Le Point interviewed Sammy FORGIT about the services we offer and the specificities of this passionate profession that is #pentest.
🎯 Find all the necessary information on our website. https://t.co/UBjg9QvYVD
Congratulations to our employee Nolan Lossignol-Drillien for the successful merge of his #metasploit module (PR 17899) to detect and exploit the #Dolibarr vulnerability discovered by Vladimir Toutain.https://t.co/AdcUwcE0O5
We discovered during a #pentest a critical vulnerability on #dolibarr 16.x: it allows an unauthenticated attacker to steal the database of contacts (customers, prospects, suppliers, and sometimes employees). Upgrade to v17 to fix it. https://t.co/46RK24zWBq
📅 Find DSecBypass at Insomni'hack on March 23 and 24 in Lausanne.
We will be there to follow the excellent conferences and challenge the CTF.
Looking forward to seeing you there !
CVE-2022-4510: Imagine using the binwalk command to solve a Forensic challenge and end up with a new SSH key in your authorized_keys...or worse. https://t.co/3Q5uTV3Ov1
Vladimir Toutain discovered a major vulnerability in the Centreon Map plugin. With a CVSSv3 8.3 score, it allows an unauthenticated attacker to recover the memory of the process, thus accessing the secrets used for the monitoring of the systems. https://t.co/SJUeYikjfJ
[3/3] Pentest stories : "the internal" 📖
Follow the adventures of Jean the pentester in our series of articles "Pentest stories".
Discover or rediscover the course of a typical mission as well as the techniques used. https://t.co/Y3wwH2xmRH
[2/3] Pentest stories : "the external" 📖
Follow the adventures of Jean the pentester in our series of articles "Pentest stories".
Discover or rediscover the course of a typical mission as well as the techniques used. https://t.co/yp7DfiMiXM
[1/3] Pentest stories : "the web site" 📖
Follow the adventures of Jean the pentester in our series of articles "Pentest stories".
Discover or rediscover the course of a typical mission as well as the techniques used. https://t.co/rN9TE7C1W1
Description of the vulnerability discovered by DSecBypass on the Windchill software. Found using simple technics, it affects all software versions and was fixed by PTC. https://t.co/ouCZ61or1K
❓ What are the most common threats to an SSH service exposed on the Internet? How to test the security of your service?
In this article, 🎓 learn how to assess the security of your admin service and increase its security. https://t.co/oO9uRncnQn
Description of the vulnerability discovered by DSecBypass on the KeyShot software.
Fixed in version 11.2, patch!
Discover how you can use Wireshark and Pwntools to easily manipulate a network protocol. https://t.co/1TqzvgLiCB