Maltemo nag-retweet
Maltemo
310 posts

Maltemo
@Maltemo
🇫🇷 - Security auditor. In my free time, interested in development, OSINT & Forensic. Eclectic hobbies and interests.
Sumali Temmuz 2012
187 Sinusundan244 Mga Tagasunod
Maltemo nag-retweet

Hoy !
Pas de stream ce soir... MAIS !
Release d'une petite série que j'ai pris plaisir à vivre, tourner, et réaliser sur le travail fait ave d'autres nombreux bénévoles pour @hack_4_values !
On y parle de l'organisation, des enjeux, des ONG évidemment, mais aussi des bugs trouvés, de méthodologie, et de l'aspect HuMaIn ! 💌
Vos partages -très- appréciés, et je vous souhaite une -très- bonne semaine 🌻
youtube.com/playlist?list=…

Français

@TraceLabs @_leHACK_ Will you still be there tomorrow or is this activity only available today ?
English

If you are attending @_leHACK_ and want to practise your OSINT with real missing persons, join us downstairs in the Le Loft Area near the War Games.
English
Maltemo nag-retweet

My new research
Escalation of Self-XSS to XSS using modern browser capabilities.
blog.slonser.info/posts/make-sel…
English

🍉 The AperiSolve website just got a fresh new look!
- ⚙️ RAM doubled
- ⚙️ CPU doubled
- 😎 Swag doubled
Got feedback? Drop a DM or open an issue: github.com/Zeecka/AperiSo…
aperisolve.com

English
Maltemo nag-retweet

🔍 New research on a niche technique to abuse "GPP Local Users and Groups" to elevate privileges locally through sAMAccountName hijacking.
This research comes with a new GPOHound update to detect this misconfiguration.
🔗 Read more: cogiceo.com/en/whitepaper_…

English
Maltemo nag-retweet

Documenté, Sourcé, Miniaturé, Plus qu'à... Siroter ! 🎁
Cc @Maltemo 🤝 @KharaTheOne
youtube.com/live/we_T4x6WD…

YouTube

Français
Maltemo nag-retweet
Maltemo nag-retweet

I have just released my first tool : GPOHound 🚀
GPOHound is an offensive tool for dumping and analysing GPOs. It leverages BloodHound data and enriches it with insights extracted from the analysis.
🔗Check it out here: github.com/cogiceo/GPOHou…




English
Maltemo nag-retweet

I think many people are familiar with the topic of blind CSS exfiltration, especially after the post by
@garethheyes
However, an important update has occurred since then, which I wrote below ->
English
Maltemo nag-retweet

New Active Directory Mindmap v2025.03! 🚀
📖 Readable version: orange-cyberdefense.github.io/ocd-mindmaps/i…
🔧 Now fully generated from markdown files—way easier to update and maintain!
💡 Got improvements? PRs welcome! 👉 github.com/Orange-Cyberde…

English
Maltemo nag-retweet

Hi it's me again, I've been calling for a while now, you need to pay your health insurance Sir...
Or have some replays? 😏
La dernière Techno Watch avec @Drypaints @Maltemo et @pentest_swissky !🌿
FYI: Pas de stream ce mardi 4 Fev ➡️ HTB Meetup Lyon !
Rdv au Elephant and Castle, début à 19h+ et miniconfs à ~20h ! 😘
youtube.com/watch?v=ysen7Z…

YouTube
English
Maltemo nag-retweet

Yop ! 🌿
Reprise des veilles technos ce soir 21h ! 🌖
En compagnie de @Drypaints @Maltemo @pentest_swissky 😎
~ See you there ~
twitch.tv/thelaluka
Français

Just discovered this nice resource about DOM Clobbering attacks :
domclob.xyz
Thank you @Soheil__K for this amazing work
English

@Haax9_ Oui, je cite certains de tes articles dans mes formations OSINT perso.
Français

EKUwu vulnerability was just patched by Microsoft.
A security update is available : msrc.microsoft.com/update-guide/v…
x.com/TrustedSec/sta…
TrustedSec@TrustedSec
⚠️ NEW UPDATE: In October, @Bandrel wrote about a vulnerability he discovered called #EKUwu. This vulnerability was patched on November 12. Find more information about EKUwu and the link to the patch on our blog! hubs.la/Q02Y5P_B0
English
Maltemo nag-retweet

We're proud to announce LIGHTYEAR, a tool that let you dump files, blind, in PHP, based on a new algorithm.
ambionics.io/blog/lightyear…
English

Not suprised, but this will happen with increasing frequency.
Fortunately, Europe, UK and Switzerland were spared.
Nothing is free.
x.com/TutaPrivacy/st…
Tuta@TutaPrivacy
🔴 Alert 🔴 LinkedIn is using your data to train its generative AI by default. No, you didn’t opt in. LinkedIn did it for you! 🙈 Here’s how you can stop LinkedIn from using your data 👉 tuta.com/blog/linkedin-…
English





