Advertisement Β· 728 Γ— 90
#
Hashtag
#Synacktiv
Advertisement Β· 728 Γ— 90
Video

Active #RDP connections can reveal the client hostname πŸ”Ž
A key indicator for investigations & #CTI: some attackers reuse hostnames.
Traces to check: CLIENTNAME env variable & RDP printer redirection.

πŸ›‘οΈ Incident? Contact #Synacktiv CSIRT 24/7: csirt@synacktiv.com

2 1 0 0
Video

πŸ” Synacktiv training courses - April 2026

Hands-on #cybersecurity courses led by #Synacktiv experts: Cloud Forensics (AWS), Azure & AD intrusion tactics.
πŸ“… March-April | Onsite & Remote
πŸ‘‰ www.synacktiv.com/en/offers/tr...

0 0 0 0
Video

πŸ”’ Feb 2026: #cybersecurity training with #Synacktiv!

5&6 Feb: Kubernetes Intrusion Tactics (Paris, FR)
9&10 Feb: AWS Intrusion Tactics (Paris, FR)
9-11 Feb: Malware Analysis (Remote, EN)
16-20 Feb: Attacking Web Apps (Paris, FR)

βœ… Register now: www.synacktiv.com/en/offers/tr...

0 0 0 0
Video

Winter is here, it's time to test your assembly skills with the #Synacktiv Winter Challenge πŸ‚.
A code golf competition that guarantees hours of intense x86 instruction optimization!

πŸ”— Participate here: www.synacktiv.com/en/publicati...

3 1 0 1
Post image

πŸš€ It’s the big day for the #CBCToulouse!

The #Synacktiv team is on-site and ready to connect with you throughout the event.
πŸ“ Visit our booth to learn more about our areas of expertise and our career opportunities!

πŸ“… 26–27 November 2025
ℹ️ More information: cbc-convention.com

0 0 0 0
Post image

Amazing few days at #MilipolParis 2025!

Thanks to everyone who visited our stand - your insights were truly inspiring.
Big thanks to the Milipol team and our specialists for making it a success πŸš€

See you soon!

#Synacktiv #MobileDeviceForensics

1 0 0 0
Post image

[ #EuropeanCyberWeek ]

Did you miss us yesterday? No worries, there's still time to visit #Synacktiv at booth 98!

Come discuss cybersecurity challenges and learn about our offensive security expertise. We're here until Thursday πŸ˜‰

#ECW2025 #Rennes

0 0 0 0

Meet our #Synacktiv and @revel-io.bsky.social experts at #Milipol, from Tuesday 18 to Friday 21 November 2025!

πŸ“ Visit us at Stand H063 (Hall 4 – Forensic Zone).

ℹ️ www.milipol.com/fr-FR

1 1 0 0
Post image

Only 7 days to go until the #ECW gets underway!

#Synacktiv is all set and ready to showcase our #cybersecurity expertise.

πŸ“ Do come and visit us at stand 98

1 0 0 0

Thinking about applying to #Synacktiv?

Before sending in your application, take a few minutes to explore our candidate #FAQ.
🎯 Our goal: to help you better understand who we are, how we work, and what we value in future teammates.

πŸ‘‰ Find all the answers here: www.synacktiv.com/faq-recrutem...

0 0 0 0
Post image

A big shout-out to the #Synacktiv team for their strong performance at the latest #Pwn2Own competition in Cork!
They proudly secured third place overall πŸ‘

Next stop: Tokyo for the upcoming edition πŸ‡―πŸ‡΅ πŸ‘€

More details on the targets and participants here ℹ️
www.zerodayinitiative.com/blog/2025/20...

3 3 0 0
Post image

πŸŽ‰ Big win at #Pwn2Own Cork!

@pol-y.bsky.social of #Synacktiv successfully breached the @Ubiquiti AI Pro surveillance system 🦈🎢

What a way to wrap up the challenge - congrats, @pol-y.bsky.social πŸ’ͺ

7 6 0 0
Post image

Congrats to tek and anyfun for landing the first successful entry at #Pwn2OwnCork - exploiting a stack overflow on Synology BeeStation Plus for $40,000 and 4 Master of Pwn points in the process πŸ’₯

Let’s keep pushing πŸ’ͺ

#P2OIreland #Synacktiv

4 4 0 0
Post image

The #Synacktiv team is attending #Hexacon2025, the premier event dedicated to offensive security!
Come meet our experts over two days packed with technical talks, real-world feedback, and engaging discussions.

πŸ—“οΈ Friday, October 10 & Saturday, October 11, 2025
πŸ”— More info : www.hexacon.fr

0 0 0 0
Preview
Exploiting Public APP_KEY Leaks to Achieve RCE in Hundreds of Laravel Applications Laravel APP_KEY leaks enable RCE via deserialization attacks. Collaboration with Synacktiv scaled findings to 600 vulnerable applications using 260K exposed keys from GitHub. Analysis reveals 35% of exposures coincide with other critical secrets including database, cloud tokens, and API credentials.

#Security Alert: Massive #Laravel APP_KEY leak exposing 600+ apps to remote code execution 🚨 #GitGuardian & #Synacktiv research reveals 260,000 exposed keys on #GitHub with potential RCE via deserialization attacks #cybersecurity #php #opensource

blog.gitguardian.com/exploiting-...

6 3 0 0

Whew! It took two attempts but the #Synacktiv team successfully exploited the #ChargePoint EV Charger and demonstrated signal manipulation over the connector. They are off to the disclosure room to go over how they did it. #P2OAuto #Pwn2Own

10 7 1 0