|Simson Leon Garfinkel|
(By Simson L. Garfinkel)
|Born||1965 (age 52–53)|
MIT (SB, SB, SB 1983)|
Columbia University (MS 1988)
MIT (PhD 2005)
Practical UNIX and Internet Security
Department of Defense Value Engineering Achievement Award|
Jesse H. Neal National Business Journalism Award
|Institutions||US Census Bureau|
|Doctoral advisor||David D. Clark|
Simson L. Garfinkel (born 1965) is the US Census Bureau's Senior Computer Scientist for Confidentiality and Data Access and the Chair of the Bureau's Disclosure Review Board. Previously, he was a computer scientist at the National Institute of Standards and Technology (2015-2017) and, prior to that, an associate professor at the Naval Postgraduate School in Monterey, California (2006-2015). Garfinkel is regarded as a leader in the fields of digital forensics and usable security. In addition to his research, Garfinkel is a journalist, an entrepreneur, and an inventor; his work is generally concerned with computer security, privacy, and information technology.
Today Garfinkel lives in Arlington, Virginia.
Garfinkel's early research was in the field of optical storage. While he was an undergraduate at the MIT Media Laboratory Garfinkel developed CDFS, the first file system for write-once optical disk systems. During the summer of 1987 he worked at Brown University's IRIS Project, where he developed a server allowing CDROMs to be shared over a network simultaneously by multiple workstations.
In 1991, while a senior editor at NeXTWORLD magazine, Garfinkel created an address book program for the NeXT Computer called SBook. One of SBook's most popular features was a search field that performed a full-text search of all of the records in the address book with each keypress. This kind of search is now standard on many computer programs, including Apple's Mail application and Mozilla Thunderbird. SBook was one of the first programs to incorporate this kind of search technology.
In 1995, Garfinkel moved to Martha's Vineyard and started Vineyard.NET, the Vineyard's first Internet Service Provider. Vineyard.NET was bought by Broadband2Wireless, a wireless ISP, in 2000. The company went bankrupt in September 2001, and Garfinkel bought Vineyard.NET back from the bankruptcy court.
In 1998, Garfinkel founded Sandstorm Enterprises, a computer security firm that develops advanced computer forensic tools used by businesses and governments to audit their systems. Garfinkel holds six patents, mostly in the field of computer security.
In 2003, Garfinkel and Abhi Shelat published an article in IEEE Security & Privacy Magazine reporting on an experiment in which they purchased 158 used hard drives from a variety of sources and checked to see whether they still contained readable data. Roughly one third of the drives appeared to have information that was highly confidential and should have been erased prior to the drive's resale.
In 2006, Garfinkel introduced cross-drive analysis, an unsupervised machine learning algorithm for automatically reconstructing social networks from hard drives and other kinds of data-carrying devices that are likely to contain pseudo-unique information.
In September 2006, Garfinkel joined the faculty of the Naval Postgraduate School (NPS) in Monterey, California, as an associate professor of Computer Science. He moved to Arlington, Virginia, in June 2010 to help NPS with its research aims in the National Capital Region. He transitioned to the National Institute of Standards and Technology in January 2015, and to the US Census Bureau in 2017.
Education and Honors
Garfinkel obtained three SB degrees from MIT in 1987; a MS in journalism from Columbia University in 1988; and a PhD in computer science from MIT in 2005. He was a postdoctoral fellow at the Center for Research on Computation and Society at Harvard University from September 2005 through August 2008. In 2012 he was named a Fellow of the ACM.
Garfinkel is the author or co-author of 15 books, and the author of more than a thousand articles. He is a contributing writer for Technology Review and has written as a freelancer for many publications including Wired magazine, The Boston Globe, Privacy Journal, and CSO Magazine. His work for CSO Magazine earned him five regional and national journalism awards, including the Jesse H. Neal Business Journalism Awards in 2003 and 2004.
- The Computer Book: From the Abacus to Artificial Intelligence, 250 Milestones in the History of Computer Science (Sterling Milestones), by Simson L. Garfinkel and Rachel H. Grunspan. 2018 (Sterling)
- Usable Security: History, Themes, and Challenges], by Simson Garfinkel and Heather Lipford, 2014. (Morgan & Claypool, part of the Synthesis Lectures on Information Security, Privacy and Trust series.)
- Lorrie Cranor and Garfinkel, Simson (2005). Security and Usability. O'Reilly and Associates.
- Garfinkel, Simson and Beth Rosenberg (2005). RFID: Applications, Security and Privacy. Addison-Wesley.
- Garfinkel, Simson and Gene Spafford and Alan Schwartz (2003). Practical UNIX and Internet Security, 3rd Edition. O'Reilly and Associates. ISBN 978-0596003234.
- Garfinkel, Simson and Michael K. Mahoney (2002). Building Cocoa Applications : A Step by Step Guide. O'Reilly and Associates. ISBN 0-596-00235-1.
- Web Security, Privacy and Commerce, with Gene Spafford. 2001. (O'Reilly & Associates, Inc.)
- Garfinkel, Simson (2000). Database Nation; The Death of Privacy in the 21st Century. O'Reilly and Associates. ISBN 0-596-00105-3. (review by Peter G. Neumann and review by Eugene Spafford, in the RISKS Digest)
- Garfinkel, Simson (1999). Architects of the Information Society.
- Garfinkel, Simson & Alan Schwartz (1998). Stopping Spam. O'Reilly and Associates. ISBN 1-56592-388-X. (review by Rob Slade in the RISKS Digest)
- Garfinkel, Simson with Eugene Spafford (1997). Web Security and Commerce. O'Reilly and Associates.
- Garfinkel, Simson and Eugene Spafford (1996). Practical UNIX and Internet Security. O'Reilly and Associates. ISBN 1-56592-148-8. (review by Peter G. Neumann in the RISKS Digest)
- Garfinkel, Simson (1995). PGP: Pretty Good Privacy. O'Reilly and Associates. ISBN 1-56592-098-8.
- Garfinkel, Simson, Daniel Weise, and Steven Strassmann (editors) (1994). UNIX-HATERS Handbook. IDG. ISBN 1-56884-203-1.
- Garfinkel, Simson and Michael K. Mahoney (1993). NeXTStep Programming. The Electronic Library of Science. ISBN 0-387-97884-4.
- Garfinkel, Simson and Eugene Spafford (1991). Practical UNIX and Security. O'Reilly and Associates.
Significant academic articles
- Beverly, Robert, Simson Garfinkel and Greg Cardwell, "Forensic Carving of Network Packets and Associated Data Structures", DFRWS 2011, Aug. 1-3, 2011, New Orleans, LA. BEST PAPER AWARD (Acceptance rate: 23%, 14/62)
- Garfinkel, S., Parker-Wood, A., Huynh, D., and Migletz, J., A Solution to the Multi-User Carved Data Ascription Problem, IEEE Transactions on Information Forensics & Security, December 2010.
- Garfinkel, Simson, Digital Forensics Research: The Next 10 Years, DFRWS 2010, Portland, OR, August 2010
- Garfinkel, Farrell, Roussev and Dinolt, Bringing Science to Digital Forensics with Standardized Forensic Corpora, DFRWS 2009, Montreal, Canada. (slides) BEST PAPER AWARD.
- Garfinkel, Simson, Alex Nelson, Vassil Roussev and Douglas White, Using purpose-built functions and block hashes to enable small block and sub-file forensics, DFRWS 2010, Portland, OR
- Garfinkel, S., and Cranor, L., Institutional Review Boards and Your Research, Communications of the ACM, June 2010.
- Farrell, Paul and Simson Garfinkel and Doug White (December 2008). "Practical Applications of Bloom filters to the NIST RDS and hard drive triage" (PDF). Annual Computer Security Applications Conference.
- Garfinkel, S., and Smith, M., "Data Surveillance" (Guest Editor's Introduction), IEEE Security and Privacy, November/December 2006
- Garfinkel, S., "Forensic Feature Extraction and Cross-Drive Analysis," Digital Investigation, Volume 3, Supplement 1, September 2006, Pages 71–81.
- Garfinkel, Simson & Robert C. Miller (2005). "Johnny 2: A User Test of Key Continuity Management with S/MIME and Outlook Express" (PDF). Symposium On Usable Privacy and Security.[dead link]
- Garfinkel, S., Juels, A., Pappu, R., "RFID Privacy: An Overview of Problems and Proposed Solutions," IEEE Security and Privacy, Volume 3, Issue 3, pp. 34–43, May–June 2005.
- Garfinkel, S. "Leaderless Resistance Today", First Monday, 8:3, March 3, 2003.
Significant journalistic articles
- "Privacy Requires Security, Not Abstinence". Technology Review Magazine. 2009-07-01.
- "Data Fusion: The Ups and Downs of All-Encompassing Digital Profiles". Scientific American. 2008-09-01.
- "Welcome to Sealand. Now Bugger Off". 2000-07-01. (Wired Magazine's cover article about HavenCo and Sealand)
- Garfinkel, Simson (1995-04-21). "AOHell". The Boston Globe. (an article about AOHell, re-published in the RISKS Digest. First known published account of phishing.)
- "US Census Bureau Staff Roster" (PDF).
- S. Garfinkel, "A file system for write once media, MIT Media Lab., Oct. 1986.
- Designing a write-once file system (a general-purpose optical storage software technology), Dr. Dobb's Journal, 1991, Jan, pp. 78, 80, 82--26.
- Garfinkel, Simson. "SBook is Simson Garfinkel's Address Book". Retrieved 2017. Check date values in:
- "Broadband2Wireless files for bankruptcy". 2001-09-01.[dead link]
- U.S. Patent 7,779,032U.S. Patent 7,023,854U.S. Patent 6,993,661U.S. Patent 6,744,864U.S. Patent 6,678,270U.S. Patent 6,490,349
- Garfinkel, S., "Forensic Feature Extraction and Cross-Drive Analysis," Digital Investigation, Volume 3, Supplement 1, September 2006, Pages 71--81. http://www.simson.net/clips/academic/2006.DFRWS.pdf
-  Archived November 11, 2007, at the Wayback Machine.
- Harvard CRCS
- Gold, Virginia. "2012 Fellows Hail from World's Leading Universities and Corporations". The Association for Computing Machinery. Archived from the original on 2012-12-12. Retrieved Dec 11, 2012.
Simson Garfinkel Naval Postgraduate School For contributions to digital forensics and to computer security education
- Simson Garfinkel Bio, http://simson.net/page/Bio
- "Staff List," Technology Review.com, July 7, 2008 http://www.technologyreview.com/corp/staff.aspx
-  Archived September 17, 2008, at the Wayback Machine.