{"id":228078,"date":"2014-11-24T13:00:21","date_gmt":"2014-11-24T12:00:21","guid":{"rendered":"http:\/\/securite.intrinsec.com\/?p=1635"},"modified":"2014-11-24T13:00:21","modified_gmt":"2014-11-24T12:00:21","slug":"conference-nosuchcon-2014-jour-3","status":"publish","type":"post","link":"https:\/\/www.intrinsec.com\/en\/conference-nosuchcon-2014-jour-3\/","title":{"rendered":"NoSuchCon 2014 Conference \u2013 Day 3"},"content":{"rendered":"<p>As part of its monitoring activities, Intrinsec attended the second edition of the NoSuchCon international conference, which took place from November 19 to 21, 2014, at the Niemeyer space at the headquarters of the French Communist Party (PCF) in Paris. The presentations were in English, technical, and straightforward. <em>(bullshit-free)<\/em>.<\/p>\n<p><a href=\"http:\/\/www.nosuchcon.org\/\"><img fetchpriority=\"high\" decoding=\"async\" class=\"aligncenter wp-image-1605 size-medium\" src=\"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2014\/11\/image15-300x199.jpg\" alt=\"image15\" width=\"300\" height=\"199\" \/><\/a>(source : <a title=\"NoSuchCon\" href=\"http:\/\/www.nosuchcon.org\/\">http:\/\/www.nosuchcon.org\/<\/a>)<\/p>\n<p>We offer summaries of the various presentations from the conference: <a title=\"NoSuchCon 2014 Conference \u2013 Day 1\" href=\"https:\/\/www.intrinsec.com\/en\/2014\/11\/24\/conference-nosuchcon-2014-jour-1\/\">Day 1<\/a>, <a title=\"NoSuchCon 2014 Conference \u2013 Day 2\" href=\"https:\/\/www.intrinsec.com\/en\/2014\/11\/24\/conference-nosuchcon-2014-jour-2\/\">Day 2<\/a> and day 3 (this article).<\/p>\n<p>We would also like to thank the organizers and student volunteers who managed this event very well, as well as the speakers who shared their knowledge and discoveries.<\/p>\n<h1>Day 3<\/h1>\n<h2>\u00abReverse engineer MSP 430 device\u00bb \u2013 Braden Thomas (Accuvant)<\/h2>\n<p>Slides: not shown<\/p>\n<p>Braden Thomas presented an object that is popular in the United States and Canada, but unknown in France: the <em>\u00ab&quot;Real-estate lock boxes&quot;\u00bb<\/em>. These boxes are placed on the door handles of houses for sale and store the property keys for access by authorized real estate agents.<\/p>\n<p>The new generation of locks can be opened contactlessly in different ways: electronic key from the manufacturer, Android or iOS application (Bluetooth) or infrared transmitter.<\/p>\n<p>The speaker presented the results of his research on the security of these devices. As the vulnerabilities discovered have not yet been patched by the manufacturer (who is, however, receptive and cooperative), he chose not to broadcast his presentation.<\/p>\n<p>Braden notably managed to extract the <em>firmware<\/em> of the MSP430 microcontroller used, bypassing the fuses disabling the JTAG port through a procedure called &quot;\u00ab\u00a0<em>paparazzi attack \u00bb<\/em> which requires cleaning the chip and subjecting it to flashes of light.<\/p>\n<p>&nbsp;<\/p>\n<blockquote class=\"twitter-tweet tw-align-center\" lang=\"fr\"><p>The \u00abPaparazzi\u00bb attack: decap a chip and use a flash to affect its behavior\u2026 Like in a James Bond movie! <a href=\"https:\/\/twitter.com\/hashtag\/NoSuchCon?src=hash\">#NoSuchCon<\/a><\/p>\n<p>\u2014 Xavier Mertens (@xme) <a href=\"https:\/\/twitter.com\/xme\/status\/535713656441696256\">November 21, 2014<\/a><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p>He also discovered a hardware backdoor in the form of a resistor between two microcontroller ports: it can be easily unsoldered or destroyed by drilling at the right spot from the outside. In conclusion, Braden reiterates that it is strongly advised against storing cryptographic secrets in a standard microcontroller that is not designed to resist their extraction.<\/p>\n<p>&nbsp;<\/p>\n<h2>\u00abAttack on the Core\u00bb \u2013 Peter Hlavaty (Keen Team)<\/h2>\n<p><a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/D3_02_Peter_Hlavaty_Attack_on_the_core.pdf\"><img decoding=\"async\" class=\"aligncenter size-medium wp-image-1616\" src=\"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2014\/11\/image27-300x168.png\" alt=\"image27\" width=\"300\" height=\"168\" \/><\/a>Slides: <a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/D3_02_Peter_Hlavaty_Attack_on_the_core.pdf\">http:\/\/www.nosuchcon.org\/talks\/2014\/D3_02_Peter_Hlavaty_Attack_on_the_core.pdf<\/a><\/p>\n<p>Peter Hlavaty is a vulnerability researcher. His highly technical presentation was aimed at those experienced in developing kernel-level exploits. It provided an opportunity to demonstrate several techniques for escalating privileges to the kernel level when exploiting a vulnerability. He also introduced his <em>framework<\/em> development <em>shellcodes<\/em> in C++.<\/p>\n<p>&nbsp;<\/p>\n<h2>\u00abCryptographic Backdooring\u00bb \u2013 Jean-Philippe Aumasson (Kudelski Security)<\/h2>\n<p><a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/D3_03_Jean_Philippe_Aumasson_Cryptographic_Backdooring.pdf\"><img decoding=\"async\" class=\"aligncenter size-medium wp-image-1621\" src=\"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2014\/11\/image32-300x225.png\" alt=\"image32\" width=\"300\" height=\"225\" \/><\/a>Slides: <a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/D3_03_Jean_Philippe_Aumasson_Cryptographic_Backdooring.pdf\">http:\/\/www.nosuchcon.org\/talks\/2014\/D3_03_Jean_Philippe_Aumasson_Cryptographic_Backdooring.pdf<\/a><\/p>\n<p>Recent revelations about national computer espionage programs have cast more doubt than ever on the possible presence of backdoors in cryptographic algorithms and their implementations, which allow government organizations to decrypt communications in the context of lawful interceptions.<\/p>\n<p>Jean-Philippe Aumasson pointed out that it is difficult to build reliable backdoors and there is always a risk that they will be exploited by malicious individuals.<\/p>\n<p>The speaker presented the desired properties of a good backdoor. In particular, he mentioned the term attributed to the NSA: NOBUS <em>\u00ab&quot;No one but us&quot;\u00bb<\/em>, which means that the vulnerability must only be exploitable by the agency alone.<\/p>\n<p>Jean-Philippe demonstrated some possibilities for designing and implementing backdoors. In conclusion: according to the speaker, inserting backdoors is easy.<\/p>\n<p>&nbsp;<\/p>\n<h2>\u00abHardware Workshop \u2013 Fun with RF remotes\u00bb \u2013 Damien Cauquil (Sysdream)<\/h2>\n<p>Slides, PCB file, manual: <a href=\"https:\/\/github.com\/virtualabs\/NSC14-HW\">https:\/\/github.com\/virtualabs\/NSC14-HW<\/a><\/p>\n<p>This workshop was offered during the lunch break. Damien Cauquil reviewed the mechanisms of wireless communication and demonstrated how to intercept it. The workshop focused on modifying a consumer-grade wireless doorbell system. A remote control is located outside the house and communicates with the doorbell; this exchange is protected by a 6-bit code.<\/p>\n<p>Damien proposed modifying the remote control to add an electronic board that implements an automatic brute-force attack on the 6 bits of the code using a component that generates a clock and a counter (to generate successive combinations). This <em>hack<\/em> is interesting because it reuses the legitimate remote control and does not require reimplementing the radio part.<\/p>\n<p>&nbsp;<\/p>\n<h2>\u00abDetecting BGP hijacks in 2014\u00bb \u2013 Guillaume Valadon, Nicolas Vivet (ANSSI)<\/h2>\n<p><a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/D3_04_Guillaume_Valadon_Nicolas_Vivet_detecting_BGP_hijacks.pdf\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-medium wp-image-1611\" src=\"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2014\/11\/image16-300x225.png\" alt=\"image16\" width=\"300\" height=\"225\" \/><\/a>Slides: <a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/D3_04_Guillaume_Valadon_Nicolas_Vivet_detecting_BGP_hijacks.pdf\">http:\/\/www.nosuchcon.org\/talks\/2014\/D3_04_Guillaume_Valadon_Nicolas_Vivet_detecting_BGP_hijacks.pdf<\/a><\/p>\n<p>The BGP protocol is used at the Internet level to exchange routing information between different networks (AS: <em>Autonomous Systems<\/em>The ASes advertise the prefixes of the IP networks they manage using this protocol; therefore, this protocol requires trust in the received advertisements. It is thus possible to divert traffic destined for certain networks.<\/p>\n<p>According to the speakers, in Europe registering an AS number and a \/22 address range both cost \u20ac50 per year and allow participation in BGP exchanges.<\/p>\n<p>&nbsp;<\/p>\n<blockquote class=\"twitter-tweet tw-align-center\" lang=\"fr\"><p>BGP highjacks are used to launch spam campaign from fresh IPs <a href=\"https:\/\/twitter.com\/hashtag\/NSC14?src=hash\">#NSC14<\/a> \u2014 Taiki (@Taiki__San) <a href=\"https:\/\/twitter.com\/Taiki__San\/status\/535790962107494400\">November 21, 2014<\/a><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p>A countermeasure is possible: declare in the &quot;route&quot; object of the network&#039;s WHOIS record which AS(s) is\/are authorized to advertise the prefix, but not all network managers do this yet.<\/p>\n<p>&nbsp;<\/p>\n<p>Guillaume Valadon presented the methodology and results of offline analyses conducted on a year&#039;s worth of BGP traffic to detect prefix spoofing. Numerous suspicious events are generated, and several techniques can reduce their number to a relevant and manually processable volume. Approximately 10 serious spoofing attempts against French operators were detected using this method during the year.<\/p>\n<p>Nicolas Vivet presented how this methodology and these tools have been modified to perform real-time detection. Several concrete examples were presented, including a suspected case of a French operator&#039;s IPv6 prefix being spoofed by a Ukrainian operator, which, after investigation, turned out to be the opposite: the French operator had forgotten a zero in the IPv6 address it was advertising!<\/p>\n<p>In conclusion: traffic can be redirected, so it is important to encrypt and authenticate it. Operators must monitor BGP traffic on their prefixes and be prepared to counterattack. Finally, the IETF&#039;s Best Practices (BCPs) must be implemented by operators.<\/p>\n<p>&nbsp;<\/p>\n<h2>\u00abUnreal mode: breaking protected processes\u00bb \u2013 Alex Ionescu (CrowdStrike)<\/h2>\n<p><a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/D3_05_Alex_ionescu_Breaking_protected_processes.pdf\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-medium wp-image-1619\" src=\"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2014\/11\/image30-300x168.png\" alt=\"image30\" width=\"300\" height=\"168\" \/><\/a>Slides: <a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/D3_05_Alex_ionescu_Breaking_protected_processes.pdf\">http:\/\/www.nosuchcon.org\/talks\/2014\/D3_05_Alex_ionescu_Breaking_protected_processes.pdf<\/a><\/p>\n<p>This presentation was not revealed before the conference; in fact, the vulnerability presented by Alex Ionescu was discovered in August but will not be patched by Microsoft until January. He therefore only received permission to present the day before, omitting the details.<\/p>\n<p>In recent versions of the Windows operating system, administrator access no longer means unlimited access to the system: more and more features are only accessible in kernel mode, which is much more difficult to reach.<\/p>\n<p>This distinction allows the creation of protected processes (see also on this topic the presentation of day 2 &quot;Understanding and defeating Windows 8.1 Patch Protections: it&#039;s all about gong fu! (part 2)&quot; by Andrea Allievi) and therefore, for example, the implementation in a compartmentalized manner of DRM mechanisms, but also of processes and services impossible to stop, even as an administrator.<\/p>\n<p>&nbsp;<\/p>\n<p>Alex explained the different levels of process signatures and privileges. For example, on a classic desktop Windows system, any program can be run, whereas on a Surface tablet, only programs signed by Microsoft can run normally.<\/p>\n<p>&nbsp;<\/p>\n<p>The LSASS process that handles authentication can be protected to prevent the theft of its contents (for example, with mimikatz). However, Alex has shown that by exploiting the Windows crash manager, it is possible to vulnerabilities. <em>(Windows Error Reporting)<\/em> it is possible to obtain a <em>dump<\/em> of this process and thus bypass the protection! This <em>dump<\/em> being that of a protected process it is normally encrypted, however Alex discovered a vulnerability (which will be fixed in January) which allows this file to be obtained in plain text and exploited with mimikatz to still obtain the identification information.<\/p>\n<p>&nbsp;<\/p>\n<blockquote class=\"twitter-tweet tw-align-center\" lang=\"fr\"><p>Now dumping his \u00abreal\u00bb user password from LSASS memory dump in front of 400 hackers <a href=\"https:\/\/twitter.com\/aionescu\">@aionescu<\/a> is really into this \u00ablive demo\u00bb thing :)<\/p>\n<p>\u2014 NoSuchCon (@NoSuchCon) <a href=\"https:\/\/twitter.com\/NoSuchCon\/status\/535810596071944193\">November 21, 2014<\/a><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p>In conclusion, the ability to protect processes in Windows 8.1 improves the overall security of the OS, but it does not protect against kernel-level attacks. The upcoming Windows 10 version will contain even more advanced features that also protect against kernel-level attackers.<\/p>\n<p>&nbsp;<\/p>\n<h2>\u00abNo Such Security\u00bb \u2013 Anthony Zboralski (Belua)<\/h2>\n<p>Slides: none<\/p>\n<p>Anthony Zboralski delivered a <em>keynote<\/em> During his closing remarks, he presented his experiences in the professional world of IT security and during security assessment missions (penetration testing, audits, etc.). He evoked a sentiment shared by several consultants in the audience, using the myth of Sisyphus, condemned to repeat the same task day after day. He recalled the recommendations made following penetration tests and the training sessions delivered, all in vain, as year after year he rediscovered the same vulnerabilities in the companies he tested.<\/p>\n<blockquote class=\"twitter-tweet tw-align-center\" lang=\"fr\"><p><a href=\"https:\/\/twitter.com\/hashtag\/NSC14?src=hash\">#NSC14<\/a> <a href=\"https:\/\/twitter.com\/hashtag\/NoSuchCon?src=hash\">#NoSuchCon<\/a> Anthony Zboralski: &quot;The safety consultant is the inspector of completed work.&quot; (in French in the original text) \u2014 contact (@_c_o_n_t_a_c_t_) <a href=\"https:\/\/twitter.com\/_c_o_n_t_a_c_t_\/status\/535825145282445312\">November 21, 2014<\/a><\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<h2>\u00abChallenge Results\u00bb<\/h2>\n<p><a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/NSC_Challenge_intro.pdf\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-medium wp-image-1618\" src=\"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2014\/11\/image29-300x224.png\" alt=\"image29\" width=\"300\" height=\"224\" \/><\/a>Introductory slides: <a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/NSC_Challenge_intro.pdf\">http:\/\/www.nosuchcon.org\/talks\/2014\/NSC_Challenge_intro.pdf<\/a><\/p>\n<p><a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/NSC_Challenge_solution.pdf\"><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter size-medium wp-image-1617\" src=\"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2014\/11\/image28-300x224.png\" alt=\"image28\" width=\"300\" height=\"224\" \/><\/a> Slides solution: <a href=\"http:\/\/www.nosuchcon.org\/talks\/2014\/NSC_Challenge_solution.pdf\">http:\/\/www.nosuchcon.org\/talks\/2014\/NSC_Challenge_solution.pdf<\/a><\/p>\n<p>Nicolas Collignon and Eloi Vanderbeken presented the results of the complex, multi-skilled challenge they had organized. Then the winner, Fabien Perigaud, was invited to present the steps he took to solve it (including an attack on...). <em>timing <\/em>(on the processor cache to exfiltrate an RSA key!).<\/p>\n<p>&nbsp;<\/p>\n<p><em>\u2014 Cl\u00e9ment Notin<\/em><\/p>","protected":false},"excerpt":{"rendered":"<p>As part of its monitoring activities, Intrinsec was present at the second edition [\u2026]<\/p>","protected":false},"author":1,"featured_media":1663,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13,19,22],"tags":[120],"class_list":["post-228078","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-evaluation-securite","category-soc-securite-operationnelle","category-veille-securite","tag-nosuchcon"],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.0 (Yoast SEO v27.8) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Conf\u00e9rence NoSuchCon 2014 - Jour 3 - INTRINSEC<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.intrinsec.com\/en\/conference-nosuchcon-2014-jour-3\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Conf\u00e9rence NoSuchCon 2014 - Jour 3\" \/>\n<meta property=\"og:description\" content=\"Dans le cadre de ses activit\u00e9s de veille, Intrinsec \u00e9tait pr\u00e9sent \u00e0 la seconde \u00e9dition [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.intrinsec.com\/en\/conference-nosuchcon-2014-jour-3\/\" \/>\n<meta property=\"og:site_name\" content=\"INTRINSEC\" \/>\n<meta property=\"article:published_time\" content=\"2014-11-24T12:00:21+00:00\" \/>\n<meta name=\"author\" content=\"Intrinsec\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Intrinsec\" \/>\n<meta name=\"twitter:site\" content=\"@Intrinsec\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Intrinsec\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"9 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/\"},\"author\":{\"name\":\"Intrinsec\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#\\\/schema\\\/person\\\/ade590fbc7ad6f413727bae7cd3fb799\"},\"headline\":\"Conf\u00e9rence NoSuchCon 2014 &#8211; Jour 3\",\"datePublished\":\"2014-11-24T12:00:21+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/\"},\"wordCount\":1941,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/#primaryimage\"},\"thumbnailUrl\":\"\",\"keywords\":[\"nosuchcon\"],\"articleSection\":[\"S\u00e9curit\u00e9 offensive &amp; Audit\",\"SOC S\u00e9curit\u00e9 Op\u00e9rationnelle\",\"Veille S\u00e9curit\u00e9\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/\",\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/\",\"name\":\"Conf\u00e9rence NoSuchCon 2014 - Jour 3 - INTRINSEC\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/#primaryimage\"},\"thumbnailUrl\":\"\",\"datePublished\":\"2014-11-24T12:00:21+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/#primaryimage\",\"url\":\"\",\"contentUrl\":\"\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/conference-nosuchcon-2014-jour-3\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Accueil\",\"item\":\"https:\\\/\\\/www.intrinsec.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Conf\u00e9rence NoSuchCon 2014 &#8211; Jour 3\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#website\",\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/\",\"name\":\"INTRINSEC\",\"description\":\"Notre m\u00e9tier , Prot\u00e9ger le v\u00f4tre\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.intrinsec.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#organization\",\"name\":\"INTRINSEC\",\"alternateName\":\"ISEC\",\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/wp-content\\\/uploads\\\/2025\\\/02\\\/libellule.png\",\"contentUrl\":\"https:\\\/\\\/www.intrinsec.com\\\/wp-content\\\/uploads\\\/2025\\\/02\\\/libellule.png\",\"width\":1322,\"height\":1322,\"caption\":\"INTRINSEC\"},\"image\":{\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/Intrinsec\",\"https:\\\/\\\/fr.linkedin.com\\\/company\\\/intrinsec\",\"https:\\\/\\\/www.youtube.com\\\/channel\\\/UC0trUZAHNZOUbxYnNdecM4A\"],\"description\":\"soci\u00e9t\u00e9 de consulting, pure player cybers\u00e9curit\u00e9 fran\u00e7ais et europ\u00e9en depuis plus de 30ans, sp\u00e9cialiste dans la s\u00e9curit\u00e9 offensive & audit (pentest\\\/red team), GRC, et services IMSS comme le SOC, CTI et CERT Intrinsec est qualifi\u00e9 PASSI Elev\u00e9, PRIS Elev\u00e9 et PACS par l'ANSSI\",\"email\":\"contact@intrinsec.com\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.intrinsec.com\\\/#\\\/schema\\\/person\\\/ade590fbc7ad6f413727bae7cd3fb799\",\"name\":\"Intrinsec\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g\",\"caption\":\"Intrinsec\"},\"sameAs\":[\"https:\\\/\\\/www.intrinsec.com\"],\"url\":\"https:\\\/\\\/www.intrinsec.com\\\/en\\\/author\\\/ufhtbqccsz\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"NoSuchCon 2014 Conference - Day 3 - INTRINSEC","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.intrinsec.com\/en\/conference-nosuchcon-2014-jour-3\/","og_locale":"en_US","og_type":"article","og_title":"Conf\u00e9rence NoSuchCon 2014 - Jour 3","og_description":"Dans le cadre de ses activit\u00e9s de veille, Intrinsec \u00e9tait pr\u00e9sent \u00e0 la seconde \u00e9dition [&hellip;]","og_url":"https:\/\/www.intrinsec.com\/en\/conference-nosuchcon-2014-jour-3\/","og_site_name":"INTRINSEC","article_published_time":"2014-11-24T12:00:21+00:00","author":"Intrinsec","twitter_card":"summary_large_image","twitter_creator":"@Intrinsec","twitter_site":"@Intrinsec","twitter_misc":{"Written by":"Intrinsec","Est. reading time":"9 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/#article","isPartOf":{"@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/"},"author":{"name":"Intrinsec","@id":"https:\/\/www.intrinsec.com\/#\/schema\/person\/ade590fbc7ad6f413727bae7cd3fb799"},"headline":"Conf\u00e9rence NoSuchCon 2014 &#8211; Jour 3","datePublished":"2014-11-24T12:00:21+00:00","mainEntityOfPage":{"@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/"},"wordCount":1941,"commentCount":0,"publisher":{"@id":"https:\/\/www.intrinsec.com\/#organization"},"image":{"@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/#primaryimage"},"thumbnailUrl":"","keywords":["nosuchcon"],"articleSection":["S\u00e9curit\u00e9 offensive &amp; Audit","SOC S\u00e9curit\u00e9 Op\u00e9rationnelle","Veille S\u00e9curit\u00e9"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/","url":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/","name":"NoSuchCon 2014 Conference - Day 3 - INTRINSEC","isPartOf":{"@id":"https:\/\/www.intrinsec.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/#primaryimage"},"image":{"@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/#primaryimage"},"thumbnailUrl":"","datePublished":"2014-11-24T12:00:21+00:00","breadcrumb":{"@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/#primaryimage","url":"","contentUrl":""},{"@type":"BreadcrumbList","@id":"https:\/\/www.intrinsec.com\/conference-nosuchcon-2014-jour-3\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Accueil","item":"https:\/\/www.intrinsec.com\/"},{"@type":"ListItem","position":2,"name":"Conf\u00e9rence NoSuchCon 2014 &#8211; Jour 3"}]},{"@type":"WebSite","@id":"https:\/\/www.intrinsec.com\/#website","url":"https:\/\/www.intrinsec.com\/","name":"INTRINSEC","description":"Our job is to protect yours.","publisher":{"@id":"https:\/\/www.intrinsec.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.intrinsec.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.intrinsec.com\/#organization","name":"INTRINSEC","alternateName":"ISEC","url":"https:\/\/www.intrinsec.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.intrinsec.com\/#\/schema\/logo\/image\/","url":"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2025\/02\/libellule.png","contentUrl":"https:\/\/www.intrinsec.com\/wp-content\/uploads\/2025\/02\/libellule.png","width":1322,"height":1322,"caption":"INTRINSEC"},"image":{"@id":"https:\/\/www.intrinsec.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/Intrinsec","https:\/\/fr.linkedin.com\/company\/intrinsec","https:\/\/www.youtube.com\/channel\/UC0trUZAHNZOUbxYnNdecM4A"],"description":"Intrinsec, a consulting firm and pure-play French and European cybersecurity provider for over 30 years, specializes in offensive security and auditing (penetration testing\/red teams), GRC, and IMSS services such as SOC, CTI, and CERT. Intrinsec is qualified at PASSI High, PRIS High, and PACS levels by ANSSI.","email":"contact@intrinsec.com"},{"@type":"Person","@id":"https:\/\/www.intrinsec.com\/#\/schema\/person\/ade590fbc7ad6f413727bae7cd3fb799","name":"Intrinsic","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/fde6ed961c7078765b03a213927b5c4001b1cef4787255188f5b502a99e6ddd6?s=96&d=retro&r=g","caption":"Intrinsec"},"sameAs":["https:\/\/www.intrinsec.com"],"url":"https:\/\/www.intrinsec.com\/en\/author\/ufhtbqccsz\/"}]}},"_links":{"self":[{"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/posts\/228078","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/comments?post=228078"}],"version-history":[{"count":0,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/posts\/228078\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/media?parent=228078"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/categories?post=228078"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.intrinsec.com\/en\/wp-json\/wp\/v2\/tags?post=228078"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}