Skip to content

Commit 785e98f

Browse files
author
shoxxdj
committed
add sponsors
1 parent 9a20a7d commit 785e98f

File tree

3 files changed

+37
-33
lines changed

3 files changed

+37
-33
lines changed

editions/2025/img/bordeaux.png

122 KB
Loading
40.2 KB
Loading

editions/2025/index.md

Lines changed: 37 additions & 33 deletions
Original file line numberDiff line numberDiff line change
@@ -11,39 +11,42 @@ CFP is open ! Submit your talks : staff[at]sthack[dot]fr
1111

1212
## Program
1313

14+
Program is under construction :) come back soon !
15+
1416
### Breakfast
1517

1618
- Location : Cité du vin
1719
- Speaker : Cannelés & Café
1820
- Time : 9:00 - 9:45
1921
- Infos : :)
22+
<!--
2023
2124
### Keynote
2225
2326
- Location : Cité du vin
2427
- Speaker : Jeremy Fetiveau
25-
- Time : 9:45 - 10:15
28+
- Time :
2629
- Infos :
2730
28-
### Pivoting on Evolutions
31+
### Rétro-ingénierie de code Objective-C
2932
3033
- Location : Cité du vin
31-
- Speaker : Jared Wilson
32-
- Time : 10:20 - 11:05
33-
- Infos : In 2023 Mandiant released Permhash, an extensible framework to hash declared permissions to empower researchers to perform clustering, hunting, and pivoting. Permhash is currently applied to over 29 million samples. Since its release I have been using Permhash to help identify groups of functionality that are suspicious. I would like to share one highly interesting and novel permhash investigation that led to the identification of an active Android-based credential theft campaign targeting users associated with a South Asia Government and the Financial Sector. Using Permhash to perform this clustering, we identified this new malware family: SILENTSTEP. SILENTSTEP is an Android Package (APK) credential theft malware family that uses SMS for command and control. This research will include how Mandiant has closely tracked the evolutions of SILENTSTEP over the past three months and will dive into the specifics of these technical advancements - demonstrating how detection in depth can be applied to allow for persistent pursuit.
34+
- Speaker :
35+
- Time :
36+
- Infos :
3437
35-
### Rétro-ingénierie de code Objective-C
38+
### Reversing modern mobile games
3639
3740
- Location : Cité du vin
38-
- Speaker : Victor Cutillas
39-
- Time : 11:10 - 11:40
40-
- Infos :
41+
- Speaker : Thomas WEBER
42+
- Time :
43+
- Infos : A case study of reversing a recent mobile game
4144
42-
### A look at the security model of the Trezor Safe family
45+
### Look at the Windows named pipe
4346
4447
- Location : Cité du vin
45-
- Speaker : Marion Lafon & Charles Christen
46-
- Time : 11:45 - 12:05
48+
- Speaker : Thomas Borot
49+
- Time :
4750
- Infos :
4851
4952
### (Pause Déjeuner)
@@ -53,33 +56,33 @@ CFP is open ! Submit your talks : staff[at]sthack[dot]fr
5356
- Time : 12:15 - 14:00
5457
- Infos :
5558
56-
### (Slot libre)
59+
### A look at the security model of the Trezor Safe family
5760
5861
- Location : Cité du vin
59-
- Speaker :
60-
- Time : 14:00 - 14:45
62+
- Speaker : Marion Lafon & Charles Christen
63+
- Time : 11:45 - 12:05
6164
- Infos :
6265
63-
### Tesla Wallconnector
66+
### Le risque de surveillance dans nos démocraties
6467
6568
- Location : Cité du vin
66-
- Speaker : David Berard
67-
- Time : 14:50 - 15:25
68-
- Infos :
69+
- Speaker : Elia Verdon & Yoann Nabat
70+
- Time : 14:00 - 14:45
71+
- Infos : Une présentation globale des dispositifs de surveillance en France et des risques qu'ils présentent pour nos libertés fondamentales.
6972
70-
### (Slot libre)
73+
### Pivoting on Evolutions
7174
7275
- Location : Cité du vin
73-
- Speaker :
74-
- Time : 15:30 - 16:15
75-
- Infos :
76+
- Speaker : Jared Wilson
77+
- Time : 14:50 - 15:35
78+
- Infos : In 2023 Mandiant released Permhash, an extensible framework to hash declared permissions to empower researchers to perform clustering, hunting, and pivoting. Permhash is currently applied to over 29 million samples. Since its release I have been using Permhash to help identify groups of functionality that are suspicious. I would like to share one highly interesting and novel permhash investigation that led to the identification of an active Android-based credential theft campaign targeting users associated with a South Asia Government and the Financial Sector. Using Permhash to perform this clustering, we identified this new malware family: SILENTSTEP. SILENTSTEP is an Android Package (APK) credential theft malware family that uses SMS for command and control. This research will include how Mandiant has closely tracked the evolutions of SILENTSTEP over the past three months and will dive into the specifics of these technical advancements - demonstrating how detection in depth can be applied to allow for persistent pursuit.
7679
77-
### (Slot libre)
80+
### Tesla Wallconnector
7881
7982
- Location : Cité du vin
8083
- Speaker :
81-
- Time : 16:20 - 17:05
82-
- Infos :
84+
- Time : 15:40 - 16:25
85+
- Infos : -->
8386

8487
### RUMPS
8588

@@ -107,12 +110,13 @@ At Sthack, teams are made up of 5 members max which fight for 12 hours. The poin
107110

108111
<div class="table-sponsors">
109112

110-
| | | |
111-
| ----------------------------------------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------- |
112-
| <a href="https://www.orangecyberdefense.com/fr/" target="_blank">![orange](img/Orange_cyberdefense.png)</a> | <a href="https://www.betclic.fr/" target="_blank">![Betclic](img/Logo_Betclic_2019.png)</a> | <a href="https://www.cloudflare.com/" target="_blank">![Cloudflare](img/Cloudflare_Logo.png)</a> |
113-
| <a href="https://www.nystek.com/" target="_blank">![Nystek](img/nystek.png)</a> | <a href="https://www.randorisec.fr/" target="_blank">![Randorisec](img/randorisec.png)</a> | <a href="http://synacktiv.com/" target="_blank">![Synacktiv](img/synacktiv.png)</a> |
114-
| <a href="https://www.carrefour.fr/" target="_blank">![Carrefour](img/Carrefour-Logo.png)</a> | <a href="https://www.quarkslab.com/" target="_blank">![Quarkslab](img/QUARKSLAB_LOGO.png)</a> | <a href="https://marl-ds.com/" target="_blank">![Marl](img/marl.jpeg)</a> |
115-
| <a href="https://hack4values.eu/" target="_blank">![hack4values](img/hack4values_logo.jpeg)</a> | <a href="https://www.believe.com/" target="_blank">![Believe](img/logo-believe-black.png)</a> | <a href="https://www.epsilon-sec.com/" target="_blank">![Epsilon Sec](img/epsilon_full_320_132.png)</a> |
116-
| <a href="https://www.campuscyber-na.fr/">![Cybercampus](img/cybercampus.png)</a> | <a href="https://www.cdiscount.com/" target="_blank">![Cdiscount](img/logo_cdiscount.png)</a> | <a href="https://www.landh.tech/" target="_blank">![Lupin & Holmes](img/landh.svg)</a> |
113+
| | | |
114+
| --------------------------------------------------------------------------------------------------------------------------------- | --------------------------------------------------------------------------------------------- | ------------------------------------------------------------------------------------------------------- |
115+
| <a href="https://www.orangecyberdefense.com/fr/" target="_blank">![orange](img/Orange_cyberdefense.png)</a> | <a href="https://www.betclic.fr/" target="_blank">![Betclic](img/Logo_Betclic_2019.png)</a> | <a href="https://www.cloudflare.com/" target="_blank">![Cloudflare](img/Cloudflare_Logo.png)</a> |
116+
| <a href="https://www.nystek.com/" target="_blank">![Nystek](img/nystek.png)</a> | <a href="https://www.randorisec.fr/" target="_blank">![Randorisec](img/randorisec.png)</a> | <a href="http://synacktiv.com/" target="_blank">![Synacktiv](img/synacktiv.png)</a> |
117+
| <a href="https://www.carrefour.fr/" target="_blank">![Carrefour](img/Carrefour-Logo.png)</a> | <a href="https://www.quarkslab.com/" target="_blank">![Quarkslab](img/QUARKSLAB_LOGO.png)</a> | <a href="https://marl-ds.com/" target="_blank">![Marl](img/marl.jpeg)</a> |
118+
| <a href="https://hack4values.eu/" target="_blank">![hack4values](img/hack4values_logo.jpeg)</a> | <a href="https://www.believe.com/" target="_blank">![Believe](img/logo-believe-black.png)</a> | <a href="https://www.epsilon-sec.com/" target="_blank">![Epsilon Sec](img/epsilon_full_320_132.png)</a> |
119+
| <a href="https://www.campuscyber-na.fr/">![Cybercampus](img/cybercampus.png)</a> | <a href="https://www.cdiscount.com/" target="_blank">![Cdiscount](img/logo_cdiscount.png)</a> | <a href="https://www.landh.tech/" target="_blank">![Lupin & Holmes](img/landh.svg)</a> |
120+
| <a href="https://www.bordeaux-metropole.fr/" target="_blank">![Bordeaux Metropole](img/logo-bordeaux-Metropole1-800x333.jpg) </a> | <a href="https://www.bordeaux.fr/" target="_blank">![Bordeaux](img/bordeaux.png)</a> | |
117121

118122
</div>

0 commit comments

Comments
 (0)