* Hi, my name is Matteo G.P. Flora, currently living in Milano, Italy.*
Security Evangelist, Forensic Examiner
and New Media Consultant
Most of the time I work as a high level strategic consultant where
expertise in various fields, such as Computer Forensics, Secure Programming, Privacy and
deep knowledge of the Online Communities, is a critical factor in planning and achieving.
I help Companies to find Success
helping them in all the fields that concern Security, New Media, Social Networks, Intelligence,
Crawling, Web Positioning. And often delivering 360° Strategic Consulting for their projects.
If your Business needs a new Web Agency and you can't choose one, if you feel your contractor in Security is cheating you, if you
need to know more about this "LongTail" and "Social Networks" thing, if one of your employees turns out to be a betrayer, and more in general if you need advice and expertise in the field of Security and Web, you can contact me for an appointment and evaluate if my solutions are better or worse than yours. They're often quite good and my contacts in various fields might intrest you...
I'm the guy of "Mediaset vs. Youtube"
even if that is not my greatest achievement in Computer Forensics. It's simply the most famous ;)
Some of my works divided by area of expertise:
[ FORENSICS EXAMINER ]
I've been Forensic Consultant for Italian Police, Guardia di Finanza and various other Police Depts. I've been working as a consultant in the Cirio/Parmalat scandal, as well as the famous "Casa di Cura Santa Rita" scandal.
I normally (and quite often) work as a Consultant in Forensics (consulente di parte) and I've served in some score of causes, some of them as "Mediaset vs. Google" became quite famous.
[ NEW MEDIA CONSULTANT]
I've been serving as Strategic Consultant and/or IT Consultant in many realities, such as: BNL, MPS, Walt Disney Interactive, Mediaset, CityGroup, 77Agency, Buongiorno Vitaminic, Glaxxo Smith Kline, ENI.
Other projects involved Gruppo Soa, Mg-Art, Todomodo, AstraZeneca, Aktive Reply, Fiat Auto.
And let's not forget MissioneSogni.
[ SECURITY EVANGELIST ]
in addition to releasing Vulnerability Reports and Advisories, I've been helping Companies with Security Audits since 1999.
My clients include, within the boundary of NDA possibility to citation, Poste Italiane, EDS, ENI, Spike Reply, Mediaset.
[ ENTERPRENEUR ]
I've been financing directly the studies of OpenMeditation.org and I've been developing the client-based online encryption and storage portal Ncrypt.it.
I'm also shareholder in Fluupe, the Airline Fare Compairson Website.
In addition I'm about to launch BloggerMafia, a blog intelligence and crawling tool.
[ PANELIST AND COLUMNIST ]
I'm frequently panelist in conferences (I've held more than a hundred of them) enjoying speaking about Corporate and Personal Security, Control Evasion, Anonymity and Privacy.
In spare time I tend to publish advisories and to catch some nasty XSS and SQL Injection. It's a hobby like another.
I'm columnist for the leading Italian IT magazine PuntoInformatico, keeping a weekly appointment of "(in)security".
[ OTHER STUFF ]
In the very scarce free time I try without success to play Golf, spend time Meditating, try to be a Reiki Master, stroll around in my Fixed Gear bikes. And I've ever since lost my hope in playing Guitar.
And I'm an enthusiast about photography. Mainly portraits.
Oh, and I own a snake. A Lemon Pastel ball python.
* IF YOU FEEL YOU'D LIKE TO TALK ABOUT BUSINESS AND OPPORTUNITIES *
why don't you CONTACT ME
I'm located in Milan (Italy), willingly to travel, often in Rome and London, and you can contact me either on mobile phone (+39-347.967643zero) or mail (mf at matteoflora dot com).
In the meanwhile you can take a look my italian blog at LastKnight.com or
you can find all contacts, including IMs at the Contacts Page.
Latest Conferences
- Hacking & Computer Crime: Economics Of Malware
IctPark 2007,Convegno Nazionale di Informatica Professionale, 19 Maggio 2007
- Googletistic: Analizing AdWords and AdSense usage in the Web
Firenze, E-Privacy 2007, 19 Maggio 2007 (presented by Alessio Orlandi)
- Censura Online: Il Grande Fratello Italiano
Milano, HackDay 2007 Mensa Italia, Milano 13 Aprile 2007
- Eludere i Controlli di Polizia - Analisi dello status della censura web italiana
Milano, InfoSecurity 2007, 8 Febbraio 2007 -
[slides] -
[video]
- Economics Of Malware
Roma, Modena, Brescia, Landesk Technology Tour 2002, 23, 24, 25 Gennaio 2007 -
[slides]
- Crittografia: Sopravvivere ad uno Stato di polizia
Università degli Studi di Firenze, dipartimento di Ingegneria, Firenze 16 Novembre 2006
- Ma l'OpenSource è veramente Comunista?
Università degli Studi di Firenze, dipartimento di Ingegneria, Firenze 17 Novembre 2006
- Biometria e Furto di identità Digitale. Un Case Study sul Fingerprint Forging
SMAU E-Academy 2006, Milano 16 Ottobre 2006
- Phishing: dalla parte dell'attaccante
Convegno "Reati Informatici: le nuove frontiere del Crimine", Camera Penale del Triveneto e Circolo dei Giuristi Telematici, Venezia, 26 Marzo 2006
- Spyware, dalla parte dell'attaccante
E-Privacy 2006, Palazzo Vecchio, Firenze 15 Maggio 2006
- Opportunità e necessità della Crittografia in ambito privato e Corporate
OpenExp 2006, Verona Fiere 30 Settembre 2006
- WEB 2.0: Filosofia e Tecnologia del nuovo paradigma del Web
Incontro di coordinamento tecnologie presso Università degli Studi di Milano, dipartimento di Didattica, Milano, 14 Febbraio 2006
- Big Brother: Sicurezza e Privacy in ambito Corporate
Convegno Nazionale Associazione Informatici Professionisti, Roma, 19 Aprile 2006
- Problemi di Identità ed Identificazione dei soggetti Commerciali in Rete
Convegno "Dalla Lex Mercatoria alla Lex Electronica", Santa Margherita Ligure, 6 Maggio 2006
- Hacking 196: Opportunità e necessità della Sicurezza Informatica
Camera Penale del Triveneto, Verona, 24 Febbraio 2006
- Biometria e furto di Identità Digitale: case study
Convegno "Reati Informatici e attività di Indagine", Centro Studi di Diritto Penale Europeo e Circolo dei Giuristi Telematici, Varenna, 20 Gennaio 2006
- Il phishing: un fenomeno in aumento", Convegno
Archiviazione Sostitutiva e nuove Tecnologie di Comunicazione", Learning Resource Associate, Milano, 12 Giugno 2005
- L'implementazione delle tecnologie RFID
Convegno "Tecnologia RFID", Learning Resource Associate, Milano, 2 Dicembre 2004
- I Love You, serata con Virus...
Conferenza "Sicurezza, Privacy e Virus", Mensa Italia - Milano, 11 marzo 2004
Latest Advisories
- 0x70x02 - 2007-03-31: Poste italiane
XSS Js injection and frame injection - NO PUBLIC DISCLOSURE (management contact)
- 0x70x04 -2007-03-30: San Paolo
XSS Js injection - NO PUBLIC DISCLOSURE (management contact)
- 0x70x03 - 2007-03-29: Vodafone 190
XSS Js injection - NO DISCLOSURE (tech rep contact)
- 0x70x01 - 2007-03-29: Libero.it & Infostrada.it
XSS Js injection, SQL Injection - FULL DISCLOSURE
- 2007-03-28: Libero.it
XSS Js injection - FULL DISCLOSURE
- 0x70x08 - 2007-03-31: Poste Italiane
XSS Js injection and frame injection - NO PUBLIC DISCLOSURE (management contact)
- 0x70x09 - 2007-04-01: Pilatus Aurcraft
SQL injection and XSS Js Injection - NO PUBLIC DISCLOSURE (management contact)
- 0x70x0a - 2007-04-01: Farchioni.it
Remote File Inclusion - NO PUBLIC DISCLOSURE (management contact)
- 0x70x0b - Arianna Search Engine
Open Redirection - To Be Released
- 0x70x0c - Libero AdServer
Open Redirection - To Be Released
- 0x70x0d - Libero Ad Server
Arbitrary Redirection - To Be Released
- 0x70x0e - ??? Bank
XSS Js Injection - To Be Released
- 0x70x0f - ??? Bank
XSS Js Injection - To Be Released
- 0x70x010 - OSS Legal Software
Multiple XSS Js Injection & Information Desclosure - To Be Released
- 0x70x011 - Bank Group
XSS Js Injection - To Be Released
- 0x70x012 - Comune di Milano
XSS Js Injection & IFRAME inclusion - To Be Released
- 0x70x013 - Comune di Milano (second)
XSS Js Injection & IFRAME inclusion - To Be Released
- 0x70x014 - Corriere della Sera
XSS Js Injection & IFRAME inclusion - To Be Released
- 0x70x015 - ZeusNews
XSS Js Injection - To Be Released
- 0x70x016 - La Repubblica
XSS Js Injection & IFRAME inclusion - To Be Released
Copyright 2008, Matteo G.P. Flora. All rights reserved.