InfoSec R&D

Joined July 2010
17 Photos and videos
Ajax retweeted
24 Dec 2024
Nous sommes à la recherche de volontaires pour réaliser le challenge SSTIC 2025 ! Si vous êtes intéressé vous pouvez retrouver les informations pour nous contacter sur sstic.org/ ! Bonne fêtes ☃️

20
17
2,699
30 Apr 2024
github.com/commial/experimen… Little experiment about reusing Windows Defender built-in unpackers, mostly for fun (based on the very useful @taviso's loadlibrary)
2
30
82
9,736
30 Apr 2024
Even if it works for some (old) commercial packers, it seems that nowadays malware authors prefer one-time & custom packers... So likely not that useful, but still fun to make 🤷
2
477
Ajax retweeted
29 Mar 2024
The SSTIC challenge 2024 is now opened and english friendly! You can find it here : sstic.org/2024/challenge! Good luck!

26
29
6,683
Ajax retweeted
27 Jan 2024
Do you wish Time Travel Debugging was faster and more lightweight? Our latest version lets you decide exactly what you want recorded! Select modules to record or use the API for full control. Get your recording just the way you like it. Crusts optional. aka.ms/ttd
3
25
79
53,395
Ajax retweeted
Write up of the HVCI bypass vuln (CVE-2024-21305) with @aall86 ! tandasat.github.io/blog/2024…
4
116
290
50,530
Ajax retweeted
1 Dec 2023
L’@ANSSI_FR lance #Hackropole 🏛 une plateforme regroupant la quasi-totalité des épreuves du France Cybersecurity Challenge #FCSC. 🇫🇷 🏆 Une centaine d’épreuves est déjà disponible ! 💪 🚀Rendez-vous dès maintenant sur : cyber.gouv.fr/actualites/lan… #ANSSI #numérique #FCSC #ECSC
1
170
446
51,512
Ajax retweeted
24 Jul 2023
First big result from our new CPU research project, a use-after-free in AMD Zen2 processors! 🔥 AMD have just released updated microcode for affected systems, please update! lock.cmpxchg8b.com/zenbleed.…

ALT Demo of a CPU vulnerability leaking data

34
651
1,748
337,884
Ajax retweeted
8 Jun 2023
Honored to be invited to speak at @sstic today. Stream my talk “Deep Attack Surfaces, Shallow Bugs” here: streaming.sstic.org/

7
37
218
36,980
Ajax retweeted
12 Apr 2023
La billetterie de SSTIC 2023 ouvrira demain, le 13 avril à 10h00. Retrouvez les instructions sur sstic.org/2023/news/inscript…

1
14
23
6,872
Ajax retweeted
10 Apr 2023
A short🧵 detailing a Kerberos LPE I discovered while working with @tiraniddo on our BlackHat research. msrc.microsoft.com/update-gu… (CVE-2023-21817) This was fixed in Feb, but I think some will find the vulnerability & exploitation interesting. 1/

2
117
240
48,083
Ajax retweeted
30 Mar 2023
Le challenge sera publié ce vendredi 31 mars à 19h00, heure de Paris à l'adresse suivante : sstic.org/2023/challenge/ À vos marques !

27
38
7,258
Ajax retweeted
22 Mar 2023
Le programme est disponible : sstic.org/2023/programme/ ! La billetterie ouvrira dans les prochaines semaines.

36
34
7,939
Ajax retweeted
26 Jan 2023
If you use @obsdmd for your #pentest / #redteam or #threatintel notes, you might be interested in the IVRE community plugin for #Obsidian, that uses data from IVRE to enrich your notes. Get it from Obsidian (in community plugins, look for "ivre") or see github.com/ivre/obsidian-ivr…
1
4
6
1,414
Ajax retweeted
2 Jan 2023
Comment bien commencer la nouvelle année ? En soumettant à SSTIC ! Vous avez jusqu'au 30 janvier. Toutes les infos : sstic.org/2023/cfp/

22
16
5,205
Ajax retweeted
13 Dec 2022
My first blog post about analyzing windows defender is out! Fuzzing the Shield: CVE-2022–24548 - medium.com/s2wblog/fuzzing-t…
2
179
476
Ajax retweeted
The results are out! We are very honoured to have won first place🥇in the Hex-Rays plugin contest 2022 🎉 Our entry was "ttddbg", a time-travel debugging plugin for IDA already presented at #SSTIC 2022. Many congratulations to all the other entrants!
27 Sep 2022
🥁 We have the winners of the Hex-Rays Plugin Contest 2022! Our congratulations go to: 🥇 ttddbg by @simsor and @citronneur 🥈 ida_kcpp by Uriel Malin and Ievgen Solodovnykov 🥉 FindFunc by Felix B. Take a look at the full list: hex-rays.com/contests_detail… #PluginContest #IDA
6
21
62
18 Jul 2022
New release of github.com/commial/ttd-bindi…, featuring more API wrapping (thanks @citronneur), and new examples: coverage (LightHouse compatible) and a trace producer for the awesome Tenet plugin (cc @gaasedelen)
1
16
53
Ajax retweeted
31 May 2022
After 3 years of development, today we proudly announce & celebrate the first release of a new hypervisor-based user-mode & kernel-mode debugger, @HyperDbg. 🎉 As an alternative to #Windbg, HyperDbg is mainly built for analyzing, reversing, and fuzzing! github.com/HyperDbg/HyperDbg
19
282
740