Patrice <GomoR> Auffret's Avatar

Patrice <GomoR> Auffret

@patriceauffret.bsky.social

ONYPHE founder, CEO and CTO - FreeBSD & Perl sculptor rather than GNU/Linux & Python - My views are those of my employer

158 Followers  |  129 Following  |  18 Posts  |  Joined: 24.09.2023  |  2.0608

Latest posts by patriceauffret.bsky.social on Bluesky

Perl

11.11.2025 08:06 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
GitHub - bee-san/RustScan: ๐Ÿค– The Modern Port Scanner ๐Ÿค– ๐Ÿค– The Modern Port Scanner ๐Ÿค–. Contribute to bee-san/RustScan development by creating an account on GitHub.

RustScan est un outil de scan de ports รฉcrit en Rust. Il mise tout sur la rapiditรฉ et se veut scanner l'ensemble des ports d'une machine en quelques secondes โฌ‡๏ธ

github.com/bee-san/Rust...

09.11.2025 07:16 โ€” ๐Ÿ‘ 14    ๐Ÿ” 4    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Cc @onyphe.io

03.06.2025 06:02 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
A chart showing Internet scan data plots for three countries; Spain, Portugal and France. The three lines are stable, with minor variations from 09:00 to 12:30. At 12:30 the lines for  Spain and Portugal drop almost vertically to roughly 50% of their original levels. The line for France continues as for the start of the day.
The lines for Spain and Portugal have not returned to their original levels.

A chart showing Internet scan data plots for three countries; Spain, Portugal and France. The three lines are stable, with minor variations from 09:00 to 12:30. At 12:30 the lines for Spain and Portugal drop almost vertically to roughly 50% of their original levels. The line for France continues as for the start of the day. The lines for Spain and Portugal have not returned to their original levels.

The electrical power outage in Spain and Portugal as seen from the Internet (France included for reference)

28.04.2025 16:03 โ€” ๐Ÿ‘ 2    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1

Patch management is a multi-decade failure.

10.04.2025 05:00 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image 23.03.2025 12:00 โ€” ๐Ÿ‘ 26    ๐Ÿ” 9    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
VPN Vulnerabilities Emerges As The Key Tool for Threat Actors to Attack Organizations

VPN Vulnerabilities Emerges As The Key Tool for Threat Actors to Attack Organizations

19.03.2025 11:44 โ€” ๐Ÿ‘ 6    ๐Ÿ” 4    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Installation | ONYPHE Installation

The latest version of our cli tool has been released. Get v4.19.0 and find wrappers with sweet new APIs inside.

Available here โžก๏ธ
search.onyphe.io/docs/onyphe-...

or here ๐Ÿณ hub.docker.com/r/onyphe/ony...

or even here ๐Ÿฅท metacpan.org/dist/Onyphe

18.03.2025 06:54 โ€” ๐Ÿ‘ 3    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

๐Ÿง™โ€โ™€๏ธCc @fs0c131y.com @gazlacrymo.fr @hacker0x01.bsky.social @gandalfistari.bsky.social @jnocetti.bsky.social @korben.info @tariqkrim.bsky.social @reesmarc.bsky.social @jeromenotin.bsky.social @oliviertesquet.bsky.social @patriceauffret.bsky.social @untersin.gr รงa devrait tโ€™intรฉresser ๐Ÿช„

04.03.2025 11:39 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Mais il a bien dormi.

03.03.2025 20:28 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Oui enfin, c'est comme un moustique qui s'รฉcrase contre le pare-brise d'une voiture.

14.02.2025 11:23 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
RedMike Hackers Exploited 1000+ Cisco Devices to Gain Admin Accessย 

RedMike Hackers Exploited 1000+ Cisco Devices to Gain Admin Access

14.02.2025 08:43 โ€” ๐Ÿ‘ 4    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1
Post image

๐Ÿ“ฃ We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #PaloAltoNetworks PA product:

CVE-2025-0108: authentication bypass on management interface

search.onyphe.io/search?q=cat...

Thanks to @assetnote.io for having shared the detection method.

14.02.2025 09:16 โ€” ๐Ÿ‘ 6    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
The XE Files - Trust No Router hack.lu 2024 On the 16th October 2023 Cisco Talos shared intelligence about a handful of compromised routers discovered while resolving customer support requests. As the full story unfolded, a handful of backdoore...

Yet by performing an awkward legal waltz around the subject, Talos have helpfully supported my hypothesis that compromised IOS XE devices are part of an ORB network serving multiple APTs.

archive.hack.lu/hack-lu-2024...

12.02.2025 09:21 โ€” ๐Ÿ‘ 2    ๐Ÿ” 2    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
OpenRA Classic strategy games rebuilt for the modern era

"Command & Conquer : Red Alert" en version Open source :
www.openra.net

26.01.2025 08:54 โ€” ๐Ÿ‘ 26    ๐Ÿ” 10    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Roughly same numbers as @onyphe.bsky.social

20.01.2025 12:44 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Information Stealer Masquerades as LDAPNightmare (CVE-2024-49113) PoC Exploit Our blog entry discusses a fake PoC exploit for LDAPNightmare (CVE-2024-49113) that is being used to distribute information-stealing malware.

Back in the dayz the fake exploit did "rm -rf /" www.trendmicro.com/en_us/resear... #CTI

20.01.2025 07:25 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

More than 50k *vulnerable* devices.

This one is pretty bad.

17.01.2025 17:55 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Don't expose DCERPC protocol on the Internet.

02.01.2025 14:56 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Je plussoie.

12.12.2024 08:10 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
A Brief Introduction to OCI Containers on FreeBSD - Random Musings O for a muse of fire, that would ascend the brightest heaven of invention!

FreeBSD 14.2-RELEASE now includes OCI-compatible images, and the Podman toolkit is ready to use them, on both amd64 and arm64 systems - A brief Introduction by Dave Cottlehuber #FreeBSD #BSD

09.12.2024 08:10 โ€” ๐Ÿ‘ 5    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

rรฉpondez ร  vos emails

putain dire que j'ai connu un temps oรน les gens rรฉpondaient ร  un FAX

09.12.2024 10:51 โ€” ๐Ÿ‘ 60    ๐Ÿ” 3    ๐Ÿ’ฌ 12    ๐Ÿ“Œ 0
2. **Truncated SHA-256 Hash Collisions**: The request hashing mechanism truncates SHA-256 hashes to only 12 characters. This significantly reduces entropy, making it feasible for an attacker to generate collisions. By exploiting this, a previously built malicious image can be served in place of a legitimate one, allowing the attacker to "poison" the artifact cache and deliver compromised images to unsuspecting users.

2. **Truncated SHA-256 Hash Collisions**: The request hashing mechanism truncates SHA-256 hashes to only 12 characters. This significantly reduces entropy, making it feasible for an attacker to generate collisions. By exploiting this, a previously built malicious image can be served in place of a legitimate one, allowing the attacker to "poison" the artifact cache and deliver compromised images to unsuspecting users.

Stop. Truncating. Hashes.

www.phoronix.com/news/OpenWrt...

08.12.2024 16:40 โ€” ๐Ÿ‘ 23    ๐Ÿ” 6    ๐Ÿ’ฌ 3    ๐Ÿ“Œ 1
Post image

๐Ÿ“ฃ We have added a new #vulnerability detection to our #ASM #AttackSurfaceManagement solution for #Mitel MiCollab product:

CVE-2024-35286: unauthenticated SQL injection on login page
CVE-2024-41713: unauthenticated arbitrary file read

www.onyphe.io/search?q=cat...

06.12.2024 09:58 โ€” ๐Ÿ‘ 5    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Certes. Mais un recruteur qui jette un CV parce qu'il fait plus d'une page ... Que peut-on en penser ?

29.11.2024 10:55 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

#Cyberattaques : une รฉtude dรฉvoile la porte d'#entrรฉe prรฉfรฉrรฉe des #ransomwares
https://www.01net.com/actualites/cyberattaques-etude-devoile-porte-entree-preferee-ransomwares.html

28.11.2024 14:55 โ€” ๐Ÿ‘ 0    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Cette "rรจgle" est dรฉbile. 3 ou 4 pages, รงa ne me choque pas, surtout aprรจs 20 ans d'XP.

29.11.2024 10:24 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Optimist: the cup is 1/2 full

Pessimist: the cup is 1/2 empty

Excel: the cup is January 2nd

29.08.2024 12:40 โ€” ๐Ÿ‘ 6347    ๐Ÿ” 1473    ๐Ÿ’ฌ 68    ๐Ÿ“Œ 126

I just reached 1k followers on #Bluesky - It has been growing pretty fast. Starting to believe the place will be as cool as the old #Twitter ! Thx everyone ! <3

21.11.2024 10:09 โ€” ๐Ÿ‘ 7    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

@onyphe.bsky.social identifies more than 2k vulnerable IPs. That could mean all of them are compromised :/

21.11.2024 12:26 โ€” ๐Ÿ‘ 2    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@patriceauffret is following 20 prominent accounts