
rayanlecat
@rayanlecat
Pentester
ID: 891705900137893888
https://rayanle.cat 30-07-2017 17:03:48
1,1K Tweet
1,1K Followers
910 Following

PwnMe CTF 2025 2025 finals were intense! 12 teams from 9 countries battled it out at ecole2600 25 hardcore challenges, 9h of hacking, pizza & passion๐โก ๐ฅHuge GG to RedRocket.Club for the 1st place! Massive shoutout to all players, speakers, and sponsors. See you in 2026!


While casually reading Moodle's code @coiffeur0x90 found a SSRF bug exploitable by any authenticated user. Fun twist? This vuln matches exactly the example Orange Tsai ๐ presented at Black Hat 2017. Real life imitates conference slides ๐ Details here: blog.quarkslab.com/auditing-moodlโฆ




Look at those cute little blobs in your internal network. They look harmless, but how about the one carrying SOCKS? It's ProxyBlob, a reverse proxy over Azure. Check out Atsika's article on how it came to exist after an assumed breach mission โคต๏ธ ๐ blog.quarkslab.com/proxyblobing-iโฆ





๐ค "How we successfully failed a Red Team ?" Un talk drรดle et formateur par Rayan Bouyaiche (rayanlecat ) & Brahim El Fikhi sur leur 1รจre mission Red Team : fails, rรฉussites, intrusion physique & conseils pour les juniors en cyber. ๐ฅ #CTF #RedTeam #CyberSecurity



pappy from quarkslab, our keynote speaker marks the start of 2nd edition of Off-By-One Conference with his highly anticipated presentation ๐๐ฉ๐ฒ๐ฐ๐๐ซ๐ ๐๐จ๐ซ ๐ซ๐๐ง๐ญ & ๐ญ๐ก๐ ๐ฐ๐จ๐ซ๐ฅ๐ ๐จ๐ ๐จ๐๐๐๐ง๐ฌ๐ข๐ฏ๐ ๐๐ฒ๐๐๐ซ! Off-By-One Conference go! ๐


Tom Mansion from quarkslab in action! After a game of hide and seek, we now ๐.๐.๐.๐.๐.๐: ๐๐๐ฎ๐๐จ ๐๐๐๐ฉ ๐๐ฆ๐ฉ๐ฅ๐๐ฆ๐๐ง๐ญ๐๐ญ๐ข๐จ๐ง ๐๐ฑ๐ฉ๐ฅ๐จ๐ข๐ญ๐ฌ, ๐๐๐๐ค๐ฌ, ๐๐ง๐ ๐๐๐๐๐ง๐ฌ๐๐ฌย at Off-By-One Conference 2025!







