and trends such as cloud computing and virtualization.

Prior to his current job, Dhanjani was Senior Director of Application Security and Assessments at a major credit bureau where he spearheaded brand new security efforts into enhancing the enterprise SDLC, created a process for performing source code security reviews & Threat Modeling, and managed the Attack & Penetration team.

Dhanjani is the author of "Network Security Tools: Writing, Hacking, and Modifying Security Tools" (O'Reilly) and "HackNotes: Linux and Unix Security" (Osborne McGraw-Hill). He is also a contributing author to "Hacking Exposed 4" (Osborne McGraw-Hill) and "HackNotes: Network Security". Dhanjani has been invited to talk at various information security events such as the Black Hat Briefings, RSA, Hack in the Box, Microsoft Blue Hat, and OSCON.

Dhanjani graduated from Purdue University with both a Bachelors and Masters degree in Computer Science.

Dhanjani's personal blog is located at dhanjani.com.

Books

Hacking: The Next Generation Hacking: The Next Generation
by Nitesh Dhanjani
September 2009 (est.)
Print: $39.99

Network Security Tools Network Security Tools
by Nitesh Dhanjani , Justin Clarke
April 2005
Print: $34.95

Articles

Blog

Recent Posts | All Posts

Hack in the Box (Dubai) 2009 / Psychotronic(a) / Hacking the Psyche

March 30 2009

I will be presenting Psychotronica: Exposure, Control, and Deceit at the Hack in the Box Conference in Dubai (20th - 23rd April 2009). read more

Blame the Credit Card Franchise: Criminals on Amazon's EC2 (Elastic Compute) Cloud

March 11 2009

Amazon EC2 is an extraordinarily powerful infrastructure available to anyone with a stolen credit card. Even if someone is able to use the EC2 platform for a few hours with a stolen credit card, he or she will be able to initiate a vicious cycle that may become impossible to… read more

Gartner and the Pope

February 24 2009

The Gartner press release makes extraordinary claims on how much phishing costs businesses: $3.2 billion is not an estimate that should be taken lightly by anyone. Extraordinary claims require extraordinary evidence (quoting Carl Sagan). As I read through the Gartner press release, I felt that the claims were unsupported because,… read more

International Conference on Cyber Security 2009

January 04 2009

I'll be speaking at the International Conference on Cyber Security 2009 in New York (Jan 5 - 9). read more

How Terrorists May Abuse Micro-Blogging Channels Like Twitter

December 18 2008

In this article, I want to further the discussion on how micro-blogging channels may be leveraged by terrorist organizations to obtain real time surveillance and intelligence of their efforts. read more

Why Jerry Seinfeld Probably Cost Microsoft a Lot More than $10 Million

November 10 2008

In this article, I want put forth a case study to demonstrate how capturing feelings on the social web can allow companies to measure the reputation of their brand. read more

In Support of Science [and Tim]

November 04 2008

Venues such as O'Reilly are not likely to discuss politics or religion often. Yet, as scientists and technologists, when we do have something to say that addresses an important topic where we can offer reasoning and critical thought - lets not be shy about it. read more

Hacking the Psyche

November 03 2008

In this article/blog-entry, I want to persuade you of the real possibility and high probability that, in the very near future, remote entities will be able target people's on-line presence to capture and leverage their emotional states and feelings. There are some very extreme implications of this from a security… read more

Suddenly Psychic: Knowing Everything About Everyone

July 15 2008

During the next few months, I will be presenting a brand-new talk titled "Suddenly Psychic: Knowing Everything About Everyone" at various conferences around the world....Currently, this talk is scheduled debut at the Microsoft Blue Hat Conference [v8] in October, followed by Hack in the Box in Kuala Lumpur. read more

Safari Carpet Bomb

May 15 2008

I let Apple know that I'd like to discuss the 2 issues they won't be fixing with the security community and they let me know they are fine with it. read more

Amazon's Elastic Compute Cloud [EC2]: Initial Thoughts on Security Implications

April 27 2008

Based on my recent experience with Amazon's EC2, here are some initial thoughts (with bias on security). read more

Interview With [IN]Secure Magazine

April 22 2008

Issue 16 of [IN]Secure Magazine is available. Mirko Zorz interviewed me in this edition (Page 41). If you decide to read it, I'd be delighted to hear your thoughts and feedback. The magazine edition of the interview is much better looking and highly recommended (as are the other articles), but… read more

Be Secure, and You'll be Compliant

April 17 2008

Don't let a requirement like PCI drive your overall strategy. Understand your goals and needs, aim to be secure, and you will be compliant. Try the formula the other way around, and your strategy will be flawed, your security budget won't be big enough, you will struggle to keep up… read more

Black Hat Europe 2008

March 31 2008

I presented Bad Sushi: Beating Phishers at their Own Game (with Billy) at Blackhat Europe (Amsterdam) 2008 last week. I always enjoy doing this talk, and the feedback was quite positive. For more information, check out Nate's coverage of the conference... read more

The iPhone SDK Press Conference

March 10 2008

Apple may have a difficult time auditing applications to ensure they meet their criteria. What is the absolute definition of malicious in the given context? Malicious to whom? The end user, Apple, or AT&T? Perhaps all of the above. Now, how does Apple go about obtaining assurance whether a given… read more

Recent Posts | All Posts

Nitesh Dhanjani