Synacktiv
banner
synacktiv.com
Synacktiv
@synacktiv.com
Offensive security company. Dojo of many ninjas. Red teaming, reverse engineering, vuln research, dev of security tools and incident response.
🔒 Feb 2026: #cybersecurity training with #Synacktiv!

5&6 Feb: Kubernetes Intrusion Tactics (Paris, FR)
9&10 Feb: AWS Intrusion Tactics (Paris, FR)
9-11 Feb: Malware Analysis (Remote, EN)
16-20 Feb: Attacking Web Apps (Paris, FR)

✅ Register now: www.synacktiv.com/en/offers/tr...
December 29, 2025 at 11:10 AM
🚨 Pre-Auth RCE in #Livewire (CVE-2025-54068)!

Our specialists uncovered a critical flaw allowing remote code execution without the APP_KEY, exploiting Livewire’s hydration mechanism + PHP’s loose typing.

🔗 Patch now! (v3.6.4+)
www.synacktiv.com/en/publicati...
Livewire: remote command execution through unmarshaling
Livewire: remote command execution through unmarshaling
www.synacktiv.com
December 23, 2025 at 4:40 PM
🚀 [Training 2026] Research & exploitation: embedded #Linux systems

5-day training on UART access, firmware analysis, QEMU emulation, fuzzing (AFL++), static analysis & persistence on compromised systems.

📍 On site, Paris
🇫🇷 French

Register 👇
www.synacktiv.com/en/offers/tr...
December 23, 2025 at 10:40 AM
🔥 Synacktiv’s #CSIRT 2026 training sessions are coming!

Forensics, malware analysis, cloud investigations - all taught by our experts, available remotely or on site, in French or English.

Register 👇
www.synacktiv.com/en/offers/tr...
December 18, 2025 at 4:37 PM
[New blog post] As part of an R&D project, @tomtombinary.bsky.social identified several critical vulnerabilities in the LAN multiplayer mode of the game Anno 1404 (released in 2009) 🔍

Want to know more?
Read the full article on our blog 👇
www.synacktiv.com/en/publicati...
Exploiting Anno 1404
Exploiting Anno 1404
www.synacktiv.com
December 16, 2025 at 3:56 PM
HID recently disclosed HID-PSA-2025-002, a critical flaw in the #ActivID Authentication Appliance 8.7.

In our new blog post, @us3r777.bsky.social and @pierregg.bsky.social break down exactly how they uncovered it, from methodology to exploitation 💡

Read it here ⬇️
synacktiv.com/en/publicati...
ActivID administrator account takeover : the story behind
ActivID administrator account takeover : the story behind
synacktiv.com
December 12, 2025 at 3:22 PM
🔥 #Synacktiv’s 2026 Internship Book is out!

Whether you're into pentest, reverse engineering, incident response or development, you’ll find our full list of internships plus practical tips to boost your chances.

📬 Send us your CV: www.synacktiv.com/book_stage_s...
www.synacktiv.com
December 12, 2025 at 9:21 AM
Level up your #pentest skills in 2026 🚀

Join Synacktiv’s hands-on trainings: from Kubernetes & cloud hacks to web app attacks & AD intrusion.

More information & registration : www.synacktiv.com/en/offers/tr...

#cybersecurity
Trainings
Synacktiv
www.synacktiv.com
December 11, 2025 at 12:22 PM
🕵️‍♂️ When an 'innocent' #PHP file hides a #backdoor
During an investigation on a compromised server, we came across an obfuscated PHAR stub - a classic sign of a #webshell trying to evade basic scanners.

Check out our technical analysis 🔍
Have you ever encountered this type of “packaged” webshell? 💬
December 9, 2025 at 2:38 PM
🎓🚀 Ready to level up your #cybersecurity skills?

Synacktiv’s 2026 training programs are open for registration!
Get practical, expert-led sessions in offensive and defensive cybersecurity - online or in-person, in French or English 🇫🇷🇬🇧

🔗 Learn more: www.synacktiv.com/en/offers/tr...
December 4, 2025 at 3:00 PM
Winter is here, it's time to test your assembly skills with the #Synacktiv Winter Challenge 🏂.
A code golf competition that guarantees hours of intense x86 instruction optimization!

🔗 Participate here: www.synacktiv.com/en/publicati...
December 2, 2025 at 5:08 PM
Missed @hexacon.bsky.social 2025? 🤯
Good news, all #Synacktiv’s deep-dive talks on offensive research & reverse engineering are now online!

🎥 Watch the full playlist: www.youtube.com/playlist?lis...

#cybersecurity
December 1, 2025 at 3:12 PM
At #Pwn2Own2025, our experts Tek & @anyfun.bsky.social remotely compromised a Synology Beestation Plus via a pre-auth exploit, leading to full system takeover.

The vuln is now tracked as CVE-2025-12686 🔍

🔗 Full write-up: www.synacktiv.com/en/publicati...
Breaking the BeeStation: Inside Our Pwn2Own 2025 Exploit Journey
Breaking the BeeStation: Inside Our Pwn2Own 2025 Exploit Journey
www.synacktiv.com
November 27, 2025 at 3:00 PM
@alexisdanizan.bsky.social discovered several critical flaws in an older #IvantiITSM version 💥
Already reported, but these exploits could still be useful and come with technical details ⬇️
github.com/synacktiv/it...
GitHub - synacktiv/itsm-exploit: Ivanti Neurons for ITSM (On Premise) exploits
Ivanti Neurons for ITSM (On Premise) exploits. Contribute to synacktiv/itsm-exploit development by creating an account on GitHub.
github.com
November 27, 2025 at 10:34 AM
🚀 It’s the big day for the #CBCToulouse!

The #Synacktiv team is on-site and ready to connect with you throughout the event.
📍 Visit our booth to learn more about our areas of expertise and our career opportunities!

📅 26–27 November 2025
ℹ️ More information: cbc-convention.com
November 26, 2025 at 10:08 AM
Last Friday at #BlackAlps2025, noraj explored the hidden security challenges of #Unicode 🎤

With 1,000+ pages of specs, even small mistakes can become attack vectors.

Dive into the details 👉 www.synacktiv.com/ressources%2...
November 25, 2025 at 3:07 PM
Our specialists are on-site at #ECW - European Cyber Week!

Come meet us at booth 98 to talk #cybersecurity and explore our career opportunities.

Tomorrow is the last chance - don’t miss out 👋
November 19, 2025 at 11:53 AM
🔒 Only 7 days to go until the #CBC - Cyber Security Business Convention!

Come and meet our team:

🔹 Technical feedback,
🔹 Presentation of our training courses and career opportunities.

📍 MEETT - Parc des Expositions, 31 840 AUSSONNE
ℹ️ cbc-convention.com
November 19, 2025 at 9:35 AM
@bsidesmunich.bsky.social 2025 Wrap-up 🇩🇪

@yaumn.bsky.social & @wilfri3d.bsky.social presented their research on CVE-2025-33073, a critical #Windows auth reflection flaw (huge #ActiveDirectory impact!).

Full analysis below👇
🔗 www.synacktiv.com/en/publicati...
November 18, 2025 at 5:00 PM
[ #EuropeanCyberWeek ]

Did you miss us yesterday? No worries, there's still time to visit #Synacktiv at booth 98!

Come discuss cybersecurity challenges and learn about our offensive security expertise. We're here until Thursday 😉

#ECW2025 #Rennes
November 18, 2025 at 2:05 PM
Meet our #Synacktiv and @revel-io.bsky.social experts at #Milipol, from Tuesday 18 to Friday 21 November 2025!

📍 Visit us at Stand H063 (Hall 4 – Forensic Zone).

ℹ️ www.milipol.com/fr-FR
The wait is over - #MilipolParis 2025 starts today 🎉

Meet our dream team:
▪️ #REVEL·IO, our mobile device #forensic solution
▪️ @synacktiv.com, leaders in offensive #cybersecurity

Find us at stand H063 (Hall 4 - Forensic Zone) 📍
November 18, 2025 at 10:08 AM
Join us at Cyb’Air Sud 2025!

We’re pleased to announce that Théo L. will be speaking at the 2025 edition of #CybAirSud, hosted by the "École de l’air et de l’espace".

🎤 Sophisticated GNU/Linux backdoor
📅 Tuesday, 25th of November
🇫🇷 Session in French

Register now 👉 cybair-sud.fr/pages/ed_202...
November 17, 2025 at 4:54 PM
The #EUCyberWeek is officially underway in Rennes 🚀

The @synacktiv.com team is on-site and keen to connect with you!
Do come and meet us to discover our expertise 👋

ℹ️ www.european-cyber-week.eu
November 17, 2025 at 3:38 PM
Reposted by Synacktiv
Only one day to go until #MilipolParis 2025 ⏳

#REVEL·IO is excited to join the homeland security community and present our mobile device #forensic solution.

@synacktiv.com will be there too!

📍 See you tomorrow at stand H063 (Hall 4 - Forensic Zone).
November 17, 2025 at 1:53 PM
Our ninjas are in Vienna for the T-REX conference!

🎤 @kevintell.bsky.social delivered a session exploring advanced Red Team lateral movement techniques built on DCOM - a great opportunity to exchange practices with fellow experts.

Thank you to the @oenb.at for hosting such a great event!
November 14, 2025 at 3:00 PM