Sign in

kevintell.bsky.social

@kevintell.bsky.social
29 followers 137 following 2 posts
PostsRepliesMedia
Reposted by @kevintell.bsky.social
Entrypoint @entrypoint-fr.bsky.social · 17/09/2026
Still thinking about submitting a talk? Now’s the time. The CFP for EntryPoint 2027 closes on 20 September 2026. 19–20 March 2027 Le Dernier Étage, Paris Submit your talk before the deadline: cfp.entrypoint.fr/entrypoint-2... See you on stage!
012
Reposted by @kevintell.bsky.social
Entrypoint @entrypoint-fr.bsky.social · 07/09/2026
🔥 What are you bringing to #Entrypoint? New technique? Tool release? Real-world compromise? Deep technical offensive security talk? 🎤 CFP closes 20 September. 📅 19-20 March 2027 | 📍 Paris ➡️ cfp.entrypoint.fr/entrypoint-2027/cfp
023
Reposted by @kevintell.bsky.social
Entrypoint @entrypoint-fr.bsky.social · 04/09/2026
Our website is now live! Everything you need to know about Entrypoint 2027 is now in one place. 📅 19-20 March 2027 📍 Paris, France 🎤 CFP is open Explore the event and submit your talk ⬇️ www.entrypoint.fr
entrypoint.fr
Entrypoint 2027 — Offensive Security Conference in Paris
Entrypoint is an offensive security conference in Paris on 19 & 20 March 2027: two days of talks and four days of hands-on trainings on Red Teaming, initial access, Active Directory compromise, supply...
043
Reposted by @kevintell.bsky.social
Entrypoint @entrypoint-fr.bsky.social · 18/08/2026
🚨 The Entrypoint 2027 CFP is still open! AD, Cloud, CI/CD, Initial Access, web exploitation... if you've got a technique or a real-world engagement story, we want to hear it. ➡️ cfp.entrypoint.fr/entrypoint-2027/cfp 🎫 Website and ticketing information will be released soon!
011
Reposted by @kevintell.bsky.social
Entrypoint @entrypoint-fr.bsky.social · 18/06/2026
We've been working on something for a while. The talks your blue team doesn't want you to see. 🔴 Red Teaming. Initial Access. AD. Cloud & Web exploitation. 📍 Paris - Le Dernier Étage 📅 March 19–20, 2027 entrypoint.fr CFP and additional details coming soon.
085
Reposted by @kevintell.bsky.social
Entrypoint @entrypoint-fr.bsky.social · 29/06/2026
🚨 The #Entrypoint2027 Call For Papers is now open! Have original offensive security research to share? New techniques, tools, or attack stories ? We want to hear from you. 📅 CFP closes: Sept 20, 2026. Our review board will be revealed soon. 👉 cfp.entrypoint.fr/entrypoint-2...
0109
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 14/04/2026
Double trouble at #SOCON2026! Our ninja @kalimer0x00.bsky.social was busy breaking down Microsoft SCCM (once again!), while @quent0x1.bsky.social unveiled new GPO-based attack paths & his latest Bloodhound contributions targeting OUs & AD Sites. Awesome job! 👏
022
Reposted by @kevintell.bsky.social
TrendAI Zero Day Initiative @thezdi.bsky.social · 22/01/2026
In a highlight from Day One of #Pwn2Own Automotive 2026, @synacktiv.com targets the #Tesla infotainment system. #P2OAuto youtube.com/shorts/DKYT-...
youtube.com
From Pwn2Own Automotive 2026 Day 1: Synacktiv vs. Tesla
YouTube video by TrendAI Zero Day Initiative
063
Reposted by @kevintell.bsky.social
TrendAI Zero Day Initiative @thezdi.bsky.social · 22/01/2026
Verified! Synacktiv (@synacktiv) targeted the Autel MaxiCharger AC Elite Home 40A with the Charging Connector Protocol/Signal Manipulation add‑on. In Round 2, they exploited one stack‑based buffer overflow, earning $30,000 USD and 5 Master of Pwn points. #Pwn2Own #P2OAuto
001
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 14/11/2025
Our ninjas are in Vienna for the T-REX conference! 🎤 @kevintell.bsky.social delivered a session exploring advanced Red Team lateral movement techniques built on DCOM - a great opportunity to exchange practices with fellow experts. Thank you to the @oenb.at for hosting such a great event!
011
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 06/11/2025
🇫🇷 During "Le Big Bang de l’Économie" by #LeFigaro, @kevintell.bsky.social gave a live pentest demo, showing how easily data can be exposed when systems aren’t properly secured: youtu.be/XVJUF1zt1FE 👉 Watch the whole show: video.lefigaro.fr/figaro/econo...
youtu.be
[Le Big Bang de l’Économie - Le Figaro] Cybersécurité : sommes-nous vraiment prêts ?
YouTube video by Synacktiv
032
Reposted by @kevintell.bsky.social
SpecterOps @specterops.io · 23/10/2025
Credential Guard was supposed to end credential dumping. It didn't. Valdemar Carøe just dropped a new blog post detailing techniques for extracting credentials on fully patched Windows 11 & Server 2025 with modern protections enabled. Read for more: ghst.ly/4qtl2rm
ghst.ly
Catching Credential Guard Off Guard - SpecterOps
Uncovering the protection mechanisms provided by modern Windows security features and identifying new methods for credential dumping.
01710
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 26/09/2025
How safe is your browser? Our ninja, Riadh Bouchahoua, uncovers how attackers can exploit Chromium extension loading to steal data, maintain persistent access, and breach confidentiality on Chromium-based browsers. Read more here ⬇️ www.synacktiv.com/en/publicati...
synacktiv.com
The Phantom Extension: Backdooring chrome through uncharted pathways
The Phantom Extension: Backdooring chrome through uncharted pathways
032
Reposted by @kevintell.bsky.social
SpecterOps @specterops.io · 29/09/2025
Lateral movement getting blocked by traditional methods? @werdhaihai.bsky.social just dropped research on a new lateral movement technique using Windows Installer Custom Action Server, complete with working BOF code. ghst.ly/4pN03PG
ghst.ly
DCOM Again: Installing Trouble - SpecterOps
DCOM lateral movement BOF using Windows Installer (MSI) Custom Action Server - install ODBC drivers to load and execute DLLs
093
Reposted by @kevintell.bsky.social
Dirk-jan @dirkjanm.io · 17/09/2025
I've been researching the Microsoft cloud for almost 7 years now. A few months ago that research resulted in the most impactful vulnerability I will probably ever find: a token validation flaw allowing me to get Global Admin in any Entra ID tenant. Blog: dirkjanm.io/obtaining-gl...
dirkjanm.io
One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens
While preparing for my Black Hat and DEF CON talks in July of this year, I found the most impactful Entra ID vulnerability that I will probably ever find. One that could have allowed me to compromise ...
98738
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 12/09/2025
🧑‍🎓 Boost your offensive Active Directory skills with our Entry & Advanced trainings. Hands-on labs with dozens of machines + latest research from DEFCON, x33fcon & more! Seats are limited, don’t miss out! 🔗 Entry: www.synacktiv.com/en/offers/tr... 🔗 Advanced: www.synacktiv.com/en/offers/tr...
042
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 16/09/2025
DCOM is everywhere, but its inner workings feel like black magic. 🪄 Unveil the mystery with @kevintell.bsky.social's new article on DCOM basics. Trust us, it's way cooler than it sounds! www.synacktiv.com/en/publicati...
083
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 08/08/2025
🔒 Can you really trust your zero trust? We (re)discovered a vulnerability in Zscaler Client Connector that allowed bypassing device posture checks, and it was still exploitable in the wild. Full technical deep dive + remediation tips 👉 www.synacktiv.com/en/publicati...
synacktiv.com
Should you trust your zero trust? Bypassing Zscaler posture checks
Introduction Posture checks are a key component of zero trust architectures.
054
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 02/07/2025
🚨 Still a few days to register for our Azure Intrusion for Red Teamers training at #BHUSA! Very hands-on, full kill chain from zero to Global Admin with stealth in mind. Secure your seat now! www.blackhat.com/us-25/traini...
056
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 13/06/2025
Our ninja @kalimer0x00.bsky.social is now on stage at #x33fcon to talk about his journey from dissecting SCCM until the discovery of the critical CVE-2024-43468 and the post-exploitation opportunities🔥
086
Reposted by @kevintell.bsky.social
Hexacon @hexacon.bsky.social · 15/04/2025
Azure intrusion for red teamers by Paul Barbé & Matthieu Barjole www.hexacon.fr/trainer/barb...
088
Reposted by @kevintell.bsky.social
Andrea P @decoder-it.bsky.social · 28/04/2025
I just published a blog post where I try to explain and demystify Kerberos relay attacks. I hope it’s a good and comprehensive starting point for anyone looking to learn more about this topic. ➡️ decoder.cloud/2025/04/24/f...
decoder.cloud
From NTLM relay to Kerberos relay: Everything you need to know
While I was reading Elad Shamir recent excellent post about NTLM relay attacks, I decided to contribute a companion piece that dives into the mechanics of Kerberos relays, offering an analysis and …
183
Reposted by @kevintell.bsky.social
SpecterOps @specterops.io · 02/04/2025
That's all folks! 👋 Thank you to everyone who attended & presented talks during our #SOCON2025 conference days. Our training courses kickoff tomorrow at 9AM back at Convene.
042
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 28/03/2025
Synacktiv is looking for an additional team leader in Paris for its Reverse-Engineering Team! Find out if you are a good candidate by reading our offer (🇫🇷). www.synacktiv.com/responsable-...
synacktiv.com
Responsable équipe reverse engineering
076
kevintell.bsky.social @kevintell.bsky.social · 21/03/2025
I had the privilege to attend this training at Synacktiv and it might be the best training you can get when it comes to Azure given by two guy who does Red Team all year round on this subject. Don't wait !
001
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 27/01/2025
In our latest article, @croco_byte proposes an implementation of a trick discovered by James Forshaw in his research regarding Kerberos relaying. Discover how to perform pre-authenticated Kerberos relay over HTTP with our Responder and krbrelayx pull requests! www.synacktiv.com/publications...
synacktiv.com
Abusing multicast poisoning for pre-authenticated Kerberos relay over HTTP with Responder and krbrelayx
01612
Reposted by @kevintell.bsky.social
Synacktiv @synacktiv.com · 20/01/2025
Yay! Our offensive Azure training was accepted at BlackHat USA 2025 🥳 Can't wait to see you there and share cutting-edge techniques for attacking Azure environments!
097