SATURDAY 4 NOVEMBER 2023

Unlock conferences

Capitalize on foreign digital interference campaigns. retex viginum

Anaïs MEUNIER

French

10:00 – 10:30

The duty of vigilance and protection against foreign digital interference (VIGINUM) is to detect and characterize foreign digital interference operations and campaigns. Being able to implement different operating methods, these malicious actions mainly result in inauthentic behaviour aimed at disseminating content in order to achieve the fundamental interests of the Nation.

DISCOVERING the Biscuit authentication token

Avatar Yannick Guern

Yannick GUERN

French

10:30 – 11:00

I have always been fascinated by the problem of exchanging information in a secure way. I first discovered the JWT and these many subtleties then I was explained the Macaroons which have the possibility of being modifiable after creation.
Today, I would like to present to you with small drawings the functioning of another Token which is intended to be a synthesis of the strengths of the two aforementioned. I named it Biscuit!

{SMS}-[Send Massif Sms]

David LE GOFF

French

11:00 – 11:30

En pleine guerre de l’information et de crise énergétique, le talk va nous « amener » à réfléchir à ces crises majeures. Au travers d’un projet « Green Hacking » sorti du chalet du barbu nous mettrons en œuvre un dispositif solaire, permettant de réaliser des campagnes hameçonnage par SMS autonomes et anonymes. Nous rappellerons les méthodes de ce type de campagne et comment s’en protéger. L’intervention détaillera la façon de construire un dispositif capable de lancer des salves de SMS à la demande.

IN TWO MINUTES, a hacker redraws your (digital) portrait

Baptiste ROBERT

English

11:30 – 12:00

Every day you leave traces on the Internet without knowing it. During this talk, Baptiste Robert will show you how a malicious person can, from very little information (first and last name, nickname, etc.), find out almost everything about your life.

B2B COMPROMISE: BOX BACKBONE

Mathis CARIOU, Liang ZHONG, Alexandre SOULEAU

French

13:45 – 14:30

Les réseaux de télécommunication des opérateurs Internet ont aujourd’hui un rôle crucial dans notre travail, mode de vie, divertissements… Il va sans dire qu’il sont éprouvés et à l’épreuve d’attaques cyber de petite envergure. Vraiment ? Dans ce talk nous présenterons comment nous avons fait pour compromettre le réseau d’un opérateur Internet lors d’un engagement. On parlera aussi hardware avec du reverse engineering rapide d’une box internet. Petit bonus à la fin : on est un peu sortis du scope.

cLASSIFICATION ET IDENTIFICATION AUTOMATIQUE DE PACKERS à partir de signatures morphologiques

Ludovic ROBIN

French

14:30 – 15:00

Packers are tools widely used to defeat malware detection and static analysis. It is essential to detect and identify these packers in order to apply specific unpacking procedures, while keeping them lighter than dynamic analysis.

using rust to imprOve your embeDded development

Fullup Le Foll

Fulup LE FOLL

English

15:00 – 15:30

Rust is a very hype programming language that provides good practices to reduce potential attacks opportunities, nevertheless it is far from being perfect. This talk proposes a summary of our lessons learnt while moving some of our embedded code from C/C++ to Rust. It highlights some of difficulties Rust as a language introduces when dealing with low level and hardware components. It also exposes some of the options we implemented to reduce SBOM dependencies and address CVE tracking and CI infrastructure.

How to Break into Organizations with Style: Hacking Access Control Systems

Julia ZDUŃCZYK

English

16:00 – 16:45

Have you ever wondered how Red Teamers manage to get access to high-security areas in buildings? This talk is your chance to learn about the tools, tactics, and techniques we use to break access control systems. The presentation is based on the experience and examples collected during the Red Team assessments and gathers in one place the knowledge needed to gain access to places protected by access cards.

prompt injections: security impacts on a real-world case

Victor POUCHERET aka DOOMER

French

16:45 – 17:15

The limits of GPT-X models were quickly bypassed by the community through “prompt-injection” attacks. However, to date, these focus on the conversational aspect and on generating content that goes beyond ethical and moral guidelines.

Beyond modus operandi: apt's criminal signature

Ronan MOUCHOUX

Ronan MOUCHOUX

English

17:15 – 17:45

Serious and organized cybercrime entities, as well as APT groups, are highly competent ecosystems that adapt to their objectives and their targets’ dispositions. What we do to counter them is to force-feed our SIEMs and EDRs with IoCs or create heuristics from stereotypical TTP playbooks formatted with a linear Cyber Kill Chain. Reflecting on the « Pyramid of Pain, » where the TTP is paramount, a Tactical Threat Intelligence Analyst and a Red Teamer are taking a step back. When you set up or join an offensive operation, you bring your knowledge, your preferences, and your comfort zone, which at a point are absorbed into the offensive organization’s heritage, be it technical, cultural, or organizational.