Synoslabs
Ressources

Tout ce qu'on écrit, au même endroit

Deux natures de contenus, désormais réunies et classées. Les publications sont en français et pensées pour comprendre un sujet : méthodologie, outils, veille, tutoriels détaillés. Les writeups sont plus bruts, surtout en anglais, et racontent la résolution de challenges et de CTF. Ils ne sont pas directement liés à l'activité de Synoslabs.

Type
Thème
52 contenus Du plus récent au plus ancien
A lost restaurant – #MondayQuiz Note EN
On Monday, February 3rd, 2025, Julia BAYER posted a new GEOINT/OSINT challenge on her Twitter
OSINT & GEOINTfévr. 20255 min
Solve a GEOINT challenge with your brain – #ThursdayQuiz Note EN
Hi everyone! In this blog post, we’ll see an example of how to solve an
OSINT & GEOINTjanv. 20257 min
Hacker la prévisualisation des liens Guide FR
Vous êtes-vous déjà demandé comment les arnaqueurs et les personnes malveillantes faisaient en sorte d’afficher
Webaoût 202413 min
NeutrOSINT – L’outil d’OSINT pour Protonmail Guide FR
Dans cet article, on va parler d’un outil que j’ai développé en Python il y
OSINT & GEOINT - Outilsjuil. 20247 min
APT Hunter CTF – Writeup Writeup FR
Le week-end du 27 mars 2024 a débuté le CTF APT Hunter organisé par des
OSINT & GEOINT - CTFavr. 202446 min
HEXA OSINT CTF v3 – Writeup Writeup EN
The HEXA OSINT CTF v3 is the final episode of this series of CTFs. Link
OSINT & GEOINT - CTF - Webavr. 202431 min
Cody Bernardy – Challenge 02 Note EN
In OSINT and GEOINT, the context is often (always?) important. Link to the OSINT challenge
OSINT & GEOINT - CTFavr. 20243 min
Cody Bernardy – Challenge 03 Note EN
This easy challenge will be solved using reverse image search and shows the power of
OSINT & GEOINT - CTFavr. 20242 min
Cody Bernardy – Challenge 04 Note EN
This challenge can be solved in multiple ways. We’ll only focus on the fastest one
OSINT & GEOINT - CTFavr. 20242 min
Cody Bernardy – Challenge 05 Note EN
This challenge was one of the toughest from this series of challenges proposed by Cody
OSINT & GEOINT - CTFavr. 20242 min
Cody Bernardy – Challenge 06 Note EN
One of my favourite challenge of this series. It requires to analyze elements in the
OSINT & GEOINT - CTFavr. 20245 min
Cody Bernardy – Challenge 07 Note EN
Basically the easiest challenge of this series. Link to the OSINT challenge video: https://www.youtube.com/watch?v=mccW9uO99b4 I
OSINT & GEOINT - CTFavr. 20244 min
Cody Bernardy – Challenge 08 Note EN
This challenge could seem impossible, but with a specific trick, it is pretty easy to
OSINT & GEOINT - CTFavr. 20245 min
Cody Bernardy – Challenge 10 Note EN
This challenge could seem impossible, but with a specific trick, it is pretty easy to
OSINT & GEOINT - CTFavr. 20245 min
Cody Bernardy – Challenge 12 Note EN
This GEOINT challenge can easily be solved by using reverse image search. Link to the
OSINT & GEOINT - CTFavr. 20242 min
Cody Bernardy – Challenge 01 Note EN
In this first challenge, our goal is to geolocate where the video was recorded. A
OSINT & GEOINT - CTFavr. 20242 min
Méthodologie GEOINT par l’exemple Guide FR
Faut-il être un expert en informatique, savoir coder et être ultra intelligent pour faire de
OSINT & GEOINTmars 202410 min
Une backdoor découverte dans XZ Utils (CVE-2024-3094) Guide FR
Ce vendredi 29 mars 2024, un certain Andres Freund a découvert une backdoor dans la
Veillemars 20243 min
Devel – Writeup Writeup EN
In this easy Windows machine, we’ll exploit a misconfiguration to become Administrator. Add the IP
HackTheBox - Windows & ADjanv. 20243 min
Explore – Writeup Writeup EN
During this easy Android machine, we’ll exploit a known CVE. Add the IP address in
HackTheBox - Mobile - Veillejanv. 20242 min
Grandpa – Writeup Writeup EN
In this machine we’ll exploit a kernel vulnerability to become Administrator. Add the IP address
HackTheBox - Web - Windows & ADjanv. 20245 min
Granny – Writeup Writeup EN
This Windows machine looks a lot like another machine… Add the IP address in /etc/hosts:
HackTheBox - Web - Windows & ADjanv. 20243 min
Jerry – Writeup Writeup EN
We’ll exploit a Tomcat functionnality to become Administrator of this Windows machine. Add the IP
HackTheBox - Web - Windows & ADjanv. 20242 min
Knife – Writeup Writeup EN
A backdoor is found on the web server of this machine. Add the IP address
HackTheBox - Web - Linux - Veillejanv. 20242 min
Lame – Writeup Writeup EN
We’ll try to gain root access to the easiest HTB machine. Add the IP address
HackTheBox - Linux - Veillejanv. 20242 min
Legacy – Writeup Writeup EN
We’ll use a very famous CVE vulnerability to exploit this machine. Add the IP address
HackTheBox - Web - Windows & AD - Veillejanv. 20242 min
Mirai – Writeup Writeup EN
Default credentials we’ll be used on this machine to access it. Add the IP address
HackTheBox - Linuxjanv. 20242 min
Hacktoria – Florida Snow Note EN
In this challenge we start from a satellite view to identify the exact location of
OSINT & GEOINTjanv. 20242 min
Hacktoria – The Cartel Connection Note EN
In the old Hacktoria challenge, we try to find the location of a Colombian cartel.
OSINT & GEOINTjanv. 20243 min
Hacktoria – The Killer Clown Note EN
This Hacktoria challenge was an old OSINT challenged available on their website. Link: https://hacktoria.com/contracts/the-killer-clown/ Verify
OSINT & GEOINTjanv. 20241 min
Hacktoria – Where’s Klumgongyn Note EN
This writeup is related to an old Hacktoria challenge which is no longer accessible. Link:
OSINT & GEOINTjanv. 20241 min
Antique – Writeup Writeup EN
In this machine we’ll enumerate services and find a specific UDP port to perform enumeration
HackTheBox - Linuxjanv. 20244 min
Bashed – Writeup Writeup EN
This easy Linux challenge uses a vulnerable PHP file to execute commands on the system.
HackTheBox - Linuxjanv. 20242 min
Beep – Writeup Writeup EN
This Linux machine is a bit special compared to other Linux challenges because this is
HackTheBox - Web - Linuxjanv. 20242 min
Blue – Writeup Writeup EN
To exploit this Windows machine we’ll use an old but efficient vulnerability. Add the IP
Windows & AD - Veillejanv. 20243 min
Buff – Writeup Writeup EN
In this easy Windows machine we’ll exploit a buffer overflow! Add the IP address in
HackTheBox - Windows & ADjanv. 20242 min
Cap – Writeup Writeup EN
The name of the easy Linux box gives us useful hints… Add the hostname into
HackTheBox - Linuxjanv. 20243 min
OSINT Exercise 001 Note EN
First post about the challenges made by Sofia Santos. Hope you’ll learn new things with
OSINT & GEOINTjanv. 20243 min
OSINT Exercise 002 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-002/ Difficulty: For beginners: a) Easy, b) Hard For experts: a) Easy, b)
OSINT & GEOINTjanv. 20244 min
OSINT Exercise 003 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-003/ Difficulty: For beginners: Medium For experts: Easy Briefing: In April 2017 Mohamed
OSINT & GEOINTjanv. 20242 min
OSINT Exercise 004 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-004/ Difficulty: For beginners: a) Easy, b) Easy, c) Medium For experts: a)
OSINT & GEOINTjanv. 20242 min
OSINT Exercise 005 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-005/ Difficulty: For beginners: a) Hard, b) Medium, c) Hard For experts: a)
OSINT & GEOINTjanv. 20244 min
OSINT Exercise 006 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-006/ Difficulty: For beginners: Easy For experts: Easy Briefing: On January 19, 2023,
OSINT & GEOINTjanv. 20242 min
OSINT Exercise 007 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-007/ Difficulty: For beginners: a) Easy, b) Medium, c) Hard For experts: a)
OSINT & GEOINTjanv. 20243 min
OSINT Exercise 008 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-008/ Difficulty: For beginners: a) Easy, b) Medium, c) Medium For experts: a)
OSINT & GEOINTjanv. 20243 min
OSINT Exercise 009 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-009/ Difficulty: For beginners: a) Hard, b) Hard For experts: a) Medium, b)
OSINT & GEOINTjanv. 20245 min
OSINT Exercise 010 Note EN
Introduction Link: https://gralhix.com/list-of-osint-exercises/osint-exercise-010/ Difficulty: For beginners: a) Easy, b) Easy, c) Hard For experts: a)
OSINT & GEOINTjanv. 20243 min
Bizness – Writeup Writeup EN
Bizness is an easy HackTheBox machine with cool things to learn. The user flag is
HackTheBox - Linuxjanv. 20244 min
PHP type juggling Guide FR
Le typage souple de PHP et la comparaison == : pourquoi deux chaînes différentes peuvent être jugées égales, comment on en profite, et comment s’en protéger.
Webjuil. 20207 min
John the Ripper Guide FR
Comment fonctionne le hachage, puis comment casser une empreinte avec John the Ripper, avec deux exemples complets : une archive ZIP et une clé SSH.
Outils - Linuxjuin 20208 min
Chroot c’est quoi ? Guide FR
Isoler un utilisateur ou une application dans une prison chroot : le principe, la mise en place à la main, puis un script qui copie les binaires et leurs librairies.
Linuxjuin 20207 min
CVE et CVSS, c’est quoi ? Guide FR
Ce que recouvrent une CVE et un score CVSS : les trois métriques, le calcul du score, et ce qui change entre la version 2 et la version 3.
Veillejuin 20208 min

Les temps de lecture sont estimés.