Skip to content
KitploitKITPLOIT
工具博客
提交
工具博客
提交

黑客、渗透测试和网络安全工具,武装您的安全武器库!

Kitploit 是一个黑客、网络安全和渗透测试工具的目录。发现最新的项目更新,查找漏洞、分析系统、自动化测试并加强你的安全。

··订阅源·联系·隐私·© 2026 Kitploit

工具目录

分类

查看所有分类
Loading categories
conf-presentations — Quarkslab 会议演讲 | Kitploit
工具/GitHubGitHub/quarkslab/conf-presentations
蓝牙安全漏洞分析逆向工程密码学硬件与物联网安全论文与研究学习与教育精选资源固件分析
GitHubquarkslab/conf-presentations

conf-presentations

Quarkslab 会议演讲

查看仓库
31834411天前Kitploit 审核通过

最受欢迎

查看全部 →

发现我们社区最常用的工具。

探索所有工具

浏览我们的工具集合

查看所有工具 →
分享
网站

目录

  • Quarkslab 在会议和研讨会上的演讲
  • Quarkslab 在期刊或会议论文集及预印本上的出版物
  • Quarkslab 在专业杂志上的出版物
  • Quarkslab 硬件 CTF

Quarkslab 在会议和研讨会上的演讲

2026

  • 2026-08: Glitch me et glitch moi sont dans une auto 🖥️ 于 Barbhack 2026
  • 2026-06: SightHouse 🖥️ 于 PTS26
  • 2026-06: SightHouse Workshop 🖥️ 研讨会 于 PTS26
  • 2026-06: Pwning bluetooth devices in unexpected ways 🖥️ 于 leHack26
  • 2026-06: LeHack 117 : Permis d’illuminer toute la ville 🖥️ 于 leHack26
  • 2026-06: Hacking Bluetooth Low Energy Devices with WHAD 🖥️ 研讨会 于 leHack26
  • 2026-06: Introduction à l’instrumentation dynamique binaire avec QBDI 🖥️ 研讨会 于 leHack26
  • 2026-06: Apkpatcher: Reverse Engineering and Modifying Android Applications Without Rooting 🖥️ 研讨会 于 leHack26
  • 2026-05: Spyware à louer 🖥️ 于 RESSI 2026
  • 2026-05: Chain of Thought F's everybody 🖥️ 于 THCon 2026
  • 2026-04: Breaking the Backbone of Global ISP Networks 🖥️ 于 DefCon 2026
  • 2026-04: Breaking the Backbone of Global ISP Networks 🖥️ 于 Zer0con 2026
  • 2026-03: Hash All The Things / Get All the Sig(s) - Introducing Sighthouse for Seamless Function Detection 🖥️ 于 RE//verse 2026

2025

  • 2025-10: T'as vu mes docs ? Je les fais avec typst ! 🖥️📽️ 于 Volcamp
  • 2025-09: Bypassing ASLR on MIPS32 using simple mathematics 🖥️ 于 Wine Rump
  • 2025-09: Bluetooth Low Energy hacking with WHAD 🖥️ 研讨会 于 BruCon
  • 2025-07: Experimental Study of Binary Diffing Resilience on Obfuscated Programs 🖥️📜 于 22nd Conference on Detection of Intrusions and Malware & Vulnerability Assessment, DIMVA 2025
  • 2025-07: The Last Resort: Debugging Embedded Systems with Unconventional Methods 🖥️📽️ 于 Pass the SALT 2025
  • 2025-07: Bluetooth Low Energy hacking with WHAD 🖥️ 研讨会 于 Pass the SALT 2025
  • 2025-07: Wirego, a Wireshark plugin development framework 🖥️📽️ 于 Pass the SALT 2025

2024

  • 2024-12: Identifying Obfuscated Code through Graph-Based Semantic Analysis of Binary Code 🖥️📜 于 Complex Networks 2024
  • 2024-12: 特邀演讲: MIFARE Classic: exposing the static encrypted nonce variant... and a few hardware backdoors 📽️ 于 COSIC Seminar, KUL
  • 2024-12: Faster Signatures from MPC-in-the-Head 📜 于 Asiacrypt 2024
  • 2024-11: 特邀演讲: MIFARE Classic: exposing the static encrypted nonce variant... and a few hardware backdoors 🖥️📜📽️ 于 C&ESAR 2024 by DGA
  • 2024-11: Improving binary diffing through similarity and matching intricacies 🖥️📜 于 CAID: Conference on Artificial Intelligence for Defense
  • 2024-11: 特邀演讲: MIFARE Classic: exposing the static encrypted nonce variant 🖥️📽️ 于 Grehack 2024
  • 2024-10: Bluetooth Low Energy GATT Fuzzing: from specification to implementation 🖥️ 于

2023- 2023-11: Google Apps Script - 本次演讲需要访问你的电子邮件 🖥️📽️ 于 GreHack 2023

  • 2023-11: 攻破 Silicon Labs Gecko 平台的安全启动 🖥️📽️ 于 Ekoparty 2023
  • 2023-11: 攻破 Silicon Labs Gecko 平台的安全启动 🖥️📽️ 于 Hardwear.io NL 2023
  • 2023-11: 剖析现代 Android 数据加密方案 🖥️📽️ 于 Hardwear.io NL 2023
  • 2023-11: 关于所有 UR 都应被视为有害,为了乐趣和利益,这是新的酷炫技巧,黑客讨厌它。Redux。 🖥️📽️ 于 Ekoparty 2023
  • 2023-10: Intel SGX 评估方法论 🖥️ 于 Azure Confidential Computing 2023
  • 2023-10: Pyrrha:轻松导航你的系统二进制文件 🖥️📽️ 于 Hack.lu 2023
  • 2023-09: 模糊测试 ntop 🖥️📽️ 于

2022

  • 2022-11: 对 Titan M 的攻击,重装上阵:现代安全芯片的漏洞研究 🖥️📽️ 于 Ekoparty 2022
  • 2022-11: kdigger 📽️ 于 DefCon Paris meetup
  • 2022-11: Quokka——一个快速且准确的二进制导出器 🖥️📽️ 于 Grehack 2022
  • 2022-10: 从攻击性安全到防御性安全 🖥️ 于 Les Assises 2022
  • 2022-10: 一段模糊测试 Nvidia 图形驱动并导致 LPE 利用的旅程 🖥️📽️ 于 Hexacon 2022
  • 2022-09: 符号执行——逆向工程工具箱中的瑞士军刀 🖥️📽️ 于 KLEE Workshop 2022
  • 2022-08: 对 Titan M 的攻击,重装上阵 🖥️📽️ 于 Black Hat USA 2022
  • 2022-07: 于

2021

  • 2021-11: Wookey:第七集——原力觉醒 🖥️📽️ 于 GreHack 2021
  • 2021-11: 基于 Windows 内核快照的模糊测试:好的、坏的和丑的 📽️ 于 GreHack 2021
  • 2021-11: 逆向工程与模糊测试 Google Titan M 芯片 🖥️📜 于 ROOTS 2021
  • 2021-11: 从源代码到崩溃测试用例,通过软件测试自动化 🖥️📜 于 C&ESAR 2021
  • 2021-11: 2021:Titan M 奥德赛 🖥️📜📽️ 于 Black Hat Europe 2021
  • 2021-10: EEPROM——一切都将以泪水告终(EN) 🖥️📽️ 于 Hardwear.io NL 2021
  • 2021-08: SSE 和 SSD:页高效可搜索对称加密 📜 于

2020- 2020-11: Towards an assymetric white-box proposal 📜 在 Journées Codage & Cryptographie 2020

  • 2020-11: Participation au panel “RFID Hacking” 📽️ 在 PACSEC 2020
  • 2020-10: Dynamic Binary Instrumentation Techniques to Address Native Code Obfuscation 🖥️📜📽️ 在 Black Hat Asia 2020
  • 2020-09: Anomalie de sécurité sur une JCard EAL6+ en marge d'1 CSPN inter-CESTI 📽️ 在 webinaire de l'OSSIR
  • 2020-08: Collision-Based Attacks Against Whiteboxes with QBDI 🖥️ 在 Barbhack 2020
  • 2020-07: Building Whiteboxes: attacks and defenses 🖥️📽️ 在 Hardwear.io webinar
  • 2020-06: Why are Frida and QBDI a Great Blend on Android? 🖥️📽️ 在 Pass the SALT 2020
  • 2020-06: Reverse engineering raw firmware: a tool to get you started 📽️ 在

2019

  • 2019-11: Cryptographie et attaques matérielles : Application à la cryptographie en boîte blanche 🖥️ 在 GeeksAnonymes, ULiège
  • 2019-11: Epona and the Obfuscation Paradox: Transparent for Users and Developers, a Pain for Reverser 🖥️📜 在 SPRO 2019
  • 2019-09: When C++ Zero-Cost Abstraction Fails: how-to Fix Your Compiler 📽️ 在 CppCon 2019
  • 2019-08: Breaking Samsung's ARM TrustZone 🖥️📽️ 在 Black Hat USA 2019
  • 2019-06: IDArling, la première plateforme de rencontre entre reversers 🖥️📽️ 在 SSTIC 2019
  • 2019-05: Grey-box attacks, four years later 🖥️ 在 WhibOx 2019
  • 2019-05: DKOM 3.0: Hiding and Hooking with Windows Extension Hosts 🖥️📽️ 在

2018

  • 2018-11: ROPGenerator: practical automated ROP-Chain generation 📽️ 在 GreHack 2018
  • 2018-11: Vulnerability Research - What It Takes to Keep Going and Going and Going 🖥️ 在 HITB 2018 Beijing
  • 2018-09: AFL, QBDI And KSE Are on a Boat 📽️ 在 Ekoparty 2018
  • 2018-09: Old New Things: An Examinsation of the Philips TriMedia Architecture 📽️ 在 Ekoparty 2018
  • 2018-09: C++ In the Elvenland 📽️ 在 CppCon 2018
  • 2018-09: Easy::Jit : A Just-in-Time compilation library for C++ 🖥️📽️ 在 CppCon 2018
  • 2018-09: Frozen Data Structures in C++14 📽️ 在 CppCon 2018
  • 2018-09: Combining obfuscation and optimizations in the real world 📜 在 SCAM 2018
  • 2018-08: The Windows Notification Facility: Peeling the Onion of the Most Undocumented Kernel Attack Surface Yet 📽️ 在

2017

  • 2017-12: Implementing an LLVM based Dynamic Binary Instrumentation framework 🖥️📽️ 在 34th Chaos Communication Congress
  • 2017-12: How to drift with any car 📽️ 在 34th Chaos Communication Congress
  • 2017-11: Flash dumping & hardware 101 🖥️ 在 BlackHoodie 2017 #3
  • 2017-11: Kernel Shim Engine for fun 🖥️ 在 BlackHoodie 2017 #3
  • 2017-10: Challenges building an LLVM-based obfuscator 🖥️📽️ 在 2017 LLVM Developers' Meeting
  • 2017-09: L'interpréteur Python, quel sale type 🖥️📽️ 在 PyConFR 2017
  • 2017-07: LIEF: Library to Instrument Executable Formats 🖥️📽️ 在 RMLL 2017
  • 2017-06: Playing with Binary Analysis: Deobfuscation of VM based software protection / Désobfuscation binaire : Reconstruction de fonctions virtualisées 🖥️ 在

2016

  • 2016-12: Practical Attacks Against White-Box Crypto Implementations 🖥️ 在 Séminaire de Cryptographie, Université de Rennes 1
  • 2016-11: Arybo : Manipulation, Canonicalization and Identification of Mixed Boolean-Arithmetic Symbolic Expressions 📜📽️ 在 GreHack 2016
  • 2016-11: How Triton can help to reverse virtual machine based software protections 🖥️📽️ 在 CSAW 2016
  • 2016-11: Ghost in the PLC: Designing an Undetectable Programmable Logic Controller Rootkit via Pin Control Attack 🖥️📜📽️ 在 Black Hat Europe 2016
  • 2016-10: Defeating MBA-based Obfuscation 🖥️📜 在 SPRO 2016
  • 2016-10: Binary Permutation Polynomial Inversion and Application to Obfuscation Techniques 📜 在

2015- 2015-10: 构建、测试和调试一个简单的树外 LLVM Pass 🖥️📽️ 于 LLVM dev meeting

  • 2015-09: 我希望有可行解决方案的一些技术与科学挑战 🖥️ 于 SAS 2015
  • 2015-06: IRMA:事件响应与恶意软件分析 🖥️📜📽️ 于 SSTIC 2015
  • 2015-06: 专有 SCADA 技术的安全分析 🖥️📜📽️ 于 SSTIC 2015
  • 2015-06: 每秒四百万次密钥交换 🖥️📜📽️ 于 SSTIC 2015
  • 2015-06: Triton:混合执行框架 🖥️📜📽️ 于 SSTIC 2015
  • 2015-05: 监督监督者:逆向专有 SCADA 技术 📜 于

2014

  • 2014-10: USB 模糊测试:方法与工具 🖥️ 于 Hack.lu 2014
  • 2014-07: 软件混淆:了解你的敌人 🖥️📽️ 于 RMLL 2014
  • 2014-06: 通过辅助攻击对 DRM 进行去混淆 🖥️📜 于 SSTIC 2014
  • 2014-06: Python 代码混淆:现有技术的改进 🖥️📜 于 SSTIC 2014
  • 2014-06: 大规模网络侦察:端口扫描并未消亡 📜 于 SSTIC 2014
  • 2014-06: USB 协议栈漏洞研究:方法与工具 🖥️📜📽️ 于 SSTIC 2014
  • 2014-05: 于

2013

  • 2013-10: Apple 如何读取你的 iMessages 以及你如何阻止它 🖥️📽️ 于 HITB 2013 Kuala Lumpur
  • 2013-06: 厂商 Android 应用的安全性及无权限后门的实现 🖥️📜 于 SSTIC 2013
  • 2013-06: UEFI 与 Dreamboot 🖥️📜 于 SSTIC 2013
  • 2013-04: Dreamboot - 一个 UEFI Bootkit 📽️ 于 HITB 2013 Amsterdam

2012

  • 2012-10: Pwn@Home:一条破解家用路由器的攻击路径 🖥️ 于 HITB 2012 Kuala Lumpur
  • 2012-05: WinRT:大都会安全博物馆 📽️ 于 HITB 2012 Amsterdam
  • 2012-06: WinRT 🖥️📜 于 SSTIC 2012
  • 2012-06: SSTIC 十年 🖥️ 于 SSTIC 2012

Quarkslab 在期刊或会议论文集及预印本中的出版物

2026

  • 2026-04: 将去混淆作为基于 GNN 的图编辑问题通过强化学习解决 📜

2025

  • 2025-09: 通过基于图的二进制代码语义分析识别混淆代码 📜
  • 2025-07: 混淆程序上二进制差异比较弹性的实验研究 📜

2024

  • 2024-12: 通过基于图的二进制代码语义分析识别混淆代码 📜
  • 2024-12: 来自 MPC-in-the-Head 的更快签名 📜
  • 2024-11: 通过相似性与匹配的复杂性改进二进制差异比较 📜
  • 2024-08: MIFARE Classic:揭示静态加密 nonce 变体 📜
  • 2024-02: 来自正则伴随式解码的短签名,再探 📜

2023

  • 2023-06: 嵌入式协议栈的逆向工程与劫持,以 ESP32 系统为例的案例研究 📜
  • 2023-06: 探索 OpenSSL 引擎以攻破密码学 📜
  • 2023-05: ESPwn32:使用 ESP32 片上系统进行黑客攻击 📜
  • 2023-05: PASTIS - 一种结合异构软件测试技术的协作方法 📜

2022

  • 2022-06: TPM 并非神圣之路 📜
  • 2022-04: 构建真实世界漏洞的提交级数据集 📜(alt📜)

2021

  • 2021-11: 从源代码到崩溃测试用例:通过软件测试自动化 📜
  • 2021-11: 逆向与模糊测试 Google Titan M 芯片 📜
  • 2021-08: SSE 与 SSD:页高效的可搜索对称加密 📜(alt📜)
  • 2021-06: 不可链接且不可见的 γ-可净化签名 📜(alt📜)
  • 2021-06: 出于安全目的利用 AOSP 依赖图 📜
  • 2021-06: EEPROM:一切都将以泪水告终 📜
  • 2021-11: 2021:Titan M 奥德赛 📜
  • 2021-08: 灰盒程序合成:一种攻击混淆的新方法 📜

2020

  • 2020-07: 迈向非对称白盒方案 📜
  • 2020-06: 使用 WHVP 进行模糊测试并获利 📜
  • 2020-06: Inter-CESTI:关于硬件设备的方法论与技术反馈 📜
  • 2020-02: QSynth - 一种基于程序合成的二进制代码去混淆方法 📜

2019

  • 2019-11: Epona 与混淆悖论:对用户和开发者透明,对逆向者却是痛苦 📜
  • 2019-10: 白盒密码学:别忘了灰盒攻击 📜

2018

  • 2018-09: 在现实世界中结合混淆与优化 📜
  • 2018-07: 二元置换多项式求逆的二次时间算法 📜(alt📜)
  • 2018-06: 攻击串行闪存芯片:黑盒设备案例研究 📜
  • 2018-06: 符号化去混淆:从虚拟化代码回到原始代码 📜(alt📜)
  • 2018-04: Easy::Jit:编译器辅助的库,用于在 C++ 代码中启用即时编译 📜

2017

  • 2017-06: 虚拟化函数的重建 📜

2016

  • 2016-11: Arybo:混合布尔算术符号表达式的操作、规范化与识别 📜
  • 2016-10: 二元置换多项式求逆及其在混淆技术中的应用 📜(alt📜)
  • 2016-10: 击败基于 MBA 的混淆 📜(alt📜)
  • 2016-11: PLC 中的幽灵:通过引脚控制攻击设计不可检测的可编程逻辑控制器 Rootkit 📜
  • 2016-08: 差分计算分析:隐藏你的白盒设计是不够的 📜
  • 2016-08: 在 $GF(p^6)$ 中为数域筛法收集关系 📜
  • 2016-06: 白盒密码学设计:最终,Kerckhoffs 获胜 📜
  • 2016-02: NFLlib:基于 NTT 的快速格库 📜

2015

  • 2015-06: IRMA:事件响应与恶意软件分析 📜
  • 2015-06: 专有 SCADA 技术的安全分析 📜
  • 2015-06: Triton:混合执行框架 📜
  • 2015-06: 每秒四百万次密钥交换 📜

2014

  • 2014-06: 通过辅助攻击对 DRM 进行去混淆 📜
  • 2014-06: Python 代码混淆:现有技术的改进 📜
  • 2014-06: 大规模网络侦察:端口扫描并未消亡 📜
  • 2014-06: USB 协议栈漏洞研究:方法与工具 📜

2013

  • 2013-06: 厂商 Android 应用的安全性及无权限后门的实现 📜
  • 2013-06: UEFI 与 Dreamboot 📜

2012

  • 2012-06: WinRT 📜

Quarkslab 在专业杂志上的出版物

  • 2024-03: 理解并操纵容器隔离机制 📜 载于 MISC Numéro 132
  • 2023-05: Bug Bounty,当黑客成为赏金猎人! 📜 载于 MISC Numéro 127
  • 2023-03: 如何攻击 USB 端口? 📜 载于 MISC Numéro 126(免费访问)
  • 2023-01: 专题:Web 2023,新的攻击面! 📜 载于 MISC Numéro 125
  • 2022-11: Fuchsia 探索与 Google Nest Hub 初步分析 📜 载于 MISC Numéro 124
  • 2022-10: 隔离你的 MS Azure 资源 📜 载于 MISC Numéro HS 26
  • 2022-10: Kubernetes 的安全新特性 📜 载于 MISC Numéro HS 26
  • 2022-10: 欢迎来到云的世界 📜 载于 MISC Numéro HS 26
  • 2022-03: 静态编译去神秘化 - 深入我的编译器内部 📜 载于 MISC Numéro 120(免费访问)
  • 2021-09: 如何分析程序:从静态到动态再到插桩 📜 载于 MISC HS Numéro 24
  • 2021-09: 硬件逆向入门 📜 载于 MISC HS Numéro 24(免费访问)
  • 2021-09: 从固件提取到在 FlashAir SD 卡上执行代码 📜 载于 MISC HS Numéro 24
  • 2021-09: 编译:从代码到二进制……再回来! 📜 载于 MISC HS Numéro 24(免费访问)
  • 2021-09: 漏洞、二进制差异比较与崩溃 📜 载于 MISC Numéro 117
  • 2021-07: 载于 MISC Numéro 116(免费访问)

Quarkslab 硬件 CTF- 2025-05:Hardware CTF v7 🖥️,于 Hardwear.io USA 2025。结果见 CTFtime。

  • 2024-10:Hardware CTF v7 🖥️,于 Hardwear.io NL 2024。结果见 CTFtime。
  • 2024-05:Hardware CTF v6 🖥️,于 Hardwear.io USA 2024。结果见 CTFtime。
  • 2023-11:Hardware CTF v6 🖥️,于 Hardwear.io NL 2023。结果见 CTFtime。
  • 2023-06:Hardware CTF v5 🖥️,于 Hardwear.io USA 2023。结果见 CTFtime。
  • 2022-10:Hardware CTF v5 🖥️,于 Hardwear.io NL 2022。结果见 CTFtime。
  • 2022-09:Hardware CTF v4 🖥️,于 Nullcon Goa 2022。结果见 CTFtime。
  • 2022-06:Hardware CTF v4 🖥️,于 Hardwear.io USA 2022。结果见 CTFtime。
  • 2021-10:Hardware CTF v4 🖥️,于 。结果见 。
下载工具
  • 2025-07: Apkpatcher: Reverse Engineering and Modifying Android Applications Without Rooting 🖥️ 研讨会 于 Pass the SALT 2025
  • 2025-06: Abusing Domestic EV Chargers through Bluetooth and USB 🖥️ 于 Recon.cx 2025
  • 2025-06: Apkpatcher: Reverse Engineering and Modifying Android Applications Without Rooting 🖥️ 研讨会 于 LeHack 2025
  • 2025-06: The Last Resort: Debugging Embedded Systems with Unconventional Methods 🖥️ 于 LeHack 2025
  • 2025-06: Fun with watches: hacking a 12€ smartwatch with Bluetooth Low Energy and 3 wires 🖥️ 于 LeHack 2025
  • 2025-06: Pyrrha & Friends: Diving into Firmware Cartography 🖥️📽️ 于 SSTIC 2025
  • 2025-06: We Have A Deal: we provide the lego bricks, you build cool wireless attacks 🖥️📜📽️ 于 SSTIC 2025
  • 2025-06: Wirego - Un framework de développement de plugins Wireshark 🖥️📜📽️ 于 SSTIC 2025
  • 2025-06: apkpatcher : Fast analysis and modification to Android applications without root access or emulation 🖥️📽️ 于 SSTIC 2025
  • 2025-05: Spyware for Rent & The World of Offensive Cyber 🖥️📽️ 于 Off-by-One 2025
  • 2025-05: S.H.I.E.L.D: Scudo Heap Implementation Exploits, Leaks, and Defenses 🖥️📽️ 于 Off-by-One 2025
  • 2025-04: Test your Cryptographic Primitives with Crypto-Condor 🖥️ 于 Real World Cryptography Paris Meetups
  • 2025-04: One for all and all for WHAD: wireless shenanigans made easy ! 🖥️📽️ 于 THCon 2025
  • 2025-03: 0day in CTF is cool, no? (Writeup PwnMe 2025) 🖥️ 于 Meetup Hack The Box France
  • 2025-03: Streamlining Firmware Analysis with Inter-Image Call Graphs and Decompilation 🖥️📽️ 于 RE/verse.io 2025
  • 📜
    📽️
    Hardwear.io NL 2024
  • 2024-10: MIFARE Classic: exposing the static encrypted nonce variant 🖥️📽️ 于 Hardwear.io NL 2024
  • 2024-10: Spyware for Rent 🖥️ 于 Les Assises 2024
  • 2024-08: De 'branch' en 'branch' : récupération d'un FW d'ECU sur une mémoire FAT 'nettoyée' 🖥️ 于 Barbhack 2024
  • 2024-08: One for all and all for WHAD: wireless shenanigans made easy ! 🖥️📽️ 于 DEF CON 32
  • 2024-08: Attacking Samsung Galaxy A * Boot Chain, and Beyond 🖥️ 于 Black Hat USA 2024
  • 2024-07: Prism, a light BEAM disassembler 🖥️ 于 LeHack 2024
  • 2024-07: Analysing malicious documents and files with oletools 🖥️📽️ 于 Pass the SALT 2024
  • 2024-07: Rump: Passbolt: a bold use of HaveIBeenPwned 🖥️📽️ 于 Pass the SALT 2024
  • 2024-07: Rump: How to download large datasets of files using CommonCrawl 🖥️📽️ 于 Pass the SALT 2024
  • 2024-07: Hydradancer, using USB3 to improve USB hacking with Facedancer 🖥️📽️ 于 Pass the SALT 2024
  • 2024-07: Test your cryptographic primitives with crypto-condor 🖥️📽️ 于 Pass the SALT 2024
  • 2024-07: Prism, a light BEAM disassembler 🖥️📽️ 于 Pass the SALT 2024
  • 2024-06: Attacking the Samsung Galaxy Boot Chain 🖥️ 于 Off-by-One 2024
  • 2024-06: Belenios: the Certification Campaign 🖥️📜📽️ 于 SSTIC 2024
  • 2024-06: Tame the (q)emu: debug firmware on custom emulated board 🖥️📜📽️ 于 SSTIC 2024
  • 2024-06: PyAxml 🖥️📽️ 于 SSTIC 2024
  • 2024-06: When Samsung meets Mediatek: the story of a small bug chain 🖥️📜📽️ 于 SSTIC 2024
  • 2024-06: QBinDiff: A modular differ to enhance binary diffing and graph alignment 🖥️📽️ 于 SSTIC 2024
  • 2024-06: Testez vos primitives cryptographiques avec crypto-condor 🖥️📽️ 于 SSTIC 2024
  • 2024-05: Numbat/Pyrrha: Naviguez facilement dans les binaires de votre système 🖥️ 于 ESIEA Secure Edition 2024
  • 2024-05: Finding low-hanging fruits vulnerabilities in a commercial antivirus 🖥️ 于 StHack 2024
  • 2024-05: Attacking the Samsung Galaxy A * Boot Chain 🖥️📽️ 于 OffensiveCon 2024
  • 2024-04: PASTIS: Fuzzing tool competition 🖥️ 于 SBFT 2024
  • 2024-03: Finding low-hanging fruits vulnerabilities in a commercial antivirus 🖥️ 于 HackSecuReims 2024
  • 2024-03: How automatisation can improve firmware analysis? 🖥️ 于 Forum InCyber 2024
  • 2024-03: Spyware for Rent 🖥️📽️ 于 NullCon 2024
  • 2024-01: FCSC Chaussette - A Triton showcase 🖥️ 于 Ambrosia 2024
  • ntopconf 2023
  • 2023-08: CarHacking 入门:如何构建你的“Car-in-a-box” 🖥️ 工作坊 于 Barbhack 2023
  • 2023-08: 用于 IoT/汽车审计的 USB-ETH 设备仿真 🖥️ 于 Barbhack 2023
  • 2023-07: 绘制你的固件地图! 🖥️📽️ 于 Pass the SALT 2023
  • 2023-07: 为了科学!——利用 EDK II 中一个不起眼的漏洞进行一些有趣的利用 🖥️📽️ 于 Pass the SALT 2023
  • 2023-07: TPM 2.0 参考实现代码中的漏洞 🖥️📽️ 于 Pass the SALT 2023
  • 2023-06: 寄生服务器,为了乐趣和利益 🖥️📽️ 于 LeHack 2023
  • 2023-06: TPM 2.0 参考实现代码中的漏洞 🖥️📽️ 于 Troopers 2023
  • 2023-06: Google Apps Script 🖥️ 于 ESIEA Secure Edition 2023
  • 2023-06: 谁来评估评估者? 🖥️📜 于 WRACH 2023
  • 2023-06: 剖析现代 Android 数据加密方案 🖥️📽️ 于 Recon 2023
  • 2023-06: 基于追踪的编译器调试方法 🖥️ 于 GDR GPL National Days 2023
  • 2023-06: 探索 OpenSSL 引擎以攻破密码学 🖥️📜📽️ 于 SSTIC 2023
  • 2023-06: peetch:一个基于 eBPF 的网络工具 🖥️📽️ 于 SSTIC 2023
  • 2023-06: 嵌入式协议栈的逆向工程与劫持 🖥️📜📽️ 于 SSTIC 2023
  • 2023-05: ESPwn32:利用 ESP32 片上系统进行黑客攻击 🖥️📜📽️ 于 WOOT 2023
  • 2023-05: 为乐趣和漏洞研究而仿真 RH850 🖥️ 于 QPSS2023
  • 2023-05: PASTIS——一种结合异构软件测试技术的协作方法 🖥️📜 于 SBFT2023
  • 2023-05: 为了科学!——利用 EDK II 中一个不起眼的漏洞进行一些有趣的利用 🖥️📽️ 于 StHack 2023
  • 2023-05: 尝试在不到 5 分钟内用统计学攻破随机性 🖥️ 于 StHack 2023
  • 2023-04: 关于供应链安全的思考 🖥️ 于 CERT Vendor Conference 2023
  • 2023-04: 武器化 ESP32 RF 协议栈 🖥️📽️ 于 THCon 2023
  • 2023-03: Whatever Pown2own 🖥️📽️ 于 Insomni'hack 2023
  • 2023-03: 编译过程的可追溯性 🖥️ 于 CLAP-HiFi-LVP 2023
  • kdigger——面向 Kubernetes 的容器评估与上下文发现渗透测试工具 🖥️
    📽️
    Pass the SALT 2022
  • 2022-07: Binbloom 重装上阵 🖥️📽️ 于 Pass the SALT 2022
  • 2022-07: Mattermost 端到端加密插件 🖥️📽️ 于 Pass the SALT 2022
  • 2022-06: 对 Titan M 的攻击:现代安全芯片的漏洞研究 🖥️📽️ 于 Troopers 2022
  • 2022-06: 所以你黑了一个 WiFi 路由器,然后呢? 📽️ 于 LeHack 2022
  • 2022-06: 通过将旧机器回收为白站等方式增强你对恶意软件的抵抗力,以及更多可能 📽️ 于 FIC 2022
  • 2022-06: TPM 并非圣路 🖥️📜📽️ 于 SSTIC 2022
  • 2022-06: Binbloom v2——这是一场(革)命 🖥️📽️ 于 SSTIC 2022
  • 2022-05: 黑客们,重新掌控联网对象! 📽️ 于 Mixit 2022
  • 2022-05: 当 eBPF 遇上 TLS! 🖥️ 于 CanSecWest 2022
  • 2022-05: kdigger——一个用于 Kubernetes 渗透测试的上下文发现工具 🖥️ 于 Black Hat Asia 2022
  • 2022-04: 你能把车停在教室里吗? 📽️ 于 Hardwear.io webinar
  • 2022-04: 构建真实世界漏洞的提交级数据集 🖥️📜📽️ 于 CODASPY 2022
  • 📽️
    CRYPTO 2021
  • 2021-08: 灰盒程序合成:攻击数据流混淆的一种新方法 🖥️📜📽️ 于 Black Hat USA 2021
  • 2021-07: 认识 Piotr,一个面向培训师和研究人员的固件仿真工具 🖥️📽️ 于 Pass the SALT 2021
  • 2021-06: 不可链接且不可见的 γ-可净化签名 📜 于 Applied Cryptography and Network Security ACNS 2021
  • 2021-06: 利用 AOSP 依赖图进行安全研究 🖥️📜📽️ 于 SSTIC 2021
  • 2021-06: EEPROM——一切都将以泪水告终 🖥️📜📽️ 于 SSTIC 2021
  • 2021-06: QBDL——QuarkslaB 动态加载器 🖥️📽️ 于 SSTIC 2021
  • Hardwear.io webinar
  • 2020-06: Inter-CESTI: Methodological and Technical Feedbacks on Hardware Devices Evaluations 🖥️📜📽️ 在 SSTIC 2020
  • 2020-06: Fuzz and Profit with WHVP 🖥️📜📽️ 在 SSTIC 2020
  • 2020-02: QSynth - A Program Synthesis approach for Binary Code Deobfuscation 🖥️📜 在 Binary Analysis Research (BAR) Workshop 2020
  • 2020-02: Self-hosted server backups for the paranoid 📽️ 在 FOSDEM 2020
  • Infiltrate 2019
  • 2019-04: Fuzzing binaries using Dynamic Instrumentation 🖥️ 在 French-Japan cybersecurity workshop 2019
  • 2019-04: Table-based whitebox techniques applied to lattice based cryptography: towards an asymmetric whitebox proposal? 🖥️ 在 WRACH 2019
  • 2019-03: Old New Things: An examination of the Philips TriMedia architecture 🖥️📽️ 在 Troopers 2019
  • 2019-01: Contrôle de passes à grain fin pour l'obfuscation de code 🖥️ 在 Journées de la Compilation 2019
  • Black Hat USA 2018
  • 2018-07: Quadratic Time Algorithm for Inversion of Binary Permutation Polynomials 📜 在 ICMS 2018
  • 2018-07: Static instrumentation based on executable file formats 🖥️📽️ 在 Pass the SALT 2018
  • 2018-06: Symbolic Deobfuscation: From Virtualized Code Back to the Original 🖥️📜 在 15th Conference on Detection of Intrusions and Malware & Vulnerability Assessment, DIMVA 2018
  • 2018-06: Static instrumentation based on executable file formats 🖥️📽️ 在 Recon 2018
  • 2018-06: Attacking Serial Flash Chip: Case Study of a Black Box 📜📽️ 在 SSTIC 2018
  • 2018-04: Implementing an LLVM based Dynamic Binary Instrumentation framework 📽️ 在 Euro LLVM dev meeting
  • 2018-04: Easy::Jit : Compiler-assisted library to enable Just-In-Time compilation for C++ codes 🖥️📽️ 在 Euro LLVM dev meeting
  • 2018-04: DragonFFI: Foreign Function Interface and JIT using Clang/LLVM 🖥️📽️ 在 Euro LLVM dev meeting
  • 2018-04: Automatizing vulnerability research to better face new software security challenges 🖥️ 在 Cisco Innovation & Research Symposium 2018
  • 2018-02: Surviving in an Open Source Niche: the Pythran case 📽️ 在 FOSDEM 2018
  • 2018-02: Literate Programming meets LLVM Passes 📽️ 在 FOSDEM 2018
  • 2018-02: Easy::jit : just-in-time compilation for C++ 🖥️📽️ 在 FOSDEM 2018
  • 2018-02: DragonFFI Foreign Function Interface and JIT using Clang/LLVM 🖥️📽️ 在 FOSDEM 2018
  • 📜
    📽️
    SSTIC 2017
  • 2017-04: LIEF: Library to Instrument Executable Formats 🖥️ 在 Third French Japanese Meeting on Cybersecurity
  • 2017-04: Ma vie, mon œuvre, et le cyber 🖥️ 在 92ème séminaire d’intelligence économique
  • 2017-03: Playing with Binary Analysis: Deobfuscation of VM based software protection 📽️ 在 THCon 2017
  • SPRO 2016
  • 2016-10: GAST, Daou Naer - AST pour Python 2 et 3 📽️ 在 PyConFR 2016
  • 2016-09: C++ Costless Abstractions: the compiler view 🖥️📽️ 在 CppCon 2016
  • 2016-08: Differential computation analysis: Hiding your white-box designs is not enough 🖥️📜📽️ 在 CHES 2016
  • 2016-07: Practical Attacks Against White-Box Crypto Implementations 🖥️ workshop 在 ECRYPT-NET Workshop on Cryptography Design for the IoT
  • 2016-07: Binmap: scanning file systems with Binmap 🖥️📽️ 在 RMLL Security track 2016
  • 2016-06: Design de cryptographie white-box : et a la fin, c'est Kerckhoffs qui gagne 🖥️📜📽️ 在 SSTIC 2016
  • 2016-04: Dynamic Binary Analysis and Obfuscated Codes 🖥️ 在 StHack 2016
  • 2016-03: Building, Testing and Debugging a Simple out-of-tree LLVM Pass 🖥️📽️ 在 Euro LLVM 2016
  • 2016-03: Hiding your White-Box Designs is Not Enough 🖥️📽️ 在 Troopers 2016
  • HITB 2015 Amsterdam
  • 2015-03: 动态二进制分析与插桩:使用 DSE 方法覆盖函数 🖥️ 于 StHack 2015
  • 2015-01: 动态二进制分析与插桩:使用 DSE 方法覆盖函数 🖥️📽️ 于 Security Day 2015
  • 2015-01: 主题演讲 📽️ 于 Security Day 2015
  • 端口扫描不是给懦夫准备的,了解你自己,了解你的敌人 🖥️
    HITB 2014 Amsterdam
    Android 上的 EDR? 📜
  • 2021-03: 探索 Titan M 芯片,又名 Citadel 📜 载于 MISC Numéro 114(免费访问)
  • 2020-11: 分析编排 📜 载于 MISC Numéro 112(免费访问)
  • 2020-11: Kubernetes 的兴衰:攻击未来的云操作系统 📜 载于 MISC Numéro 112(免费访问)
  • 2020-05: QBDI 及其 Python 绑定简介 📜 载于 MISC Numéro 109
  • 2020-05: 使用 DragonFFI 简化漏洞利用的创建:CVE-200977-18 案例 📜 载于 MISC Numéro 109(免费访问)
  • 2019-07: 在 Windows 内核中利用 CVE-200977-18 📜 载于 MISC Numéro 104
  • 2019-03: KTRR 绕过分析 📜 载于 MISC Numéro 102(免费访问)
  • 2017-09: C++ 之旅:符号 📜 载于 MISC Numéro 93(免费访问)
  • 2017-07: 反逆向 101 📜 载于 MISC Numéro 92
  • Hardwear.io NL 2021
    CTFtime
  • 2020-03:Hardware CTF v3 🖥️,于 Nullcon Goa 2020。结果见 CTFtime。
  • 2019-09:Hardware CTF v3 🖥️,于 Hardwear.io NL 2019。结果见 CTFtime。
  • 2019-06:Hardware CTF v2 🖥️,于 Hardwear.io USA 2019。结果见 CTFtime。
  • 2019-03:Hardware CTF v2,于 Nullcon Goa 2019。结果见 CTFtime。
  • 2018-09:Hardware CTF v2 🖥️,于 Hardwear.io NL 2018。结果见 CTFtime。
  • 2018-04:Hardware CTF v1,于 HITB Amsterdam 2018。结果见 CTFtime。
  • 2018-03:Hardware CTF v1,于 Nullcon Goa 2018。结果见 CTFtime。
  • 2017-09:Hardware CTF v1 🖥️,于 Hardwear.io NL 2017。结果见 CTFtime。