🎃 En cette fin du #Cybermois, je célèbre l'association @HackInProvence, qui travaille sans relâche pour renforcer notre cybersécurité et promouvoir le hacking éthique. Merci pour tout ce que vous faites ! Joyeux Halloween ! 🕷️🌐 #HackInProvence#Halloween#Cybersecurité
Continuing the #NtSetInformationProcess exploitation series, @th3m4ks wrote an article on universal #EDR blinding through exploitation of NtSetInformationProcess and it's worth it
https://t.co/eQtAVuar83
While digging into old research from @aionescu and Nirvana debug, I found an undocumented way to achieve threadless process injection.
It bypasses several #EDR out of box and the miss of Kernel insight on it eases bypass with simple userland unhooking.
https://t.co/9QqvrRacHr
Hi @_barbhack_ folks! 🌻
As I failed to finish my rump in time, here are the slides !
The tool will be open-sources at some point, but hey, it's all in the slides, just a few lines of code & cool tech ! ^.^
Have a nice event & CTF ! 💕
https://t.co/0nBpNVw5VN
Be ready on time as the seats sell out fast and don't miss our @wavestone_ workshops:
- "Malware development on secured environment - Write, adapt, overcome" by @OtterHacker
- "Pentesting Industrial Control Systems: OPC-U-HACK" by @DrineTorrents & myself
If you missed my talk at @_leHACK_ , you can find the slides here.
The presentation shows some unusual techniques to perform process injection without the standard Win32API.
https://t.co/hdGwIv2KgB
Ghostscript RCE CVE-2023-28879 can impact many applications processing images and PDF files.
Discovery and exploitation write-up by team member @sigabrt9 : https://t.co/tQyDkVf7tx
The 3 new Web-Servers challenges created for the next Club EHRM workshop have been published on the #RootMe and Root-Me Pro environments.
https://t.co/u1CGwRz4T7
Thank you to @Nishacid and @bWlrYQ for their work on this JSON Web Token series! 👏
Hello 🙂
With my friend @bWlrYQ we just published 3 Web challenges at @rootme_org, that approach vulnerabilities related to JSON Web Token !
- https://t.co/tmrN0uBVmZ
- https://t.co/gP1dJ2e36b
- https://t.co/rRglF67EpZ
Thanks to the Root-Me staff and have fun ! 😄
Giveaway ! 😱
We will be gifting 2 tickets among those who share this post ! 🎁
Also, a lot of our early birds tickets for this year's edition have already been bought. We decided to add another 25 professional tickets until next Tuesday. Jump on the occasion ! 🔥
New series of Forensic challenges available on Root-Me!
https://t.co/LCek8J9WC9
Thank you to our contributors #Nishacid, #erk3 and #X-nO for their hard work and their creations! 👍
Good luck everyone, enjoy these new challenges!🚩
Oyez ! Préparez vos claviers et vos PC, HiP organise un CTF le 3/12 à @thecampProvence!
En partenariat avec @crosscallmobile qui fera gagner des lots, et @KevinPolizzi grâce à qui nous pouvons organiser cet événement.
CTF individuel, et sur réservation https://t.co/Ib3VQFCLvB
New series of challenges in the Cracking category available on Root-Me !
https://t.co/ATmszTwqoS
Thank you to our authors #0x0ff, #exti0p, #Algorab and #erk3 for their creations! 👍️
Good luck everyone, enjoy these new challenges !🚩
@SecSeaConf c'est fini! Une superbe édition cette année encore. Un grand merci à tous les intervenants, aux participants, à tous les soutiens, merci à l'Eden pour l'accueil. Ce fut un très bon moment de partage et de fun. On se retrouve l'an prochain: même lieu, mêmes dates !
It's time for a new repo, introducing HardwareAllTheThings, an equivalent of PayloadsAllTheThings for IOT/Hardware🤖
https://t.co/yjv9t90Dt5
Send your Pull Requests if you want them to be merged during this Hacktoberfest😏