Welcome!

Hello and welcome to my personal homepage. I'm a PhD student working at Hasso-Plattner-Institute, University of Potsdam. My research interests include IT-Security in general, Intrusion Detection Systems (IDS), Attack Graphs, as well as vulnerability research and attack techniques in specific. I'm currently with Prof. Dr. Ch. Meinel and his team to support the projects IDS@HPI, Lock-Keeper, and IPv6 Security.


Curriculum Vitae

2008 - to date PhD student with Prof. Dr. Christoph Meinel at Hasso-Plattner-Institute, University of Potsdam.

2003 - 2008 Study of Software Systems Engineering at Hasso-Plattner-Institute (HPI), University of Potsdam, Bachelor of Science (B.Sc.), Master of Science (M.Sc.) (Outstanding).

2002 - 2003 Civil service with Deutsches Rotes Kreuz (DRK).

2002 A-Levels (Abitur) at Albert-Schweitzer-Gymnasium Vetschau (Outstanding).


Publications

2011

Roschke, S., Cheng, F., Meinel, Ch.:
An Alert Correlation Platform for Memory-Supported Techniques
In: Journal of Concurrency and Computation: Practise and Experience, Wiley Blackwell, vol. 24, ISSN 1532-0634, 2011 (to appear).

Roschke, S., Cheng, F., Meinel, Ch.:
A New Correlation Algorithm based on Attack Graph
In: Proceedings of the 4th International Conference on Computational Intelligence in Security for Information Systems (CISIS'11), Springer LNCS, Torremolinos, Spain, pp. 58-67 (June 2011).

Cheng, F., Roschke, S., Meinel, Ch.:
An Integrated Network Scanning Tool for Attack Graph Construction
In: Proceedings of 6th International Conference on Grid and Pervasive Computing (GPC'11), Springer LNCS, Oulu, Finland, May 2011 (to appear).

Roschke, S., Cheng, F., Meinel, Ch.:
Modeling Alerts for IDS Correlation
In: Journal of Information Assurance and Security, Vol. 6, Issue 2, Dynamic Publishers Inc., Atlanta, GA 30362, USA, ISSN 1554-1010, pp. 98-105 (February 2011).

Roschke, S., Cheng, F., Meinel, Ch.:
BALG: Bypassing Application Layer Gateways Using Multi-Staged Encrypted Shellcodes
In: Proceedings of 12th IFIP/IEEE International Symposium on Integrated Network Management (IM'11), IEEE Press, Dublin, Ireland, May 2011 (to appear).

AlSa'deh, A., Cheng, F., Roschke, S., Meinel, Ch.:
IPv4/IPv6 Handoff on Lock-Keeper for High Flexibility and Security
In: Proceedings of 4th IFIP/IEEE Conference on New Technologies, Mobility and Security (NTMS'11), IEEE Press, Paris, France, pp. 1-6 (February 2011).

2010

Roschke, S., Cheng, F., Meinel, Ch.:
Using Vulnerability Information and Attack Graphs for Intrusion Detection
In: Proceedings of 6th International Conference on Information Assurance and Security (IAS'10), IEEE Press, Atlanta, United States, pp. 104-109 (August 2010).

Roschke, S., Cheng, F., Meinel, Ch.:
A Flexible and Efficient Alert Correlation Platform for Distributed IDS
In: Proceedings of 4th International Conference on Network and System Security (NSS'10), IEEE Press, Melbourne, Australia, pp. 24-31 (September 2010).

Roschke, S., Willems, Ch., Meinel, Ch.:
A Security Laboratory for CTF Scenarios and Teaching IDS
In: Proceedings of 2nd International Conference on Education Technology and Computer (ICETC'10), IEEE Press, Shanghai, China, pp. 433-437 (June 2010).

Roschke, S., Ibraimi, L., Cheng, F., Meinel, Ch.:
Secure Communication Using Identity Based Encryption
In: Proceedings of 11th IFIP Conference on Communications and Multimedia Security (CMS'10), Springer LNCS 6109, Linz, Austria, pp. 256-267 (May 2010).

Cheng, F., Tran, T.-D., Roschke, S., Meinel, Ch.:
A Specialized Tool for Simulating Lock-Keeper Data Transfer
In: Proceedings of 24th IEEE Advanced Information Networking and Applications (AINA'09), IEEE Press, Perth, Australia, pp. 182-189 (April 2010).

Roschke, S., Cheng, F., Meinel, Ch.:
An Advanced IDS Management Architecture
In: Journal of Information Assurance and Security, Vol. 5, Issue 1, Dynamic Publishers Inc., Atlanta, GA 30362, USA, ISSN 1554-1010, pp. 246-255 (January 2010).

2009

Cheng, F., Roschke, S., Schuppenies, R., Meinel, Ch.:
Remodeling Vulnerability Information
In: Proceedings of 5th Inscrypt Conference (Inscrypt'09), Springer LNCS 6151, Beijing, China, pp. 324-336 (December 2009).

Roschke, S., Cheng, F., Meinel, Ch.:
Intrusion Detection in the Cloud
In: Proceedings of Workshop Security in Cloud Computing (SCC'09), IEEE Press, Chengdu, China, pp. 729-734 (December 2009).

Roschke, S., Cheng, F., Tran, T.-D., Meinel, Ch.:
A Theoretical Model of Lock-Keeper Data Exchange and its Practical Verification
In: Proceedings of 6th IFIP International Conference on Network and Parallel Computing (NPC'09), IEEE Press, Gold Coast, Australia, pp. 190-196 (October 2009).

Roschke, S., Cheng, F., Schuppenies, R., Meinel, Ch.:
Towards Unifying Vulnerability Information for Attack Graph Construction
In: Proceedings of 12th Information Security Conference (ISC'09), Springer LNCS 5735, Pisa, Italy, pp. 218-233 (September 2009).

Roschke, S., Cheng, F., Meinel, Ch.:
An Extensible and Virtualization-Compatible IDS Management Architecture
In: Proceedings of 5th Information Assurance and Security Conference (IAS'09), IEEE Press, vol. 2, Xi'an, China, pp. 130-134 (August 2009).

Cheng, F., Roschke, S., Meinel, Ch.:
Implementing IDS Management on Lock-Keeper
In: Proceedings of 5th Information Security Practice and Experience Conference (ISPEC'09), Springer LNCS 5451, Xi'an, China, pp. 360-371 (April 2009).

2008

Sebastian Roschke:
A VM-Compatible IDS Management System for IDS-Deployment in Lock-Keeper
Master Thesis at Hasso-Plattner-Institute for Software Systems Engineering, University of Potsdam, November 2008.


Practical Experience

2010 Internship at Google, Inc. as Software Engineer in Security

2010 - to date Security audit and risk assessment for a European energy provider

2009 - to date Projects with the German Federal Office for Information Security (BSI), such as co-authoring "Metrics for SOA Security" and "SOA Security Compendium"

2008 - 2010 Projects with the Police of Brandenburg: Infrastructure Analysis, Study on Virtualization, Forensic Analysis

2009 - 2010 Host of bi-weekly hands-on security sessions

2006 - 2008 Student assistant at HPI, Research & Development for the Lock-Keeper, a high level network security device implementing physical separation

2005 - 2006 Project with Siemens AG Switzerland - Civil an National Security, "Secure Database Replication by Lock-Keeper"

2004 - 2006 Founding member of "Respontec GmbH" - EU sponsored startup with focus on IT-Security (IDS/IPS)

2000 - 2005 Voluntary work as network adminstrator for 2nd Elementary School


Programming Java, Python, C

Tools & Systems Linux (Gentoo), metasploit, vim, eclipse, gdb, wireshark, ettercap, john, radare, Prelude-IDS, snort, samhain, iptables, nmap, amap, thcrut, nessus, etc.


Teaching Activities

2011

Cops and Robbers - CTF Scenarios (Seminar)

2010

Internet Security - Weaknesses and Targets (Lecture by Prof. Dr. Ch. Meinel)

Network Security in Practise (Seminar)

Challenges of IPv6 Security and Applications (Seminar)

Cops and Robbers - CTF Scenarios (Seminar remote support)

2009

Internet Security - Weaknesses and Targets (Lecture by Prof. Dr. Ch. Meinel)

Network Security in Practise (Seminar)

Security Lab - Cryptography in Practise (Seminar)

Cops and Robbers - CTF Scenarios (Seminar)

2008

Internet Security - Weaknesses and Targets (Lecture by Prof. Dr. Ch. Meinel)


Music and More

As I really like guitar playing, in particular Jazz guitar, I decided to put some of my recordings and videos on this web site:

Impro on II-V-I - this video recording is part of a performance by the lyrics group (Sprecherkreis) at University of Potsdam in 2008.

Nardis - this demo recording was done in 2006 with Ramona Geissler on bass and Dana Leichsenring on vibraphone. In this line of recordings, we managed to do several tracks, such as Freddie Freeloader, Have you met Miss Jones, and Black Orpheus.


Contact

sebastian.roschke (at) hpi.uni-potsdam.de

PGP Key Information:
KeyID: D8B5998F
Fingerprint: 07E5 F856 BF87 8FCC 3FBB 5D8C 7836 3555 D8B5 998F