{"id":1875,"date":"2015-11-06T14:40:47","date_gmt":"2015-11-06T13:40:47","guid":{"rendered":"http:\/\/securite.intrinsec.com\/?p=1875"},"modified":"2015-11-06T14:40:47","modified_gmt":"2015-11-06T13:40:47","slug":"hackito-ergo-sum-2015","status":"publish","type":"post","link":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/","title":{"rendered":"Hackito Ergo Sum 2015"},"content":{"rendered":"<p>This year Intrinsec was present at the Hackito Ergo Sum conference which took place at the Cit\u00e9 des sciences et de l&#039;industrie.<\/p>\n<p>The slides and videos from the conferences should be available shortly.<\/p>\n<p><strong>Keynote by FX from Phenoelit<\/strong><\/p>\n<p>The conference began with a keynote address divided into two parts. The first part outlined the various aspects of hacking and hackers from recent years to the present day. The second part drew an analogy between human cells and a Turing machine, demonstrating that each biological mechanism a cell is capable of is similar to the mechanisms found in the machine. Considering this, the human body could then be seen as a cluster of Turing machines. Indeed, all four components of the machine are found in the human body: the ribbon is DNA, the reading head is RNA polymerase, the state register is mRNA, and the action table is likened to ribosomes. The only significant difference between these two entities is the information processing time, which is considerably longer in the case of the human body.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Applying machine learning methods to network mapping hunting<\/strong> \u2013 Camille Mougey &amp; Xavier Martin<\/p>\n<p>This presentation is a demonstration of the use of the IVRE (Instrument for Monitoring External Networks) software, developed by the CEA. This tool aims to simplify the analysis of the results of large-scale network scans, with a dual objective: for the Blue Team, to understand the network topology and detect anomalies; for the Red Team, to obtain information, observe the evolution of a target over time and find relevant information.<\/p>\n<p>Thanks to machine learning techniques, it is possible to have results analyzed automatically by a server, without the need for time-consuming and potentially biased human analysis. For example, the tool can create groups of similar machines (web servers, printers, etc.), thus enabling the identification of isolated machines.<\/p>\n<p>IVRE is available on GitHub: <a href=\"https:\/\/github.com\/cea-sec\/ivre\">https:\/\/github.com\/cea-sec\/ivre<\/a><\/p>\n<p>&nbsp;<\/p>\n<p><strong>Cracking Sendmail crackaddr<\/strong> \u2013 Still a challenge for automated program analysis \u2013 Bogdan Mihaila<\/p>\n<p>Bogdan Mihaila is a computer scientist working for the Technical University of Munich. His research focuses on creating a mathematical model to highlight programming errors such as, in the case presented, a buffer overflow.<\/p>\n<p>This error was discovered in 2003 during a code review of the sendmail application and remains a concrete example of the difficulty of debugging in a computer program. Like the &quot;goto fail&quot; error in OpenSSL, this buffer overflow results from an implementation oversight in the code. When processing an email address, one of the variables used to limit the number of nested parentheses is not decremented, and the successive use of fifty parentheses in the email address allows this buffer overflow to be exploited. In practice, this type of error cannot currently be detected without manually reviewing the code.<\/p>\n<p>Bogdan Mihaila therefore became interested in this &quot;Sendmail crackaddr challenge,&quot; namely how to detect this type of error. To achieve this, he uses a simplified assembly language which he traverses using Markov chains. In the event of a buffer overflow, the variables analyzed by the program are no longer bounded, and the vulnerability is detected.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Complex malware &amp; forensics investigation<\/strong> \u2013 Paul Rascagn\u00e8res &amp; Sebastien Larinier<\/p>\n<p>Paul and Sebastien presented their tool, FastIR Collector, an advanced version of the now-defunct FastResponder. This tool automatically retrieves various artifacts from a Windows machine to detect potential traces of compromise. Its goal is to assist reversal investigators and forensic analysts in their search for indicators of compromise (IOCs), saving them considerable time.<\/p>\n<p>Through six malware examples, the two researchers presented different use cases for the tool and what could be recovered. They were thus able to find malware using registry keys not displayed in regedit, either because they use Unicode encoding in their names or because they store JavaScript code as values, code which is then used during infection.<\/p>\n<p>FastIR is available on GitHub: <a href=\"https:\/\/github.com\/SekoiaLab\/Fastir_Collector\/\">https:\/\/github.com\/SekoiaLab\/Fastir_Collector\/<\/a><\/p>\n<p>&nbsp;<\/p>\n<p><strong>Mind your languages!<\/strong> \u2013 Olivier Levillain &amp; Pierre Chifflier<\/p>\n<p>The two researchers went beyond application security and focused on the intrinsic security of languages. The presentation consists primarily of examples in JavaScript, PHP, Java, Ruby, Perl, Python, and OCaml, showcasing unexpected or illogical results.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Malicious AVPs: Exploits to the LTE Core<\/strong> \u2013 Laurent Ghigonis &amp; Philippe Langlois<\/p>\n<p>The two researchers from P1 Security presented a vulnerability affecting Diameter Routing Agents (DRAs) used by telecommunications operators. This equipment is central to the management of LTE mobile networks, as it ensures the correct routing of all an operator&#039;s traffic. This is a follow-up to Laurent&#039;s presentation at HES2014.<\/p>\n<p>After a review of how LTE networks work, the presentation focused on the technical details of the attack, which exploits a vulnerability in the implementation of the DIAMETER protocol (the successor to RADIUS) on these routers. Specifically, the length of a field is not correctly checked, allowing the attacker to exploit a stack-overflow vulnerability.<\/p>\n<p>After a night of exploitation, the researchers successfully exploited the vulnerability and gained administrator privileges on the equipment. From that point on, they were able to shut down the operator&#039;s 4G network.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Android malware that won&#039;t make you fall asleep<\/strong> \u2013 Lukasz Siewierski<\/p>\n<p>Android malware is annoying. It&#039;s not obfuscated, it does what it claims, and it doesn&#039;t use native code, only the standard API. That&#039;s why nobody studies it. So Lukasz started studying it.<\/p>\n<p>After a brief analysis of manifest.xml, particularly regarding system interpretation issues that allow rewriting the package name by inserting XML code, he presented several malware programs that use interesting biases to execute.<\/p>\n<p>The first one registers a DLL in Mono within the SMSReceiver. This library then retrieves a Lua script from the Command &amp; Control module to determine its next steps. Therefore, without the Command &amp; Control module, the malware cannot execute any commands.<\/p>\n<p>The second one stores JavaScript interfaces so that the attacker can execute whatever they want just by sending JavaScript into a web page.<\/p>\n<p>The third feature of the &quot;application overlay&quot;: it opens a dialog box (login) when a legitimate application is launched, making it seem as if it is asking for the credentials again when in fact they will be sent to the malware.<\/p>\n<p>People have also taken the &quot;text secure&quot; application (now called &quot;signal&quot;) and inserted a trojan into it before redistributing it as an &quot;SMS security application&quot;.<\/p>\n<p>This malware does different things depending on the special characters received at the beginning of the SMS, for example:<\/p>\n<ul>\n<li>\/ : It redirects the SMS to a number<\/li>\n<li>! : It is uninstalling.<\/li>\n<\/ul>\n<p>That&#039;s why Polish banks are now sending OTPs in SMS messages that start with !<\/p>\n<p>Finally, the conference concluded with technical details regarding Android&#039;s operation. SMS uses a port system (similar to TCP or UDP) to determine whether messages are standard SMS, WAP push, etc. Some ports are free, and by default, the phone doesn&#039;t use them\u2014no notifications, etc. It might therefore be possible to use these ports to send commands to the phone invisibly.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Mechanical Locks Opening and Forensic Analysis<\/strong> \u2013 Alexandre TRIFFAULT<\/p>\n<p>This conference on lockpicking deals with the physical traces left by intruders using non-destructive attacks to force locks.<\/p>\n<p>The presentation begins with a live demonstration of 4 attack techniques that leave little or no trace visible to the naked eye:<\/p>\n<ul>\n<li>Single picking: using a standard lockpicking kit<\/li>\n<li>Electric gun: using an electric gun to clean the pins<\/li>\n<li>Manual pistol: same technique as before, but with manual activation<\/li>\n<li>Bump Key: using a special key and a hammer to force the door open<\/li>\n<\/ul>\n<p>Using a microscope, Alexandre highlighted the various marks left on the different parts of the lock, primarily on the pins. Although invisible without tools, these marks are specific and allow identification of the attack used to open the door. However, this analysis is destructive since the lock must be disassembled to extract the pins.<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Pentesting airports: field experiences<\/strong> \u2013 Raoul \u00abNobody\u00bb Chiesa<\/p>\n<p>Raoul Chiesa and his team had the opportunity to realize their dream: to perform penetration testing at one of the largest European airports. Despite some disagreements regarding the service price, due to the client&#039;s lack of knowledge on the subject, they were selected to carry out a complete security assessment.<\/p>\n<p>After sharing a few anecdotes about his personal experiences and involvement in the security field, Raoul Chielsa presented the results of the penetration test conducted with his team, SecurityBroker. For an entity of such importance and scale, one would expect exemplary security, but the results were quite surprising. Indeed, in addition to the usual vulnerabilities in common products like OpenSSL, the results also included SMB NULL sessions, guest Wi-Fi networks allowing access to the airport&#039;s internal network, administrative interfaces accessible with trivial or default credentials, and more. This allowed them to access databases containing the personal information of all passengers who had passed through the airport, the customs scanners, and even modify the information displayed on the airport&#039;s information screens (who hasn&#039;t dreamed of doing that? ;)).<\/p>\n<p>Ultimately, we can question the security of airports, a critical infrastructure. This example is glaring, but most of these vulnerabilities have also been found during unofficial penetration tests at other airports around the world.<\/p>","protected":false},"excerpt":{"rendered":"<p>This year Intrinsec was present at the Hackito Ergo Sum conference which took place in [\u2026]<\/p>","protected":false},"author":1,"featured_media":1878,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13,19,22],"tags":[],"class_list":["post-1875","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-evaluation-securite","category-soc-securite-operationnelle","category-veille-securite"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.0 (Yoast SEO v27.8) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Hackito Ergo Sum 2015 - INTRINSEC<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Hackito Ergo Sum 2015\" \/>\n<meta property=\"og:description\" content=\"Cette ann\u00e9e Intrinsec \u00e9tait pr\u00e9sent \u00e0 la conf\u00e9rence Hackito Ergo Sum qui se d\u00e9roulait \u00e0 [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/\" \/>\n<meta property=\"og:site_name\" content=\"INTRINSEC\" \/>\n<meta property=\"article:published_time\" content=\"2015-11-06T13:40:47+00:00\" \/>\n<meta name=\"author\" content=\"Intrinsec\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Intrinsec\" \/>\n<meta name=\"twitter:site\" content=\"@Intrinsec\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Intrinsec\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"9 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/\"},\"author\":{\"name\":\"Intrinsec\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#\\\/schema\\\/person\\\/ade590fbc7ad6f413727bae7cd3fb799\"},\"headline\":\"Hackito Ergo Sum 2015\",\"datePublished\":\"2015-11-06T13:40:47+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/\"},\"wordCount\":1894,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/#primaryimage\"},\"thumbnailUrl\":\"\",\"articleSection\":[\"S\u00e9curit\u00e9 offensive &amp; Audit\",\"SOC S\u00e9curit\u00e9 Op\u00e9rationnelle\",\"Veille S\u00e9curit\u00e9\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/\",\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/\",\"name\":\"Hackito Ergo Sum 2015 - INTRINSEC\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/#primaryimage\"},\"thumbnailUrl\":\"\",\"datePublished\":\"2015-11-06T13:40:47+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/#primaryimage\",\"url\":\"\",\"contentUrl\":\"\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/hackito-ergo-sum-2015\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Accueil\",\"item\":\"https:\\\/\\\/www.intrinsec.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Hackito Ergo Sum 2015\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#website\",\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/\",\"name\":\"INTRINSEC\",\"description\":\"Notre m\u00e9tier , Prot\u00e9ger le v\u00f4tre\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.intrinsec.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#organization\",\"name\":\"INTRINSEC\",\"alternateName\":\"ISEC\",\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/wp-content\\\/uploads\\\/2025\\\/02\\\/libellule.png\",\"contentUrl\":\"https:\\\/\\\/www.intrinsec.com\\\/wp-content\\\/uploads\\\/2025\\\/02\\\/libellule.png\",\"width\":1322,\"height\":1322,\"caption\":\"INTRINSEC\"},\"image\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/Intrinsec\",\"https:\\\/\\\/fr.linkedin.com\\\/company\\\/intrinsec\",\"https:\\\/\\\/www.youtube.com\\\/channel\\\/UC0trUZAHNZOUbxYnNdecM4A\"],\"description\":\"soci\u00e9t\u00e9 de consulting, pure player cybers\u00e9curit\u00e9 fran\u00e7ais et europ\u00e9en depuis plus de 30ans, sp\u00e9cialiste dans la s\u00e9curit\u00e9 offensive & audit (pentest\\\/red team), GRC, et services IMSS comme le SOC, CTI et CERT Intrinsec est qualifi\u00e9 PASSI Elev\u00e9, PRIS Elev\u00e9 et PACS par l'ANSSI\",\"email\":\"contact@intrinsec.com\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#\\\/schema\\\/person\\\/ade590fbc7ad6f413727bae7cd3fb799\",\"name\":\"Intrinsec\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g\",\"caption\":\"Intrinsec\"},\"sameAs\":[\"https:\\\/\\\/www.intrinsec.com\"],\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/author\\\/ufhtbqccsz\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Hackito Ergo Sum 2015 - INTRINSEC","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/","og_locale":"en_US","og_type":"article","og_title":"Hackito Ergo Sum 2015","og_description":"Cette ann\u00e9e Intrinsec \u00e9tait pr\u00e9sent \u00e0 la conf\u00e9rence Hackito Ergo Sum qui se d\u00e9roulait \u00e0 [&hellip;]","og_url":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/","og_site_name":"INTRINSEC","article_published_time":"2015-11-06T13:40:47+00:00","author":"Intrinsec","twitter_card":"summary_large_image","twitter_creator":"@Intrinsec","twitter_site":"@Intrinsec","twitter_misc":{"Written by":"Intrinsec","Est. reading time":"9 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/#article","isPartOf":{"@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/"},"author":{"name":"Intrinsec","@id":"https:\/\/www.intrinsec.com\/#\/schema\/person\/ade590fbc7ad6f413727bae7cd3fb799"},"headline":"Hackito Ergo Sum 2015","datePublished":"2015-11-06T13:40:47+00:00","mainEntityOfPage":{"@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/"},"wordCount":1894,"commentCount":0,"publisher":{"@id":"https:\/\/www.intrinsec.com\/#organization"},"image":{"@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/#primaryimage"},"thumbnailUrl":"","articleSection":["S\u00e9curit\u00e9 offensive &amp; Audit","SOC S\u00e9curit\u00e9 Op\u00e9rationnelle","Veille S\u00e9curit\u00e9"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/","url":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/","name":"Hackito Ergo Sum 2015 - INTRINSEC","isPartOf":{"@id":"https:\/\/www.intrinsec.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/#primaryimage"},"image":{"@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/#primaryimage"},"thumbnailUrl":"","datePublished":"2015-11-06T13:40:47+00:00","breadcrumb":{"@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/#primaryimage","url":"","contentUrl":""},{"@type":"BreadcrumbList","@id":"https:\/\/www.intrinsec.com\/en\/hackito-ergo-sum-2015\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Accueil","item":"https:\/\/www.intrinsec.com\/"},{"@type":"ListItem","position":2,"name":"Hackito Ergo Sum 2015"}]},{"@type":"WebSite","@id":"https:\/\/www.intrinsec.com\/#website","url":"https:\/\/www.intrinsec.com\/","name":"INTRINSEC","description":"Our job is to protect yours.","publisher":{"@id":"https:\/\/www.intrinsec.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.intrinsec.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.intrinsec.com\/#organization","name":"INTRINSEC","alternateName":"ISEC","url":"https:\/\/www.intrinsec.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.intrinsec.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2025\/02\/libellule.png","contentUrl":"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2025\/02\/libellule.png","width":1322,"height":1322,"caption":"INTRINSEC"},"image":{"@id":"https:\/\/www.intrinsec.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/Intrinsec","https:\/\/fr.linkedin.com\/company\/intrinsec","https:\/\/www.youtube.com\/channel\/UC0trUZAHNZOUbxYnNdecM4A"],"description":"Intrinsec, a consulting firm and pure-play French and European cybersecurity provider for over 30 years, specializes in offensive security and auditing (penetration testing\/red teams), GRC, and IMSS services such as SOC, CTI, and CERT. Intrinsec is qualified at PASSI High, PRIS High, and PACS levels by ANSSI.","email":"contact@intrinsec.com"},{"@type":"Person","@id":"https:\/\/www.intrinsec.com\/#\/schema\/person\/ade590fbc7ad6f413727bae7cd3fb799","name":"Intrinsic","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g","caption":"Intrinsec"},"sameAs":["https:\/\/www.intrinsec.com"],"url":"https:\/\/www.intrinsec.com\/en\/author\/ufhtbqccsz\/"}]}},"_links":{"self":[{"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/posts\/1875","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/comments?post=1875"}],"version-history":[{"count":0,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/posts\/1875\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/media?parent=1875"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/categories?post=1875"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/tags?post=1875"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}