[SECHebdo] 25 Avril 2018
Telegram, Riot/Matrix, passphrase et code pénal, CCleaner, deep learning, ANSSI, Apple
Telegram, Riot/Matrix, passphrase et code pénal, CCleaner, deep learning, ANSSI, Apple
0-width fingerprinting, Cisco Attack SMI, VirusTotal, CloudFlare DNS, SirenJack, Arnaque Gmail+Netflix, CSP Wizard, etc.
Facebook & metadata d'appels, GoScanSSH, Interception & TLS 1.3, Carbanak, US Cloud Act, CoinHive doxxe, Phishing & homographes, etc.
Fakebank, Facebook & Cambridge Analytica, HSTS Abuse, Telegram & FSB, Vulns ZSH, Cyberattaques en Arabie-Saoudite, etc.
Retour JSSI 2018, Memfixed & Hack back, GDPR Breach, AMD Flaws, Base de données chinoise des vulnérabilités, Vulnérabilités Samba4, pydbgen, etc.
DDoS MemCrashed, Fail Trustico, Vuln SAML, FinFisher aka FinSpy, Pwned Passwords v2, etc.
GCHQ & Belgacom, AMSI Bypass, Swift, Facebook : Session ouverte & vie privée, 7Zip, iOS + Hindi = Crash, Pribot Polisis, etc.
Leak iBoot, Malware & Jeux Olympiques, Cryptomineur & CSP/SRI, Flash: KDE $(echo lol), Telegram, Netgear, Equifax, ReelPhish, etc.
AutoSploit, Zirconium, EternalRomance, Flash: Grammarly, Cisco, Wordpress, Honey Buckets, etc.
Retours CoRIIN, FIC, DCShadow, Strava, Electron, CISCO ASA, etc.
Meltdown/Spectre le retour, Intel AMT, Transmission RCE, Leak CB OnePlus, Aadhaar, LeakedSource, etc.
Meltdown et Spectre, WPA3, Autocompletion des navigateurs, etc.