kalimero Profile
kalimero

@kalimer0x00

Followers
464
Following
605
Media
2
Statuses
532

Joined July 2016
Don't wanna be here? Send us removal request.
@kalimer0x00
kalimero
2 months
👀.
@CVEnew
CVE
2 months
CVE-2025-47178 Improper neutralization of special elements used in an sql command ('sql injection') in Microsoft Configuration Manager allows an authorized attacker to execute code …
0
0
6
@kalimer0x00
kalimero
3 months
RT @x33fcon: "Owning #SCCM: A Journey from #Research to Critical Discovery" presented by @kalimer0x00 - #x33fcon #windows #red - https://t.….
0
24
0
@kalimer0x00
kalimero
3 months
RT @Synacktiv: Our ninja @kalimer0x00 is now on stage at #x33fcon to talk about his journey from dissecting SCCM until the discovery of the….
0
24
0
@kalimer0x00
kalimero
3 months
RT @Synacktiv: Microsoft just released the patch for CVE-2025-33073, a critical vulnerability allowing a standard user to remotely compromi….
0
262
0
@kalimer0x00
kalimero
3 months
RT @x33fcon: Got SCCM? You need to hear this! At #x33fcon, @kalimer0x00 will share insights from his SCCM research, including tradecraft fr….
0
7
0
@kalimer0x00
kalimero
8 months
RT @Synacktiv: A few months ago, Microsoft released a critical patch for CVE-2024-43468, an unauthenticated SQL injection vulnerability in….
synacktiv.com
Microsoft Configuration Manager (ConfigMgr) 2403 Unauthenticated SQL injections
0
64
0
@kalimer0x00
kalimero
10 months
RT @netero_1010: Something interesting I found in SCCM remote control.
Tweet card summary image
netero1010-securitylab.com
20 October 2024
0
44
0
@kalimer0x00
kalimero
1 year
RT @Synacktiv: In our latest blogpost, @croco_byte explores the inner workings of SCCM policies and introduces a t….
0
56
0
@kalimer0x00
kalimero
1 year
RT @Synacktiv: It's #SSTIC second day and @hugow_vincent presents how to exploit Github Actions ⚙️
Tweet media one
0
8
0
@kalimer0x00
kalimero
1 year
RT @Synacktiv: WHFB on an Entra ID enrolled laptop? Dig with @___t0___ ,@yofbalibump and @netsecurity1 on the cache mechanisms in place !.h….
Tweet card summary image
synacktiv.com
WHFB and Entra ID : Say Hello to your new cache flow
0
29
0
@kalimer0x00
kalimero
1 year
RT @Synacktiv: Want to know how deleted photos reappeared in iOS 17.5? Check out today's blogpost by @Lefnui 🍎.
Tweet card summary image
synacktiv.com
Inside the iOS bug that made deleted photos reappear
0
34
0
@kalimer0x00
kalimero
1 year
RT @Synacktiv: Optimize your password spraying attacks & defenses by checking our latest blogpost on the Banned Password Lists (BPL) mechan….
Tweet card summary image
synacktiv.com
Entra ID Banned Password Lists: password spraying optimizations and
0
18
0
@kalimer0x00
kalimero
1 year
RT @Synacktiv: And since good news never come alone, we also have 4 talks accepted for @sstic! GG @Julien_Legras, @kalimer0x00, @hugow_vinc….
0
5
0
@kalimer0x00
kalimero
1 year
RT @Synacktiv: Ever faced a WAF/EDR while exploiting a Java deserialization? Checkout our latest blogpost by @loadlow for a stealthier expl….
synacktiv.com
Java deserialization tricks
0
55
0
@kalimer0x00
kalimero
2 years
RT @hexacon_fr: Last sponsor we want to introduce is a special one: it's @Synacktiv, the company organizing #HEXACON2023. Leader in offen….
0
52
0
@kalimer0x00
kalimero
2 years
RT @Synacktiv: Have you ever wanted to extract, decode and decrypt all NTDS.dit data? We are glad to share with you a new tool: ntdissector….
Tweet card summary image
synacktiv.com
Introducing ntdissector, a swiss army knife for your NTDS.dit files
0
73
0
@kalimer0x00
kalimero
2 years
RT @Synacktiv: During a security assessment, our ninjas @kalimer0x00 and @us3r777 found multiple vulnerabilities on the DELMIA Apriso softw….
0
12
0
@kalimer0x00
kalimero
3 years
RT @Synacktiv: Got access to a #CICD environment? Check out our latest article by @0hexit and @hugow_vincent to loot all the secrets that a….
Tweet card summary image
synacktiv.com
CI/CD secrets extraction, tips and tricks
0
20
0