New blog post: Exploiting the Synology TC500 at Pwn2Own Ireland 2024
We built a format string exploit for the TC500 smart cam. It didn’t get used, but it made for a fun case study.
blog.infosectcbr.com.au/2025/08/01/e...
@infosectcbr.bsky.social
New blog post: Exploiting the Synology TC500 at Pwn2Own Ireland 2024
We built a format string exploit for the TC500 smart cam. It didn’t get used, but it made for a fun case study.
blog.infosectcbr.com.au/2025/08/01/e...
Court and Rami went to hardwear.io USA last week – thank you to the organisers and speakers for an excellent event.
They also placed 3rd in the CTF – not bad for a two-person team.
We’re hiring Vulnerability Researchers at @infosectcbr.bsky.social that specialise in Linux, OS kernels, Android, and embedded/IoT. With a world class hardware lab, come join our friendly and collaborative team, focusing on research against leading technologies. DM for details.
30.04.2025 08:05 — 👍 5 🔁 2 💬 0 📌 1Proud of the InfoSect team for taking 2nd place in the BSides Adelaide CTF and 1st in the GRC competition! The challenges weren’t geared to our usual strengths, so placing this well is a fantastic result. Thanks to the conference and CTF organisers for a great event!
22.05.2025 13:38 — 👍 0 🔁 0 💬 0 📌 0CrikeyCon is honoured to have @infosectcbr.bsky.social join us as Gold sponsors this year. The InfoSect crew have been supporters of CrikeyCon since the start - as presenters, contributors, attendees, and most importantly friends of Crikey. To have you sponsor too is a real privilege! Thanks!
12.03.2025 07:51 — 👍 5 🔁 2 💬 0 📌 1We’re absolutely stoked to support @crikeycon.bsky.social this year! From the very start, it’s been an incredible conference run by an amazing crew, and we’ve loved being part of it as attendees, presenters, and friends. Can’t wait for another fantastic year!
13.03.2025 22:41 — 👍 0 🔁 0 💬 0 📌 0Sam speaking at CSides on the Synology TC500 Pwn2Own 2024 attempt by @infosectcbr.bsky.social
21.02.2025 08:08 — 👍 3 🔁 2 💬 0 📌 0See our bug that we exploited that was patched the day before we flew out to Pwn2Own.
17.02.2025 06:21 — 👍 4 🔁 1 💬 0 📌 0Had a vendor demo given at @infosectcbr.bsky.social of the new 3rd generation mantis microscope by vision engineering. Looked pretty good!
10.12.2024 06:33 — 👍 3 🔁 2 💬 0 📌 0At #Pwn2Own Ireland, our team successfully exploited vulnerabilities in the Lorex 2K Indoor WiFi Camera. Check out our blog for the full technical breakdown: blog.infosectcbr.com.au/2024/12/expl...
09.12.2024 02:16 — 👍 14 🔁 4 💬 0 📌 0We’ve come so far ✨
05.12.2024 09:05 — 👍 2 🔁 1 💬 0 📌 0A better classroom and engagement space is on the horizon 🙌
05.12.2024 09:05 — 👍 4 🔁 1 💬 0 📌 0