maru

Marc Ruef

Head of Research

Marc Ruef has been working in information security since the late 1990s. In 1997 he founded computec.ch, the most popular German-speaking board about computer security in the 90’s. When he was 18 years old his first book got published which discussed the security of Windows operating systems. More books about cybersecurity succeeded over the years. His most popular work is “The Art of Penetration Testing” which got released 2007 by a German publisher. Reprints of the book are sold even today. It discusses the professional approach to identify security vulnerabilities in computer systems, how to exploit and mitigate them. In the last 25 years he worked on 16 books, published more than 275 articles in seven different languages and gave more than 200 interviews. He is also a regular lecturer at multiple universities like ETH, HWZ, HSLU, and IKF. He is co-founder of the company scip AG in Zurich, which provides consulting services in the broad field of cybersecurity. He lead the Red Team for 12 years. In the meanwhile he is responsible for the research department which supports the other teams and does research for customers. Especially exotic projects like car hacking or medical device security are handled by the so called Titanium Team. Their work is well-known worldwide as they have coordinated the disclosure of severe security issues in cars by Mercedes and different x-ray devices for example.

His Profiles

mail

website

twitter

mastodon

xing

linkedin

researchgate

github

stackoverflow

exploitdb

packetstorm

vuldb

medium

News about him (German)

Expertenkommentar zu Audio-Deepfakes

Expertenkommentar zu Audio-Deepfakes

20min Interview zu Downtime bei Webland

20min Interview zu Downtime bei Webland

Einschätzung der aktuellen Tatort-Folge in der Sendung Puls

Einschätzung der aktuellen Tatort-Folge in der Sendung Puls

Watson Interview zu KI-Ransomware PromptLock

Watson Interview zu KI-Ransomware PromptLock

Zwei Buchartikel zur Forschung mit ChatGPT & Co bei Cambridge University

Zwei Buchartikel zur Forschung mit ChatGPT & Co bei Cambridge University

20min Interview bezüglich Betrug auf Tiktok

20min Interview bezüglich Betrug auf Tiktok - Reverse Enkeltrick

Interview in der NZZ und SRF zur Gruppierung "Hunters International" ehemals "World Leaks"

Interview in der NZZ und SRF zur Gruppierung "Hunters International" ehemals "World Leaks"

Interview im Blick zur internationalen Betrugsmaschine "Darcula"

Interview im Blick zur internationalen Betrugsmaschine "Darcula"

Interview im 20min zur DePIN Bewegung

Interview im 20min zur DePIN Bewegung

Interview im 20min zum Stromausfall in Spanien und Portugal

Interview im 20min zum Stromausfall in Spanien und Portugal

Interview im Blick zu Swisspass, SBB Tickets, Italienische Bahntickets Betrug

Interview im Blick zu Swisspass, SBB Tickets, Italienische Bahntickets Betrug

Interview 20min

Interview 20min - Konkurs nach IT-Panne ist «eher untypisch»

Recent Articles by Him

scip Cybersecurity Forecast

scip Cybersecurity Forecast - Predictions for 2026

Vulnerability Management

Vulnerability Management - Professional Handling of Vulnerabilities

scip Cybersecurity Forecast

scip Cybersecurity Forecast - Predictions for 2025

Specific Criticism of CVSS4

Specific Criticism of CVSS4 - What is not going to be better

scip Cybersecurity Forecast

scip Cybersecurity Forecast - Predictions for 2024

Voice Authentication

Voice Authentication - Risks of the Biometric Approach

Bug Bounty

Bug Bounty - Challenge for Companies

Breach and Leak

Breach and Leak - Guilt and Atonement of Affected Companies

Modern Chatbots

Modern Chatbots - Advanced Dangers and Risks

scip Cybersecurity Forecast

scip Cybersecurity Forecast - Predictions for 2023

Home Automation

Home Automation - The Way to a Fully Automated House

Cyber War

Cyber War - How Technology wins Wars

You want more?

Do you have any questions?

Our experts will get in contact with you!