Maltemo retweetledi
Maltemo
310 posts

Maltemo
@Maltemo
🇫🇷 - Security auditor. In my free time, interested in development, OSINT & Forensic. Eclectic hobbies and interests.
Katılım Temmuz 2012
187 Takip Edilen244 Takipçiler
Maltemo retweetledi

Hoy !
Pas de stream ce soir... MAIS !
Release d'une petite série que j'ai pris plaisir à vivre, tourner, et réaliser sur le travail fait ave d'autres nombreux bénévoles pour @hack_4_values !
On y parle de l'organisation, des enjeux, des ONG évidemment, mais aussi des bugs trouvés, de méthodologie, et de l'aspect HuMaIn ! 💌
Vos partages -très- appréciés, et je vous souhaite une -très- bonne semaine 🌻
youtube.com/playlist?list=…

Français

@TraceLabs @_leHACK_ Will you still be there tomorrow or is this activity only available today ?
English

If you are attending @_leHACK_ and want to practise your OSINT with real missing persons, join us downstairs in the Le Loft Area near the War Games.
English
Maltemo retweetledi

My new research
Escalation of Self-XSS to XSS using modern browser capabilities.
blog.slonser.info/posts/make-sel…
English

🍉 The AperiSolve website just got a fresh new look!
- ⚙️ RAM doubled
- ⚙️ CPU doubled
- 😎 Swag doubled
Got feedback? Drop a DM or open an issue: github.com/Zeecka/AperiSo…
aperisolve.com

English
Maltemo retweetledi

🔍 New research on a niche technique to abuse "GPP Local Users and Groups" to elevate privileges locally through sAMAccountName hijacking.
This research comes with a new GPOHound update to detect this misconfiguration.
🔗 Read more: cogiceo.com/en/whitepaper_…

English
Maltemo retweetledi

Documenté, Sourcé, Miniaturé, Plus qu'à... Siroter ! 🎁
Cc @Maltemo 🤝 @KharaTheOne
youtube.com/live/we_T4x6WD…

YouTube

Français
Maltemo retweetledi
Maltemo retweetledi

I have just released my first tool : GPOHound 🚀
GPOHound is an offensive tool for dumping and analysing GPOs. It leverages BloodHound data and enriches it with insights extracted from the analysis.
🔗Check it out here: github.com/cogiceo/GPOHou…




English
Maltemo retweetledi

I think many people are familiar with the topic of blind CSS exfiltration, especially after the post by
@garethheyes
However, an important update has occurred since then, which I wrote below ->
English
Maltemo retweetledi

New Active Directory Mindmap v2025.03! 🚀
📖 Readable version: orange-cyberdefense.github.io/ocd-mindmaps/i…
🔧 Now fully generated from markdown files—way easier to update and maintain!
💡 Got improvements? PRs welcome! 👉 github.com/Orange-Cyberde…

English
Maltemo retweetledi

Hi it's me again, I've been calling for a while now, you need to pay your health insurance Sir...
Or have some replays? 😏
La dernière Techno Watch avec @Drypaints @Maltemo et @pentest_swissky !🌿
FYI: Pas de stream ce mardi 4 Fev ➡️ HTB Meetup Lyon !
Rdv au Elephant and Castle, début à 19h+ et miniconfs à ~20h ! 😘
youtube.com/watch?v=ysen7Z…

YouTube
English
Maltemo retweetledi

Yop ! 🌿
Reprise des veilles technos ce soir 21h ! 🌖
En compagnie de @Drypaints @Maltemo @pentest_swissky 😎
~ See you there ~
twitch.tv/thelaluka
Français

Just discovered this nice resource about DOM Clobbering attacks :
domclob.xyz
Thank you @Soheil__K for this amazing work
English

@Haax9_ Oui, je cite certains de tes articles dans mes formations OSINT perso.
Français

EKUwu vulnerability was just patched by Microsoft.
A security update is available : msrc.microsoft.com/update-guide/v…
x.com/TrustedSec/sta…
TrustedSec@TrustedSec
⚠️ NEW UPDATE: In October, @Bandrel wrote about a vulnerability he discovered called #EKUwu. This vulnerability was patched on November 12. Find more information about EKUwu and the link to the patch on our blog! hubs.la/Q02Y5P_B0
English
Maltemo retweetledi

We're proud to announce LIGHTYEAR, a tool that let you dump files, blind, in PHP, based on a new algorithm.
ambionics.io/blog/lightyear…
English

Not suprised, but this will happen with increasing frequency.
Fortunately, Europe, UK and Switzerland were spared.
Nothing is free.
x.com/TutaPrivacy/st…
Tuta@TutaPrivacy
🔴 Alert 🔴 LinkedIn is using your data to train its generative AI by default. No, you didn’t opt in. LinkedIn did it for you! 🙈 Here’s how you can stop LinkedIn from using your data 👉 tuta.com/blog/linkedin-…
English





