aurelsec
@aurelsec.bsky.social
đ€ 311
đ„ 635
đ 19
Hackademic at S3@eurecom
reposted by
aurelsec
2 months ago
USENIX WOOT Conference 2026: two submission deadlines this year! - Cycle 1: December 12, 2025 *only one month away* ! - Cycle 2: March 3, 2026 WOOT still has a SoK track and an "Up-and-coming track" (~Industry), CFP for details:
www.usenix.org/conference/w...
0
5
6
reposted by
aurelsec
Edwy Plenel
2 months ago
C'est un document sans prĂ©cĂ©dent : les camĂ©ras-piĂ©tons des gendarmes mobiles engagĂ©s Ă Sainte-Soline en 2023 dĂ©voilent un maintien de l'ordre fascisant oĂč tous les excĂšs sont permis avec les encouragements de la hiĂ©rarchie. Ă partager.
www.mediapart.fr/journal/fran...
loading . . .
« Faut leur tirer dans la gueule ! » : la manifestation de Sainte-Soline vue par les gendarmes
Mediapart et « LibĂ©ration » rĂ©vĂšlent des images inĂ©dites du 25 mars 2023, filmĂ©es par les camĂ©ras-piĂ©tons des gendarmes. Elles montrent des consignes prohibĂ©es et dangereuses donnĂ©es par la hiĂ©rarchiâŠ
https://www.mediapart.fr/journal/france/051125/faut-leur-tirer-dans-la-gueule-la-manifestation-de-sainte-soline-vue-par-les-gendarmes
12
387
220
reposted by
aurelsec
Aurore Fass
3 months ago
Last chance to (self-) nominate for USENIX Security'26 Artifact Evaluation Committee! You should expect a low load of ~1 artifact for functionality/reproducibility assessments per cycle (max 3 for the whole year). Please support Open Science and fill the form by Oct 17:
forms.gle/WoYRX4govNY1...
đ
loading . . .
(Self-)Nomination for the USENIX Security '26 Artifact Evaluation Committee (AEC)
For the seventh year, USENIX Security allows the evaluation of artifacts that support a paper: software, hardware, evaluation data and documentation, raw measurement data, raw survey results, mechaniz...
https://forms.gle/WoYRX4govNY1xvJ29
0
8
8
reposted by
aurelsec
Hervé Schauer
3 months ago
Ă
#SecSea2k5
AurĂ©lien Francillon d'Eurecom relate les expĂ©riences hallucinantes d'Ă©coutes en reconnectant avec les documents NSA dĂ©classifiĂ©s en parallĂšle đ â Bluetooth đ§ â JTAG fait tout fuiter "quand le đđđĄđĄđđ rĂ©vĂšle le calcul de la puce" đđ» GĂ©nial đđ»
1
7
3
reposted by
aurelsec
Electronic Frontier Foundation
3 months ago
The Danish Presidency is pushing a dangerous proposal in the EU that would allow the government to scan all our private communications.
www.eff.org/deeplinks/2...
loading . . .
Chat Control Is Back on the Menu in the EU. It Still Must Be Stopped
The European Union Council is once again debating its controversial message scanning proposal, aka âChat Control,â that would lead to the scanning of private conversations of billions of people. Chat
https://www.eff.org/deeplinks/2025/09/chat-control-back-menu-eu-it-still-must-be-stopped-0
0
119
78
reposted by
aurelsec
Suzanne Smalley
3 months ago
Signal to leave EU rather than comply w/ Chat Control, which would scan all messages sent over end-to-end encrypted platforms. Vote on Chat Control's future Oct 14. Germany is the swing vote. Officials there opposed the measure in past but new govt silent re position
therecord.media/signal-calls...
loading . . .
Signal calls on Germany to vote against âChat Control,â saying it would leave EU market
The head of the Signal Foundation raised concerns around Germany now refusing to say whether it will support Chat Control in an upcoming vote.
https://therecord.media/signal-calls-on-germany-to-vote-no-chat-control
0
21
13
Interesting story how DES 56 became a 56-bit key algorithm (while having a 64-bit block size): "NSA tried to convince IBM to reduce the length of the key from 64 to 48 bits. Ultimately, they compromised on a 56-bit key."
3 months ago
1
4
2
reposted by
aurelsec
Nicolas Henin đȘđșđđ
3 months ago
Archives du 26 juillet 2024 : Emmanuel Macron écarte l'option d'un gouvernement mené par
@luciecastets.bsky.social
au nom de "la stabilité institutionnelle".
loading . . .
Emmanuel Macron écarte l'option d'un gouvernement de gauche au nom de "la stabilité institutionnelle" | TF1 INFO
[VIDĂO] Emmanuel Macron a exclu lundi soir l'idĂ©e de nommer un Premier ministre issu du Nouveau Front populaire. Les reprĂ©sentants de l'alliance de gauche dĂ©noncent "un coup de force" et appellent Ă u...
https://www.tf1info.fr/politique/nouveau-premier-ministre-emmanuel-macron-ecarte-l-option-d-un-gouvernement-de-gauche-nfp-lucie-castets-au-nom-de-la-stabilite-institutionnelle-2316301.html
53
1447
755
Tomorrow at 6:30 PM the EU Green Parliament group holds a webinar on
#ChatControl
act.greens-efa.eu/chatcontrol
loading . . .
Stop Chat Control: Why scanning all our private messages is a very bad idea
đŽ Webinar - Tue 30 Sep 18.30h CEST
https://act.greens-efa.eu/chatcontrol
3 months ago
0
5
4
reposted by
aurelsec
Natanael, Tech janitor
4 months ago
"Bad news: The proposal is going forward to be voted on on October 14th, and there's still no blocking minority achieved, as Germany reverted its position to undecided. Good news: There is still time to fight back!" Shut this monstrosity down NOW
loading . . .
The battle to stop Chat Control continues, act now!
Unfortunately, the battle against Chat Control continues this month. For human rights, for civil liberties, for safety, and for democracy, this privacy-wrecking proposal must be stopped. We need your ...
https://www.privacyguides.org/newsletters/2025/09/23/the-battle-to-stop-chat-control-continues-act-now/
0
10
10
reposted by
aurelsec
EURECOM Library
4 months ago
Le projet de loi pour espionner vos conversations privées
#WhatsApp
revient sur la table, lâopposition se mobilise
01net.com/actualites/l...
via
@01net.com
#EURECOM
@aurelsec.bsky.social
loading . . .
Le projet de loi pour espionner vos conversations privées WhatsApp revient sur la table, l'opposition se mobilise
Le projet de rÚglement européen CSAR (appelé « chatcontrol » par ses opposants, pour « contrÎle des conversations ») revient sur le devant de la scÚne, et les scientifiques tirent (à nouveau) la sonne...
https://01net.com/actualites/le-projet-de-loi-pour-espionner-vos-conversations-privees-whatsapp-revient-sur-la-table-lopposition-se-mobilise.html
0
2
1
reposted by
aurelsec
Phrack Zine
5 months ago
At long last - Phrack 72 has been released online for your reading pleasure! Check it out:
phrack.org
0
121
67
reposted by
aurelsec
Travis Campbell
5 months ago
Phrack 72 released today.
phrack.org/issues/72/1
It got me thinking. I first read Phrack back in the 90's as I started hanging out on IRC (maybe '93 or '94?), as I was learning about FreeBSD and later, Linux. It must have been Phrack 43-45 where I started. What a wild ride on the Internet.
loading . . .
.:: Phrack Magazine ::.
Phrack staff website.
https://phrack.org/issues/72/1
1
6
5
reposted by
aurelsec
5 months ago
I reverse engineered Lockbit's Linux ESXi variant, also explaining how I did some of the steps! For the fun of it, cause reverse engineering is lots of fun. Enjoy!
hackandcheese.com/posts/blog1_...
1
11
6
reposted by
aurelsec
5 months ago
@blackhoodie.bsky.social
will be at
@sec-t.bsky.social
on September 10th with a training on Linux Malware Reverse Engineering, for women by women! We have very few seats left đ
blackhoodie.re/SecT2025/
0
12
9
reposted by
aurelsec
6 months ago
Discounted early bird registration for WOOT '25 is still open until Monday -
www.usenix.org/conference/w...
- join us in Seattle on Aug 11/12 (right before USENIX Security) for talks and discussions on great cutting-edge offensive security research. Full program at
www.usenix.org/conference/w...
loading . . .
WOOT '25 Technical Sessions
https://www.usenix.org/conference/woot25/technical-sessions
1
3
5
reposted by
aurelsec
Mathy Vanhoef
6 months ago
Our research on open tunneling servers got nominated for the Most Innovative Research award :) The work will be presented by Angelos Beitis at Black Hat and also at USENIX Security Brief summary and code:
github.com/vanhoefm/tun...
Paper:
papers.mathyvanhoef.com/usenix2025-t...
0
7
6
reposted by
aurelsec
Nain Portekoi
6 months ago
Une pĂ©tition vient d'ĂȘtre lancĂ©e sur le site de l'AN pour demander au gouvernement français d'arrĂȘter d'utiliser X pour ses communications officielles. Je l'ai Ă©videmment signĂ©e. Avec toi ? (Et on fait tourner l'info)
petitions.assemblee-nationale.fr/initiatives/...
loading . . .
Cesser d'utiliser X (anciennement Twitter) pour les communications officielles du gouvernement - Cesser d'utiliser X (anciennement Twitter) pour les communications officielles du gouvernement - Platef...
Cessez d'utiliser cette plateforme comme l'un des principaux porte-parole des communications officielles en France. Il existe des alternatives bien mieux modĂ©rĂ©es et rĂ©gulĂ©es, et il est mĂȘme possible ...
https://petitions.assemblee-nationale.fr/initiatives/i-2610
12
139
83
Détecter les contenus pédocriminels en ligne : quelles options techniques ? Quels risques pour la vie privée ?
theconversation.com/detecter-les...
loading . . .
Détecter les contenus pédocriminels en ligne : quelles options techniques ? Quels risques pour la vie privée ?
Peut-on détecter automatiquement les contenus pédopornographiques en ligne sans ouvrir la voie à la surveillance de masse ?
https://theconversation.com/detecter-les-contenus-pedocriminels-en-ligne-quelles-options-techniques-quels-risques-pour-la-vie-privee-259337?utm_source=bluesky&utm_medium=bylineblueskybutton
6 months ago
0
1
0
reposted by
aurelsec
Henry Mance
7 months ago
Huge implications from this: Microsoft cut off the email of the chief prosecutor of the International Criminal Court, because of his work on Israel
www.nytimes.com/2025/06/20/t...
40
1340
811
reposted by
aurelsec
7 months ago
Zonenberg et al. extract its one-time programmable memory through passive voltage contrast đŹ using a focused ion beam âĄ:
www.usenix.org/conference/w...
loading . . .
Extraction of Secrets from 40nm CMOS Gate Dielectric Breakdown Antifuses by FIB Passive Voltage Contrast | USENIXusenix_logo_notag_white
https://www.usenix.org/conference/woot25/presentation/zonenberg
0
2
1
reposted by
aurelsec
7 months ago
Two winners of the RP2350 Hacking Challenge will present their results at WOOT! Muench et al. break its secure boot guarantees through voltage, electromagnetic, and laser fault injection đ„ techniques:
www.usenix.org/conference/w...
loading . . .
Security through Transparency: Tales from the RP2350 Hacking Challenge | USENIXusenix_logo_notag_white
https://www.usenix.org/conference/woot25/presentation/muench
1
7
3
reposted by
aurelsec
Daniel Klischies
8 months ago
Our OffensiveCon talk on stateful baseband emulation (and how improper string handling led to baseband RCE) is available on YouTube:
youtu.be/zoAITq7jUM8
. It has been a pleasure; awesome conference, brilliant people. Slides and paper:
www.danielklischies.net/research/bas...
loading . . .
OffensiveCon25 - Daniel Klischies and David Hirsch
YouTube video by OffensiveCon
https://youtu.be/zoAITq7jUM8
0
9
4
reposted by
aurelsec
Ars Technica
8 months ago
Since mid-2024, Google has refused to reinstate the access Nextcloud needs for uploading and syncing other file types to its host-your-own cloud platform.
loading . . .
âGoogle wanted thatâ: Nextcloud decries Android permissions as âgatekeepingâ
Without full file access, itâs kind of hard to use your own cloud.
https://arstechnica.com/gadgets/2025/05/nextcloud-accuses-google-of-big-tech-gatekeeping-over-android-app-permissions/?utm_source=bluesky&utm_medium=social&utm_campaign=aud-dev&utm_social-type=owned
0
27
12
reposted by
aurelsec
Clémentine Maurice
8 months ago
Haven't seen this on Bluesky yet: S&P 2027 will take place in Montreal, Canada!
2
29
20
reposted by
aurelsec
Daniel Klischies
8 months ago
đą Excited to announce that the results on BaseBridge, our project on improving cellular baseband emulation, are going public this week. Dyon will present at IEEE S&P on Monday 3pm, while David and I will be on stage at
@offensivecon.bsky.social
on Saturday 11am with even more details! 1/6
1
13
8
reposted by
aurelsec
Micah Lee
8 months ago
Despite misleading marketing, Israeli company TeleMessage, used by Trump officials, can access plaintext chat logs. My findings are based on TM SGNL's source code, and they are corroborated by hacked data
micahflee.com/despite-misl...
loading . . .
Despite misleading marketing, Israeli company TeleMessage, used by Trump officials, can access plaintext chat logs
Despite their misleading marketing, TeleMessage, the company that makes a modified version of Signal used by senior Trump officials, can access plaintext chat logs from its customers. In this post I ...
https://micahflee.com/despite-misleading-marketing-israeli-company-telemessage-used-by-trump-officials-can-access-plaintext-chat-logs/
23
775
412
reposted by
aurelsec
Micah Lee
8 months ago
I wrote up a detailed analysis of TM SGNL, the unofficial Signal app that senior Trump fascists use to organize their war crimes
micahflee.com/tm-sgnl-the-...
loading . . .
TM SGNL, the obscure unofficial Signal app Mike Waltz uses to text with Trump officials
Yesterday, a Reuters photographer captured a photo of the freshly-ousted former National Security Advisor Mike Waltz checking his Signal messages during a Trump cabinet meeting. If you're not familiar...
https://micahflee.com/tm-sgnl-the-obscure-unofficial-signal-app-mike-waltz-uses-to-text-with-trump-officials/
30
1268
511
reposted by
aurelsec
Colin O'Flynn
10 months ago
For the past while J-P at
@newae.com
has been working on a major
#ChipWhisperer
doc refactor - this is now live, check out
chipwhisperer.readthedocs.io/en/latest/in...
. It moves software, hardware, and even some tricks/tips all into once place using Jupyter Books. Huge improvement in usability!
0
8
6
Here you are
@oflynn.com
:)
9 months ago
0
1
0
reposted by
aurelsec
ONYPHE
9 months ago
đ„Detection method for
#symlink
#backdoor
on
#fortinet
"we are willing to share it, privately" More than 18k devices compromised Read more:
blog.onyphe.io/en/symlink-b...
loading . . .
Symlink backdoor on Fortinet SSL-VPN devices â Blog | Big Data for Cyber Defense
https://blog.onyphe.io/en/symlink-backdoor-on-fortinet-ssl-vpn-devices/
0
5
4
reposted by
aurelsec
-Boulet-
9 months ago
On est d'accord que...
add a skeleton here at some point
66
1993
368
reposted by
aurelsec
Internet Archive
9 months ago
đą The Internet Archive needs your help. At a time when information is being rewritten or erased online, a $700 million lawsuit from major record labels threatens to destroy the Wayback Machine. Tell the labels to drop the 78s lawsuit. đ Sign our open letter:
www.change.org/p/defend-the...
đ§”âŹïž
120
19650
16245
reposted by
aurelsec
Le Monde
9 months ago
Logiciels espions : 21 pays sâengagent Ă lutter contre la prolifĂ©ration des armes numĂ©riques
loading . . .
Logiciels espions : 21 pays sâengagent Ă lutter contre la prolifĂ©ration des armes numĂ©riques
Le « processus de Pall Mall », lancĂ© par la France et le Royaume-Uni en 2024, a abouti Ă la signature dâun « code de bonnes pratiques ». Non contraignant, il a le mĂ©rite dâaborder des sujets cruciaux, liĂ©s notamment Ă lâusage abusif des logiciels espions.
https://www.lemonde.fr/pixels/article/2025/04/04/logiciels-espions-21-pays-s-engagent-a-lutter-contre-la-proliferation-des-armes-numeriques_6591144_4408996.html
2
16
9
reposted by
aurelsec
Clémentine Maurice
10 months ago
And pretty please, let's move S&P from San Francisco and NDSS from San Diego. Thanks đ
add a skeleton here at some point
0
18
5
reposted by
aurelsec
Colin O'Flynn
10 months ago
Finally finished uploading my "Intro to PCB Design" lectures from my class this semester - Part 1 at
youtu.be/N544CMR8I-M
and rest linked from there. Slides and example project for students to complete at
github.com/colinoflynn/...
if you want to reuse it!
#pcb
#pcbdesign
#electronics
#kicad
loading . . .
Colin's Into to PCB Design Part 1 - PCBs, Traces, and More (Dalhousie 2025 ECED Lecture)
YouTube video by Colin O'Flynn
https://youtu.be/N544CMR8I-M
1
33
10
reposted by
aurelsec
Boris
10 months ago
"Signal would exit the French market before it would comply with this law as written" Meredith Whittaker
@meredithmeredith.bsky.social
, President of Signal
@signal.org
6
183
81
reposted by
aurelsec
Hash Miser âđșđŠ
10 months ago
Merci
@gabrielthierry.bsky.social
de revenir sur l'histoire incroyable des
#ShadowBrokers
en plusieurs parties
#MustRead
Partie 1
open.substack.com/pub/pwned/p/...
Partie 2
open.substack.com/pub/pwned/p/...
Partie 3
open.substack.com/pub/pwned/p/...
loading . . .
Celui qui nâaurait pas dĂ» installer lâantivirus Kaspersky
OĂč lâon dĂ©couvre la carriĂšre brisĂ©e dâun fonctionnaire Ă cause dâun penchant, au choix, pour des versions crackĂ©es de Windows ou pour l'antivirus du cĂ©lĂšbre ingĂ©nieur russe.
https://open.substack.com/pub/pwned/p/celui-qui-naurait-pas-du-installer?r=rx88n&utm_campaign=post&utm_medium=email
1
19
12
reposted by
aurelsec
10 months ago
Nearly finished! "Modeling and Analyzing Security Protocols with Tamarin: A Comprehensive Guide" (Basin, Cremers, Dreier, and Sasse) will be published by Springer in the near future. I'm very happy to announce that a full draft of our book is now available for download at
tamarin-prover.com/book/
2
7
2
reposted by
aurelsec
Emile Marzolf
10 months ago
Petit récap sur les amendements déposés sur la loi narcotrafic : - réintroduction de l'article 8 ter sur les applis chiffrées par Olivier Marleix (LR)
www.assemblee-nationale.fr/dyn/17/amend...
- mais aussi par Paul Midy (EPR) dans une versionTRES proche :
www.assemblee-nationale.fr/dyn/17/amend...
loading . . .
https://www.assemblee-nationale.fr/dyn/17/amendements/1043/AN/846.pdf
1
1
2
reposted by
aurelsec
Amaelle Guiton
10 months ago
Pour l'heure, aucun amendement du gouvernement Ă la
#PPLNarcotrafic
discutée à partir de lundi ne rétablit feu l'article 8ter (accÚs aux communications chiffrées). Mais on trouve trois amendements parlementaires, peu ou prou identiques (ça alors !), qui en proposent une version remaniée.
loading . . .
Proposition de loi visant à sortir la France du piÚge du narcotrafic (no 1043) Amendement n°655
https://www.assemblee-nationale.fr/dyn/17/amendements/1043/AN/655
2
6
6
reposted by
aurelsec
Amaelle Guiton
10 months ago
Chiffrement et «portes dérobées» : sur X, la ministre du Numérique C. Chappaz plaide pour un «équilibre». Mais lequel ? Soit il y a obligation de résultat, soit il n'y en a pas. Et la situation actuelle (obligation de moyens pour les opérateurs + piratage légal) n'est-elle pas un «équilibre» ?
1
4
1
reposted by
aurelsec
bigbigfox
11 months ago
gfw.report/publications...
loading . . .
Wallbleed: A Memory Disclosure Vulnerability in the Great Firewall of China
We present Wallbleed, a buffer over-read vulnerability that existed in the DNS injection subsystem of the Great Firewall of China. Wallbleed caused certain nation-wide censorship middleboxes to reveal...
https://gfw.report/publications/ndss25/en/
0
1
2
reposted by
aurelsec
11 months ago
Only a week and a half left for USENIX WOOT '25 conference submissions - deadline March 11 AoE. Weâre looking forward to seeing even more of your amazing offensive security papers this year! And still a few days for up-and-coming track (March 4). CfP at
www.usenix.org/conference/w...
0
5
12
reposted by
aurelsec
marc rees
11 months ago
Ce dernier propose de permettre aux fournisseurs concernĂ©s par lâobligation de crĂ©er une porte dĂ©robĂ©e dâopposer une impossibilitĂ© technique.
www.assemblee-nationale.fr/dyn/17/amend...
www.assemblee-nationale.fr/dyn/17/amend...
loading . . .
Proposition de loi visant à sortir la France du piÚge du narcotrafic (no 907) Amendement n°CL485
https://www.assemblee-nationale.fr/dyn/17/amendements/0907/CION_LOIS/CL485
1
3
2
reposted by
aurelsec
marc rees
11 months ago
Pouria Amirshahi (Ăcologiste & Social) "Ces dispositions entraĂźneraient alors un affaiblissement gĂ©nĂ©ralisĂ© des moyens cryptographiques & reviendrait donc Ă mettre en danger notre sĂ©curitĂ©, comme le formulait Guillaume Poupard, ancien directeur de lâANSSI"
www.assemblee-nationale.fr/dyn/17/amend...
loading . . .
Proposition de loi visant à sortir la France du piÚge du narcotrafic (no 907) Amendement n°CL484
https://www.assemblee-nationale.fr/dyn/17/amendements/0907/CION_LOIS/CL484
1
8
3
reposted by
aurelsec
marc rees
11 months ago
Eric Bothorel (Ensemble pour la RĂ©p) & dâautres dĂ©putĂ©s du groupe "Lâexigence dâun affaiblissement des mĂ©canismes de chiffrement va Ă lâencontre des principes fondamentaux de sĂ©curitĂ© informatique & expose lâensemble des utilisateurs Ă des menaces accrues"
www.assemblee-nationale.fr/dyn/17/amend...
loading . . .
Proposition de loi visant à sortir la France du piÚge du narcotrafic (no 907) Amendement n°CL392
https://www.assemblee-nationale.fr/dyn/17/amendements/0907/CION_LOIS/CL392
1
7
1
reposted by
aurelsec
marc rees
11 months ago
Elsa Faucillon (GDR) "la capacitĂ© de chiffrer ses communications numĂ©riques (...) est (...) lâun des derniers remparts, individuels & collectifs, aux intrusions arbitraires et illĂ©gales de nombreux acteurs, Ă©tatiques, privĂ©s ou criminels"
www.assemblee-nationale.fr/dyn/17/amend...
loading . . .
Proposition de loi visant à sortir la France du piÚge du narcotrafic (no 907) Amendement n°CL335
https://www.assemblee-nationale.fr/dyn/17/amendements/0907/CION_LOIS/CL335
1
9
1
reposted by
aurelsec
marc rees
11 months ago
AurĂ©lien Lopez (RN) et dâautres dĂ©putĂ©s du groupe : « Cet article est donc disproportionnĂ© et techniquement hasardeux »
www.assemblee-nationale.fr/dyn/17/amend...
loading . . .
Proposition de loi visant à sortir la France du piÚge du narcotrafic (no 907) Amendement n°CL312
https://www.assemblee-nationale.fr/dyn/17/amendements/0907/CION_LOIS/CL312
1
4
1
reposted by
aurelsec
marc rees
11 months ago
Paul Molac (LibertĂ©s, indĂ©pendants, Outre-mer et Territoires) : « Dans une sociĂ©tĂ© dĂ©mocratique, les seuls besoins de l'enquĂȘte ne peuvent justifier une telle atteinte aux libertĂ©s publiques, cet article doit ĂȘtre supprimĂ©. »
www.assemblee-nationale.fr/dyn/17/amend...
loading . . .
Proposition de loi visant à sortir la France du piÚge du narcotrafic (no 907) Amendement n°CL282
https://www.assemblee-nationale.fr/dyn/17/amendements/0907/CION_LOIS/CL282
1
9
1
Load more
feeds!
log in