Matthieu Suiche (born September 22, 1988), also known as Matt and under the username msuiche, is a
French
French (french: français(e), link=no) may refer to:
* Something of, from, or related to France
** French language, which originated in France, and its various dialects and accents
** French people, a nation and ethnic group identified with Franc ...
hacker and entrepreneur widely known as the founder of MoonSols, and co-founder of
CloudVolumes before it was acquired by
VMWare in 2014. In March 2014, Suiche was highlighted as one of the 100 key French developers in a report
for French minister
Fleur Pellerin
Fleur Pellerin (; Birth name, née Kim Jong-sook, born 29 August 1973) is a French businesswoman, former civil servant and Socialist Party (France), Socialist Party politician who served as a Government of France, French government minister from ...
.
Career
Suiche is best known for his work in the
memory forensics and
computer security fields. His most notable research contributions include
Windows hibernation
Hibernation is a state of minimal activity and metabolic depression undergone by some animal species. Hibernation is a seasonal heterothermy characterized by low body-temperature, slow breathing and heart-rate, and low metabolic rate. It most ...
file analysis and
Mac OS X physical memory analysis.
Furthermore, he created LiveCloudKd, a utility to analyze running
Microsoft Hyper-V virtual machines.
Microsoft Technical fellow Mark Russinovich
Mark Eugene Russinovich (born December 22, 1966) is a Spanish-born American software engineer and author who serves as CTO of Microsoft Azure. He was a cofounder of software producers Winternals before it was acquired by Microsoft in 2006.
Ea ...
highlighted it on his blog before introducing a similar feature in one of
Microsoft's tools. Russinovich also said "We were so impressed that we invited Matthieu to speak about live kernel debugging and LiveCloudKd at this year’s
BlueHat Security Briefings".
He is also known to have discovered multiple security flaws in multiple
Microsoft Windows kernel components. Suiche is
Microsoft Most Valuable Professional
The Microsoft Most Valuable Professional (MVP) award is given by Microsoft to "technology experts who passionately share their knowledge with the community". They are awarded to people who "actively share their ... technical expertise with the dif ...
in Enterprise Security.
Suiche started his career as an independent security researcher by presenting his work about the Microsoft Windows hibernation file for the first time at the international conference PacSec held in
Tokyo in 2007. He also had been invited by
Europol to speak at their internal High Tech Crime Experts Meeting in 2008. Between 2009 and 2010, he worked as a researcher for
Netherlands Forensic Institute
The Netherlands Forensic Institute (Dutch ''Nederlands Forensisch Instituut'') is the national forensics institute of the Netherlands, located in the Ypenburg quarter of The Hague.
It is an autonomous division of the Dutch Ministry of Security ...
in
The Hague before starting MoonSols which specialized in
memory forensics and
incident response.
Suiche was also contributor of the
Samba
Samba (), also known as samba urbano carioca (''urban Carioca samba'') or simply samba carioca (''Carioca samba''), is a Brazilian music genre that originated in the Afro-Brazilian communities of Rio de Janeiro in the early 20th century. Havin ...
project during the
Google Summer of Code in 2008, where he was in charge of implementing the new compression algorithms used by the networking protocols.
In 2011, Suiche founded CloudVolumes (formerly SnapVolumes) a California-based virtualization management product company where he served as a Chief Scientist. Company was acquired by
VMware in 2014.
In 2016, Suiche founded Comae, is a UAE-based cybersecurity company that specializes in cloud-based memory analysis used to recover evidence from the volatile memory of devices. Company was acquired by Magnet Forensics in 2022.
Conferences
Suiche also had been a frequent speaker at various
computer security conferences such as
Black Hat Briefings,
Microsoft Blue Hat Hacker Conference, Shakacon, Hackito Ergo Sum,
Europol High Tech Crime Experts Meeting, CanSecWest, PacSec, Hack In The Box, SyScan and Shakacon.
He is on the board of Program Committee of Shakacon security conference, and one of the founders of
Hackito Ergo Sum security conference in
Paris.
The Shadow Brokers
The Shadow Brokers
The Shadow Brokers (TSB) is a hacker group who first appeared in the summer of 2016. They published several leaks containing hacking tools, including several zero-day exploits, from the "Equation Group" who are widely suspected to be a branch of ...
is a
hacker group
Hacker groups are informal communities that began to flourish in the early 1980s, with the advent of the home computer.
Overview
Prior to that time, the term ''hacker'' was simply a referral to any computer hobbyist. The hacker groups were out ...
who first appeared in the summer of 2016. They published several leaks containing hacking tools, including several
zero-day exploits, from the "
Equation Group" who are widely suspected to be a branch of the
National Security Agency (NSA) of the United States. Suiche spoke at the BlackHat about The Shadow Brokers’ saga, the large Vegas-based cybersecurity conference and after his presentation the TSB posted a public message stating “Hello Matt Suiche, The ShadowBrokers is sorry TheShadowBrokers is missing you at theblackhats or maybe not.”
Suiche along with
James Bamford speculated that an insider, "possibly someone assigned to the
SA'shighly sensitive
Tailored Access Operations", stole the hacking tools.
Pwnie Awards 2013
In 2012, Suiche was one of the security researchers (along with several other well-known security researchers) who submitted a bogus article entitled "Nmap: The Internet Considered Harmful - DARPA Inference Checking Kludge Scanning" to Hakin9 Information Security Magazine. This article has been used as a social proof to demonstrate the lack of relevance and expertise of certain media dedicated to Information Security, but also to criticize spamming techniques used by media in order to generate quantity-oriented data rather than quality-oriented information. The following year, this article resulted in being awarded the 2013
Pwnie Awards
The Pwnie Awards recognize both excellence and incompetence in the field of information security. Winners are selected by a committee of security industry professionals from nominations collected from the information security community. Nomine ...
attributed to Hakin9 under the "Most Epic FAIL" category.
Awards and recognition
* 2009-2015, Microsoft Most Valuable Professional.
* 2014, One of the 100 top key developers in France.
Bibliography
* ''Debugged! Mz/Pe: Magazine For/From Practicing Engineers'' by Dmitry Vostokov, Matthieu Suiche and Roberto Alexis Farah, OpenTask , 2009
See also
*
Memory forensics
References
External links
*
{{DEFAULTSORT:Suiche, Matt
French businesspeople
People associated with computer security
Living people
French computer scientists
1988 births