Load.

410 posts

Load. banner
Load.

Load.

@loadlow

🥐 *ptr

France Sumali Ağustos 2013
1.8K Sinusundan284 Mga Tagasunod
Load. nag-retweet
Remsio
Remsio@_remsio_·
Finally, after many months of work, @_Worty and I finally finished putting all the pieces together to show you each detail of our research on Livewire. Hope you will enjoy it 😁
Synacktiv@Synacktiv

🚨 RCE in #Livewire (CVE-2025-54068)! Our specialists uncovered a critical flaw allowing remote code execution without the APP_KEY, exploiting Livewire’s hydration mechanism + PHP’s loose typing. 🔗 Patch now! (v3.6.4+) synacktiv.com/en/publication…

English
1
3
22
4.7K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
🚨 RCE in #Livewire (CVE-2025-54068)! Our specialists uncovered a critical flaw allowing remote code execution without the APP_KEY, exploiting Livewire’s hydration mechanism + PHP’s loose typing. 🔗 Patch now! (v3.6.4+) synacktiv.com/en/publication…
English
2
61
168
47.9K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
HID recently disclosed HID-PSA-2025-002, a critical flaw in the #ActivID Authentication Appliance 8.7. In our new blog post, @us3r777 and @__pierreg break down exactly how they uncovered it, from methodology to exploitation 💡 Read it here ⬇️ synacktiv.com/en/publication…
English
0
11
21
3K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
The web is a prime target for attackers. Want to refine your intrusion methods? Join our ‘Attacking Web Applications’ training course from 17 to 21 November! ▪️ 5 days of expertise ▪️ 35 hours of lessons, more than 30 exercises ▪️ Java, PHP, Python, ASP.NET... Information & registration via 👇 synacktiv.com/en/offers/trai…
Synacktiv tweet media
English
0
7
17
2.8K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
The GroupPolicyBackdoor tool, presented at #DEFCON 2025, is now available on Synacktiv's GitHub: github.com/synacktiv/Grou… This python utility offers a stable, modular and stealthy exploitation framework targeting Group Policy Objects in Active Directory!
English
1
99
239
17.7K
Load. nag-retweet
Wil
Wil@wil_fri3d·
gpoParser, which I presented at #leHACK2025 and #DEFCON, is available here: github.com/synacktiv/gpoP… It is a specialized utility designed to enumerate Group Policy Objects (GPOs) and identify potential security misconfigurations.
English
4
168
494
29.4K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
🔥 A few hours ago our experts took the stage at #DEFCON33, sharing cutting-edge research on SCCM exploitation and modern GPO attacks in Active Directory. Proud of the team! 🙌 cc @kalimer0x00 @quent0x1 @wil_fri3d
Synacktiv tweet mediaSynacktiv tweet mediaSynacktiv tweet media
English
2
23
98
6.9K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
🔒 Can you really trust your zero trust? We (re)discovered a vulnerability in Zscaler Client Connector that allowed bypassing device posture checks, and it was still exploitable in the wild. Full technical deep dive + remediation tips 👇 synacktiv.com/en/publication…
English
2
16
43
4.3K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
Don't miss @kalimer0x00 at #DEFCON33! His talk, "SCCM: The Tree That Always Bears Bad Fruits", covers modern attack paths and abuse techniques in Microsoft SCCM, with a focus on internals, post-exploitation, and persistence! #content_60392" target="_blank" rel="nofollow noopener">defcon.org/html/defcon-33… #DEFCON #SCCM
Synacktiv tweet media
English
1
21
76
7K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
Catch us at #DEFCON33! @quent0x1 and @wil_fri3d will show how to turn your Active Directory into the attacker’s C2. They'll dive deep into how Group Policy Objects can be leveraged for stealthy enumeration and privilege escalation! #content_60387" target="_blank" rel="nofollow noopener">defcon.org/html/defcon-33… #DEFCON #ActiveDirectory
Synacktiv tweet media
English
0
15
47
3.5K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
That's a wrap on our Azure Intrusion for Red Teamers training at #BHUSA! 4 intense days from zero to Global Admin via Entra ID, M365, resources, DevOps, Intune & more 🔥 Huge thanks to all our participants and next stop: #HEXACON2025, Paris, Oct 6 🇫🇷
Synacktiv tweet media
English
0
6
43
3.4K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
We made it to MSRC 2025 Most Valuable Security Researcher leaderboard 🥳 Congratulations to all the other researchers! msrc.microsoft.com/leaderboard
Synacktiv tweet media
English
1
7
49
4K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
🔐 Data encryption in Laravel environments is based on one secret: the APP_KEY. Our ninja @_remsio_ studied the impact of its leakage on the internet during an entire year. synacktiv.com/en/publication…
English
2
38
90
8.8K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
@wil_fri3d now rocking the stage at #leHACK to present his new tool GPOParser to automate Active Directory GPOs analysis, get intel and identify new attack paths!
Synacktiv tweet media
English
1
4
14
856
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
Our ninja @kalimer0x00 is now on stage at #x33fcon to talk about his journey from dissecting SCCM until the discovery of the critical CVE-2024-43468 and the post-exploitation opportunities🔥
Synacktiv tweet media
English
1
23
98
7.8K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
Microsoft just released the patch for CVE-2025-33073, a critical vulnerability allowing a standard user to remotely compromise any machine with SMB signing not enforced! Checkout the details in the blogpost by @yaumn_ and @wil_fri3d. synacktiv.com/publications/n…
English
5
259
599
209.4K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
For our last talk, @croco_byte explains how to exploit SCCM policies to harvest credentials 🔑 #SSTIC2025
Synacktiv tweet media
English
2
8
23
2.5K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
It's now time for @aevy__ and Paul Barbe to present Azure conditional access policies ☁️ #SSTIC2025
Synacktiv tweet media
English
0
8
31
2.1K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
For our second talk of the day, @flgy presents Mofos, a virtual machines manipulation framework to mimic QubesOS on a standard Linux distribution #SSTIC2025
Synacktiv tweet media
English
0
7
28
2.5K
Load. nag-retweet
Synacktiv
Synacktiv@Synacktiv·
For the second year in a row, we managed to get first place at the #HackTheBox Business #CTF 2025! 🥇 Congratulations to @gmo_ierae and Downscope and thanks to @hackthebox_eu for the fun challenges! 🥳
Synacktiv tweet media
English
1
23
92
7.1K