🔥Introducing Arion🔥
A high-performance C++ framework for emulating executable binaries.
Based on Unicorn and inspired by Qiling, Arion offers an easy-to-use interface and super low execution times making it a great ally for fuzzing or other applications.
https://t.co/EdIIaJqt91
The FastCGI library, mostly used in embedded equipment, was vulnerable for decades to an integer overflow over the IPC socket in 32-bits architecture. Check out how @ShiroPycatchown found it and exploited it for RCE!
https://t.co/oxBn3RGaYY
Le site de la THCon fait peau neuve pour la prochaine édition qui se tiendra du 20 au 21 Avril ! N'hésitez pas à y faire un tour pour prévoir votre venue ! 🥰
@ToulouseHacking
We had the chance to team up with some friends of @AperiKube and @navalgroup for this edition of #leHack CTF and managed to win the first place ! 🥳🤘
Thanks @_leHACK_ for the whole event and congratulations to the Capgemini alliance and @Synacktiv !
See u next year
We had the chance to team up with some friends of @AperiKube and @navalgroup for this edition of #leHack CTF and managed to win the first place ! 🥳🤘
Thanks @_leHACK_ for the whole event and congratulations to the Capgemini alliance and @Synacktiv !
See u next year
Terminé second dans ma spécialité derrière l'indétrônable @voydstack durant cette édition de l'FCSC.
Voici deux writeups pwn écrits pour être compréhensible par des semi-débutants (enfin je l'espère).
https://t.co/aeRQXsD4nH
https://t.co/zDugz40ksQ
@TheLaluka@podalirius_ 'don't want to sound mean though, I just disagree with the idea, I think it could be a good one for specific cases, but not for a generic shellcode
@TheLaluka@podalirius_ Well, portable... You got to have the right python path, the right version for the binary, and hope for it to be there. While when you have a shell, if you want it to be persistent, well, you have a shell, so just write the commands
@TheLaluka@podalirius_ Honestly; that still sounds longer than just adding a setresuid call on the shellcode, or maybe I did not completely understand what you meant.
We end up #2 of the Barbhack's CTF! Really proud of this result 🤘
Big GG to all the other teams, last hour was insane
Thank you @_barbhack_ for this awesome event, we had a ton of fun meeting a lot of wonderful hackers and with the great confs/workshops. See u next year ❤️