Services

Security Assessment

The ultimate goal of any security assessment discipline must be to enhance the effectiveness and efficiency of an organisation's computer system controls, through an increased awareness of its vulnerabilities.

Compliance

BELLUA helps its client ensure compliance of systems with organisational security policies and implement standards such as ISO/IEC 27001:2005 (formely known as BS7799-2:2005), ISO/IEC 17799, ISO 20000/BS15000.

Managed Security

With BELLUA Incident Response service, your information systems can be secured against malicious or criminal activity, computer virus, break-ins, theft of data, sabotage, etc.

News & Events

Bellua Cyber Security Asia 2006 Press Release

JAKARTA, - 8 August 2006 – From 30th to 31st August 2006, the second annual information security & hacking conference in Asia will take place in Jakarta, Indonesia at the Jakarta Convention Center.

Bellua Cyber Security Asia 2006 is endorsed by the Ministry of Communication and Information of Republic Indonesia.

BCS 2006 will also focus on discussion on implementation of information security in government/public sector, especially on current initiatives by GoI KOMINFO in securing e-Government development in Indonesia.

The co-operation between BCS 2006 and KOMINFO (Directorate General of Telematics) is realised through a discussion forum during the conference to discuss implementation of information security policy to support multi-party efforts in national development, specifically in the ICT sector.

For the second consecutive year in Indonesia, the conference will put together various number of internationally recognized experts in the security community as well as leading members of the Indonesian technology and security industry. The conference is also expected to add depth and understanding of security issues in the public sector: technical challenges facing the public authorities as well as providing a secure public infrastructure.

The event will open with the Minister of Communications and Information, Bpk. DR. Sofyan Djalil, delivering his keynote speech.

“The increasing complexity of telecommunication infrastructure with the advent of 3G, GPRS, VoIP and SMS/VAS applications leads to many further opportunities for attackers. The Banks and Telcos used to be “closed environments”, it isn’t really the case anymore.”, says one of the speakers, Emmanuel Gadaix, founder and leader of the Telecom Security Task Force.

Over 30 speakers from numerous disciplines will join Bellua Cyber Security Asia 2006 to discuss present and future information security issues through an intensive series of workshops, presentations, technical sessions and demonstrations. “BCS is all about knowledge transfer and information sharing, our speakers aren’t coming to Jakarta to sell products!”

The conference will be spread across 2 concurrent tracks focusing on the business and technical aspects of information security.

The business tracks will be the meeting of minds to discuss the challenges of securing an organization from a process approach. The technical track in the conference will present current technologies, bleeding-edge techniques as well as experience sharing among the international speakers. In addition, the conference will also unveil in Jakarta some new attacks and vulnerabilities (and how to counter them) .

Among the speakers, Fabrice Marie will showcase how to hack and steal money from internet banking systems and provide guidelines on how to improve their security.

Keynote Speakers

  • Bpk. Jusuf Kalla (tentative), Vice President of Republic Indonesia
  • Bpk. DR. Sofyan Djalil, Minister of Communications and Information of Republic Indonesia

Business Track Speakers

  • Fabrice Marie (FR/SG) - Hacking & Stealing Money from Online Banks
  • John Howie (US) - Implementing an ISMS using ISO 17799 and ISO 27001
  • Fetri Miftach (ID) - Building an Information Security Framework for Emerging Economies
  • Emmanuel Gadaix (FR/TH) - 3G Telecommunication Network Security & Hacking
  • Leonard Ong (ID/SG) - Building Enterprise Security Awareness Program
  • Achmad Rully (ID) - E-Passport (in)Security & Privacy Issues
  • Phil Leifermann (AU/ID) - ISO27001, Cobit & ITIL
  • John Grygorcewicz (AU/ID) - Visualising Security Threats using the Zachman Enterprise Architecture Framework
  • Dev Yusmananda (ID) - News From the Front, a User Perspective on Managing Information Security
  • Budi Rahardjo (ID) - TBA
  • Zahri Yunos (MY) - Don’t Panic: Effective Crisis Management Plan In Security Response
  • Yono Reksoprodjo (ID) - Information Warfare and Economic Intelligence
  • Ralph Logan (US) - Spotting Rogue Employees and Internal Hackers using Honeypots

Technical Track Speakers

  • Tony Chor (US) - Internet Explorer 7 in Windows Vista - The Security Development Lifecycle in Practice
  • Onno Purbo (ID) - Hackers: Public Enemies or National Resource?
  • Jim Geovedi (ID) & Raditya Iryandi (ID) - Hacking a Bird in the Sky: Hijacking VSAT connections
  • Fyodor Yarochkin (KG/TW) & Meder Kydyraliev (KG/SG) - Web Application Security: Beyond input validation. IDS for web applications
  • The Grugq (UK/TH) - VoIPhreaking: SIPhallis unveiled
  • Philippe Langlois (FR) - SCTP: Hacking SS7 Networks over the Internet
  • Jesse Burns (US) - Attacking Applications by Fuzzing Win32 IPC
  • Paul Boehm (AT) - Taming Bugs: The Art and Science of writing Secure Code
  • Raffael Marty (US) - Visualization of Security Data
  • Cedric Blancher (FR) - Messing Up WiFi Public Networks: Where ninjas are, there’s nothing left to trust
  • Don “north” Bailey (US) - The Evolution of Exploitation: from client to kernel and back

4 Panel Discussions TBA

Workshops:

  • Security and Hardening Concepts in Java/J2EE by Marc Schonefeld (DE)
  • Web Application Secure Coding by Fabrice Marie (FR/SG)
  • VoIPhreaking: Tactical VoIP Assessment by The Grugq (UK/TH)
  • WiFi Security by Cedric Blancher (FR)
  • Practical Guidance for ISO/IEC 27001 (ISMS) by Dr. Haryatno (ID)
  • Exploiting and Defending Networks by Nish Balla (CA)
  • Industrial Espionage, Mission is Possible by Dr. Yono Reksoprodjo (ID)
  • Practical Windows Security Hardening by Memet Anwar (ID)
  • Web Hacking: Attacks and Defense-advance edition by Net Square (IN)
  • Security Assessment and Audit by Net Square (IN)
  • COBIT Awareness Training by Dr. Fetri Miftach (ID)
  • Depkominfo: Implementation of InfoSec framework to Secure Government Investment in e-Government hosted: Government & Invitation only
  • Oracle Security Training by Oracle (ID)

Hacking & Security contests will let novices develop their skills and challenge experts in their favorite arenas, allowing all a chance to win prizes.

Bellua Cyber Security Asia 2006 is brought to you by Bellua Asia Pacific & Pacto Convex, endorsed my Republic Indonesia Ministry of Commnunication and Information, sponsored by Microsoft, Cisco Systems, Kabelvision, Oracle, BVQI, Bureau Veritas, TIBCO, Fortinet, Attrix and supported by Chip, Computer easy, Info Komputer, PCplus, PC Magazine, Neotek, SDA ASIA, Inview, Marketing, InfoLINUX, Jak|TV, Channel 33UHF, Kompas Cybermedia, BusinessWeek, Media Indonesia, Detik inet, Phrack Magazine, HERT, Packet Storm, InfoSecNews.org, Zone-H, HITB, The Hacker’s Choice, Echo.or.id.

Important dates:

  • Workshops - Monday 28 - Tuesday 29 August
  • Conference - Wednesday 30 - Thursday 31 August

Jakarta Convention Center, Indonesia

Bellua Cyber Security Asia 2006 - http://www.bellua.net
Last year presentations are available at http://www.bellua.com/bcs/asia05.archive.html

About Bellua Asia Pacific

PT Bellua Asia Pacific consults with companies who needs to develop or strengthen the security of their applications, data centre and computer networks and take all the appropriate steps to identify and protect them from threats and to ensure the confidentiality, integrity and availability of information electronically stored, processed or transmitted.

Bellua helps its client ensure compliance of systems with organisational security policies and implement standards such as ISO/IEC 27001:2005 & ISO/IEC standard 17799. Bellua Asia Pacific, in association with Bureau Veritas also conduct regular training and workshop around ISO/IEC 27001.

Our security consultants have many years of experience that include performing penetration testing, security assessments for some of the largest Asian banks and a dozen Fortune 500 companies.

Bellua Asia Pacific is the first company in Indonesia to be awarded the ISO/IEC 27001:2005 ISMS Certification (UKAS Certificate #192772).