Thcon) ! RDV à partir de 19h au Rooster and Beer🐔🍺
@synacktiv.com offrira la première tournée de bières 🍻.
Il n'y aura pas de présentation cette fois-ci mais n'hésitez pas à proposer des Rumps à THCon 😉
Proud to see our teams share their latest offensive security research once again this year:
📡 Wi-Fi pentesting in 2025 & WPA3 bypasses - Quentin
🛡️ Cross-domain & cross-forest RBCD - Simon
🏴 THCON pre-challenge write-up - @0xf4b.bsky.social
Great work everyone 👏
Proud to see our teams share their latest offensive security research once again this year:
📡 Wi-Fi pentesting in 2025 & WPA3 bypasses - Quentin
🛡️ Cross-domain & cross-forest RBCD - Simon
🏴 THCON pre-challenge write-up - @0xf4b.bsky.social
Great work everyone 👏
For the first talk, Quentin presented "Tapping into the SCCM policies goldmine".
For the second talk, Rémi and Mickaël presented "Deep dive in Laravel encryption".
#THCON2025
For the first talk, Quentin presented "Tapping into the SCCM policies goldmine".
For the second talk, Rémi and Mickaël presented "Deep dive in Laravel encryption".
#THCON2025
cpu.dascritch.net/post/2026/06...
cpu.dascritch.net/post/2026/06...
youtu.be/KynarJXVI1c?...
youtu.be/KynarJXVI1c?...
Thcon) ! RDV à partir de 19h au Rooster and Beer🐔🍺
@synacktiv.com offrira la première tournée de bières 🍻.
Il n'y aura pas de présentation cette fois-ci mais n'hésitez pas à proposer des Rumps à THCon 😉
Thcon) ! RDV à partir de 19h au Rooster and Beer🐔🍺
@synacktiv.com offrira la première tournée de bières 🍻.
Il n'y aura pas de présentation cette fois-ci mais n'hésitez pas à proposer des Rumps à THCon 😉
Lors de la THCon (donc début mai), nous avons tenté de cerner les enjeux et peut-être une exagération publicitaire avec DXC://0 et les mitigations possibles sur la vague de failles kernel révélées par IA cpu.dascritch.net/post/2026/06...
Lors de la THCon (donc début mai), nous avons tenté de cerner les enjeux et peut-être une exagération publicitaire avec DXC://0 et les mitigations possibles sur la vague de failles kernel révélées par IA cpu.dascritch.net/post/2026/06...
cpu.dascritch.net/post/2026/06...
cpu.dascritch.net/post/2026/06...
Nous recevons DXC://0, DevSecOps et @cryptax.bsky.social , conceptrice CTF.
À écouter en podcast ou en ligne : cpu.pm/0244 et sur FMR
Nous recevons DXC://0, DevSecOps et @cryptax.bsky.social , conceptrice CTF.
À écouter en podcast ou en ligne : cpu.pm/0244 et sur FMR
🛡️ Cross-domain & cross-forest RBCD: www.synacktiv.com/en/publicati...
🏴 THCON pre-challenge write-up: www.synacktiv.com/sites/defaul...
🛡️ Cross-domain & cross-forest RBCD: www.synacktiv.com/en/publicati...
🏴 THCON pre-challenge write-up: www.synacktiv.com/sites/defaul...
Au programme de cette édition :
📅 5 & 6 mai - Conférences
⚡ 7 mai - CTF présentiel/distanciel
On vous donne rendez-vous sur place avec des surprises et un petit challenge expert 🧠
🎫 www.helloasso.com/associations...
Au programme de cette édition :
📅 5 & 6 mai - Conférences
⚡ 7 mai - CTF présentiel/distanciel
On vous donne rendez-vous sur place avec des surprises et un petit challenge expert 🧠
🎫 www.helloasso.com/associations...
L’équipe est à Toulouse pour 2 jours de cybersécurité à la THCON 2025 !
Au menu :
🧩 Challenges découverte, sensibilisation & pro
💣 Challenge expert sur une Pico vulnérable avec surprises pour les dix 1ers ;)
#CTF #Cybersécurité #RootMePRO
L’équipe est à Toulouse pour 2 jours de cybersécurité à la THCON 2025 !
Au menu :
🧩 Challenges découverte, sensibilisation & pro
💣 Challenge expert sur une Pico vulnérable avec surprises pour les dix 1ers ;)
#CTF #Cybersécurité #RootMePRO
📍 Lille – Forum INCYBER (FIC) - Stand H21| 1-3 avril 2025
🎮 Boulogne-Billancourt – Festival Hauts De Seine Digital Games | 4-5 avril 2025
🚩 THCON | 10-11 avril 2025
🚀 Paris – Rencontres Yes We Code! | 23 mai 2025
🛡️ Lyon – RCyberARA | 11 juin 2025
📍 Lille – Forum INCYBER (FIC) - Stand H21| 1-3 avril 2025
🎮 Boulogne-Billancourt – Festival Hauts De Seine Digital Games | 4-5 avril 2025
🚩 THCON | 10-11 avril 2025
🚀 Paris – Rencontres Yes We Code! | 23 mai 2025
🛡️ Lyon – RCyberARA | 11 juin 2025
youtu.be/KynarJXVI1c?...
youtu.be/KynarJXVI1c?...
I can’t even think the story is so unbelievable on so many levels!! I cannot understand why somebody would lie about being pregnant to over 50 professionals and even go to the hospital
I can’t even think the story is so unbelievable on so many levels!! I cannot understand why somebody would lie about being pregnant to over 50 professionals and even go to the hospital
Part 2 runs on the same Flask codebase as Part 1, exposing the same SQL-injectable /?id= endpoint. The key difference is that the admin-only /add_agent endpoint renders stored agent data through a Jinja2 template without sanitisation,…
Part 2 runs on the same Flask codebase as Part 1, exposing the same SQL-injectable /?id= endpoint. The key difference is that the admin-only /add_agent endpoint renders stored agent data through a Jinja2 template without sanitisation,…
This challenge presents a small Flask-based web application that exposes an agent management database. Despite the challenge name suggesting Cross-Site Scripting (XSS), the actual vulnerability chain is rooted in SQL Injection (SQLi) —…
This challenge presents a small Flask-based web application that exposes an agent management database. Despite the challenge name suggesting Cross-Site Scripting (XSS), the actual vulnerability chain is rooted in SQL Injection (SQLi) —…
✨ Paris - Festival Ma Vie Pro | 11/04
🔐 Lyon - Club EHRMP #31 (Clusir Auvergne-Rhône-Alpes) « Désérialisation »| 23/04
🚀 Toulouse -THCON | 5-7/05
🔐 Lyon - Club EHRMP #32 (Clusir Auvergne-Rhône-Alpes) « Analyse de logs IoT »| 21/05
✨ Paris - Festival Ma Vie Pro | 11/04
🔐 Lyon - Club EHRMP #31 (Clusir Auvergne-Rhône-Alpes) « Désérialisation »| 23/04
🚀 Toulouse -THCON | 5-7/05
🔐 Lyon - Club EHRMP #32 (Clusir Auvergne-Rhône-Alpes) « Analyse de logs IoT »| 21/05