Hacker movements: Murphy joins Apple; Caceres to Matasano

LAS VEGAS - On the heels of Google's hire of browser hacking whiz Michal Zalewski comes news that another well-known vulnerability researcher is moving over to the vendor side.

Matthew Murphy, an outspoken hacker who is credited with several major flaw discoveries, has confirmed he is joining Apple as a product security engineer.

At Apple, Murphy will work on security response when vulnerabilities are found in Apple products and also with product teams on secure coding practices. The Murphy hiring is a bit of a coup for Apple, coming at a time when external hackers are aggressively looking to expose flaws and weaknesses in the company's Mac OS X and other product lines.

Murphy will also help improve the company's relationship with his peers in the hacking community.

Separately, former Core Security product manager Max Caceres has landed on his feet at New York-based consulting firm Matasano Security. Dennis Fisher reports that Caceres will be director of research and development at Matasano.

Matasano, headed by Dave Goldsmith and Thomas Ptacek, specializes in penetrating testing and security consulting for enterprise clients. The company counts Microsoft and Mozilla among its clients.

  • In related news, iPhone infects Windows machines

    Why not? Apple infected their own iPods with a Windows virus. However, the problem with using off the shelf viruses is that most people are protected against them before you can ship your device. It makes far more sense to create your own virus, implant it in the iPhone, infect your customers who [b]dare[/b] to use an OS other than OSX, and then blame Microsoft for it! That is what Murphy's real job is going to be.
      • Well...

        Microsoft's mice have always been ok. But then, that makes sense because they expect people to point and click forever and ever.
      My job is exactly as Ryan described. Thanks for playing.

      - Matt Murphy
  • Sooner or later, hackers graduate ...

    ... and have to get a job too!
    M Wagner
  • Good move on Apples behalf, good decision

    It would stand to reason that anyone able to hack into Mac's system would have to have a technical ability that proves his capability which a resume would find lacking. I think this was a very smart move on Apples behalf as it shows they have the flexibility to reward those that are capable of hacking their software instead of dragging them into court which solves and accomplishes little. Much like drug addicts in Holland, they are helped and treated so they are able to contribute to society. Over here, they throw them in jail at a higher cost to taxpayers, they get no help and little in the way of positive rehabilitation. This is why they come out and resume their ongoing threats to society instead of contributing to it.