Pentester | Bug Hunter 🇫🇷

Just published a quick blogpost about my failing journey trying to get a valid entry for this edition. link.medium.com/AJgtsUo2MNb I'll keep trying until I succeed! In the meantime I wish good luck to all participants and may the demo God be with you 🤘
Registration for #Pwn2Own Ireland is officially closed!! We officially have a plethora of attempts, which means a lot to us. Tune in for the drawing for order next Monday, Oct 20, 14:30 Cork time (GMT+1) piped.video/live/Km4nRs9HexM…
3
11
52
7,616
SpawnZii retweeted
🎵 Please don't pwn the music 🎵 Who could say no to a party before a #LHE? Not our bug hunters! They joined our pre-hack party last Friday after an exciting 1st day at @_leHACK_. With fresh beer, great music & amazing people, it was surely a night to remember! #HackThePlanet
2
6
37
3,628
Just got a reward for a critical vulnerability submitted on @yeswehack -- OS Command Injection (CWE-78). #YesWeRHackers
3
29
1,807
SpawnZii retweeted
Awesome work from @aituglo ! Try hackyx.io for learning, find way to exploit vulnerabilities, read write up. It’s a real game changer and it’s free ! Send us your suggestions for data to scrape or feel free to contribute to the github repo. 😁
Hackyx now fully has filters to easily find anything ! hackyx.io Also a big thanks to @Wlayzz for adding huntr.dev/ reports
3
13
1,825
Slightly late, but I was also lucky enough to take part in HMIF @yeswehack at @LouisVuitton A great event with great people !
20
1,114
SpawnZii retweeted
I've stumbled upon another security issue with macro execution in @LibreOffice! 😅
2
5
34
2,598
Thanks for the swag 🧦 ☕️ @yeswehack
6
1
67
3,957
SpawnZii retweeted
Our ninja @_Worty in collaboration with @SpawnZii (from @Bzhunt1) found 5 vulnerabilities allowing to compromise accounts and execute arbitrary commands on GestSup. Update to 3.2.45 and read the security details in the technical advisory: synacktiv.com/advisories/mul…
21
64
12,158
SpawnZii retweeted
Our ninja @_Worty identified a remote code execution from a privileged user in Cisco Access Point WAP371. This vulnerability referenced as CVE-2024-20287 will not be patched, apply network restrictions to protect your appliances. synacktiv.com/advisories/rem…
7
35
169
12,041
In September, I looked into mlflow, and found several critical vulnerabilities 😁 Most of these reports are now patched and publicly available here: huntr.com/users/kevin-mizu My favorite one involves a fully controlled file write via a custom rogue FTP 👇huntr.com/bounties/029a3824-…
6
18
94
7,628
📣 Give it up to the brave survivors of Brains & Bytes 📣 #UniversityCTF23 has come to an end, and these are its champions: 🥇 @GCC_ENSIBS 🥈 @EsnaBretagne 🥉 @Phreaks2600 Thank you, everyone, for participating in the epic #CTF, and of course, stay tuned for more to come 😉 #HackTheBox #HTB #Cybersecurity #CaptureTheFlag
6
26
154
17,409
I'm a real hacker on @yeswehack
5
60
2,662
SpawnZii retweeted
Un immense merci à l'organisation du @HeroCTF pour son infra et ses challenges d'une qualité exceptionnelle ! 👏 Bravo à tous les participants et félicitations à nos joueurs @0xItarow @shinji_01h @Gaburall @SpawnZii @Atlas453_ pour leur performance ! 🔥🔥
End of the CTF ! 🔥 The writeups will be available shortly: github.com/HeroCTF/HeroCTF_v… GG to everyone and to the winners @MedusHack ! Many thanks to our sponsors 🙏 Really hope you enjoyed😄
2
7
28
3,484
SpawnZii retweeted
End of the CTF ! 🔥 The writeups will be available shortly: github.com/HeroCTF/HeroCTF_v… GG to everyone and to the winners @MedusHack ! Many thanks to our sponsors 🙏 Really hope you enjoyed😄
2
15
57
21,474
SpawnZii retweeted
[THREAD] Les intimidations de 2600 après le PWNME, quelle ambiance ! 1/10
6
57
151
129,463
SpawnZii retweeted
Très fier de finir à la première place avec les potes de l’ @EsnaBretagne :) Gg a vous @Atlas453_ @DinerHell @0xItarow @Gaburall @SpawnZii @iHuggsy @D1n0x0r & d’autres :) Huge play aux potes de @gcc_ensibs , on a eu chaud vous étiez bouillant :p
Voici le classement complet de cette #EC2 2023 ! 🏆 Un grand bravo aux ESNARCOTRAFIQUANTS pour leur victoire ! 👏
15
15
105
13,647
SpawnZii retweeted
CVE-2022-37155 RCE in SPIP 3.1.13 through 4.1.2 allows remote authenticated users to execute arbitrary code via a GET parameter cve.mitre.org/cgi-bin/cvenam…
3
9