VR @Synacktiv | CTF with @RMUBYGG, @Hexagonctf, @ECSC_TeamFrance 20/21/22/23/24

Joined August 2018
16 Photos and videos
voydstack retweeted
Another excellent edition of #SSTIC2026 🎉 Several #Synacktiv consultants were proud to present their research and exchange ideas with the cybersecurity community. Congratulations to all our speakers! Find all presentations here: sstic.org/2026/programme/
3
22
1,980
voydstack retweeted
📢 CALL FOR PAPERS IS OPEN! 📢 Ready to share your latest security research with the community at Hexacon? The stage is yours. Submit your talks here: hexacon.fr/conference/call-f… 💻✨
22
46
7,241
voydstack retweeted
🔥 Excited to announce our keynote! We are thrilled to welcome Bruce Dang (@brucedang) and Thai Duong (@XorNinja) from @calif_io! With all their recent AI buzz, we had to check they aren't just LLMs in a trench coat. 🤖🧥 🎟️ Ticketing opens this Thursday at 2:00 PM CEST ⏰
1
27
80
8,592
voydstack retweeted
Offensivecon's talks are now available on our YouTube channel! 🔗 buff.ly/g63xgm5
1
100
340
24,549
voydstack retweeted
Windows Internals for Security Engineers by @yarden_shafir 📅 Oct 12-15 📍 Espace Vinci or Espace Cléry, Paris 2nd 👉 hexacon.fr/trainer/windows_i…
7
28
2,823
voydstack retweeted
Practical Baseband Exploitation by @pedrib1337 and Vitor Pedreira 📅 Oct 12-15 📍 Espace Vinci or Espace Cléry, Paris 2nd 👉 hexacon.fr/trainer/practical…
5
21
2,153
voydstack retweeted
iOS for Security Engineers by Quentin Meffre (@0xdagger) and Victor Cutillas (@v1csec) 📅 Oct 12-15 📍 Espace Vinci or Espace Cléry, Paris 2nd 👉 hexacon.fr/trainer/ios_for_s…
5
20
1,721
voydstack retweeted
Bug Hunting in Hypervisors by Corentin Bayet (@OnlyTheDuck) and @BrunoPujos 📅 Oct 12-15 📍 Espace Vinci or Espace Cléry, Paris 2nd 👉 hexacon.fr/trainer/bug_hunti…
11
29
3,491
voydstack retweeted
May 15
RIP for all 6 entries. The last-minute patch turned out quite solid. So I decided to give my exploit a proper goodbye. Enjoy! github.com/kiddo-pwn/ffffire…
6 Firefox entries at pwn2own. 5 withdrawals due to our 150.0.3 security release. 1 failed attempt. 0 Exploits. No incidents. Time to party :)
11
68
486
88,646
voydstack retweeted
That's my chain — a full chain w/ logic bugs only! No memory corruption, no AI, and of course no collisions at all 😉
Confirmed! Orange Tsai (@orange_8361) of DEVCORE Research Team (@d3vc0r3) chained 4 logic bugs to achieve a sandbox escape on Microsoft Edge, earning $175,000 and 17.5 Master of Pwn points. Full win! #Pwn2Own #P2OBerlin
112
366
2,568
211,687
voydstack retweeted
🚗🔌 @Tesla patched our #Pwn2Own Automotive 2025 Wall Connector exploit with an anti-downgrade mechanism. #Synacktiv experts bypassed it and replayed the same attack through the charging cable. Part 2 write-up👇 synacktiv.com/en/publication…
11
60
4,254
voydstack retweeted
It's live! ➡️ hexacon.fr/register/
10
18
5,049
voydstack retweeted
Make it blink! This new article unpacks how Mehdi and Matthieu achieved an over-the-air exploitation of the #PhilipsHue Bridge via a #Zigbee bug. Read all about the technical details, how they proved it is exploitable at #Pwn2Own Cork 2025, and the underlying vulnerability here 👇 synacktiv.com/en/publication…
18
76
6,420
voydstack retweeted
This second blogpost concludes @yaumn_'s research on #Windows authentication reflection. He discloses the new Kerberos authentication coercion technique he discovered to remotely compromise Windows systems 💥 A little bonus is even included at the end 👀👇 synacktiv.com/en/publication…
2
56
125
11,750
voydstack retweeted
Authentication reflection attacks are still not dead! In our new blogpost series, @yaumn_ shares his journey into bypassing the mitigations of CVE-2025-33073 to pop SYSTEM shells again🚀 👇 synacktiv.com/en/publication…
2
55
153
15,692
voydstack retweeted
The training lineup for Hexacon 2026 is now available on our website 🧑🏼‍🏫 Training tickets sales will officially launch in mid-May 🎫 hexacon.fr/trainings/
1
12
26
16,446
voydstack retweeted
So glad to finally be able to present this research at @BlackHatEvents Asia! Blogposts are coming soon, on the menu: LPE via local NTLM reflection and RCE via a new arbitrary Kerberos authentication coercion technique 👀
Tomorrow, @yaumn_ will be presenting his research on Windows authentication reflection at @BlackHatEvents Asia 2026 in Singapore! The talk will be at 15:20 local time in Simpor Junior Ballroom 4810, come say hi! 😄 #BHASIA ℹ️ blackhat.com/asia-26/briefin…
11
44
3,456
voydstack retweeted
Mozilla says Mythos helped identify 271 vulnerabilities in Firefox 150. I went through the commits, CVEs, and bug links to see what that number really means. My takeaway: relax folks. xark.es/b/mythos-firefox-150
10
118
750
118,015