Yves Bieri
@yves_bieri
Followers
377
Following
527
Media
4
Statuses
52
Security enthusiast and pentester π¨βπ» Pwn2Own 2023/24/25 πΎ CTF with PPP π₯
Joined September 2017
We just won @defcon CTF with @mmm_ctf_team! Was amazing playing with everyone in person!
3
4
39
πSuccess. Our #Pwn2own team combined #zeroday bugs to remotely #exploit @home_assistant green which earned them $20'000 and 4 pts. Congratz to @bcyrill Emanuele, Lukasz @muukong and @yves_bieri. Respect to @stephenfewer (@rapid7) and @_mccaulay (@SummoningTeam) for their wins.
0
4
45
We did it! And this year without collision π₯³
π’ Confirmed! The @compasssecurity team combined an arbitrary file write and cleartext transmission of sensitive data to exploit the @home_assistant Green. The unique bugs in their third round win earns them $20,000 and 4 Master of Pwn points. #Pwn2Own
0
0
3
We won Defcon CTF finals for the 4th time in a row! π Had a really great time meeting friends and hacking with such a talented team! Thanks to NI for organizing and all the other teams for the fierce competition! ποΈπ¦π
2
16
278
Exploiting the @Ubiquiti AI Bullet camera for #Pwn2Own made us sweat more than once. But persistence paid off. Our detailed blog post is now live: https://t.co/c7E76hGTbh
#penetrationtest #pentest #iot #embedded #firmware
https://t.co/NzMFRKdWhC
0
5
22
Excited to present at #TROOPERS25 this week! On Thursday, our #cybersecurity analysts Emanuele and @yves_bieri will present our latest #Pwn2Own research on #surveillance cameras covering methodology, breakthroughs, and hard-won lessons. Come by, pick our brains, and swap stories.
0
6
18
Exploiting Synology devices with "Now I See You: Pwning the Synology BC500 Camera" by Emanuele Barbeno and Yves Bieri πΈ
0
1
21
Join Emanuele Barbeno and @yves_bieri as they dive into the vulnerability analysis, RCE exploitation, and the unique challenges of Pwn2Own with their talk "Now I See You: Pwning the Synology BC500 Camera". More info at https://t.co/NNzUapFsEt
0
2
9
We did it again :) big thanks to everyone that helped make this happen! #pwn2own
Sweet! Compass Security (@compasssecurity) successfully exploited the Ubiquiti AI Bullet camera. They're off to the disclosure room to explain what happened. #Pwn2Own #P2OIreland
3
2
22
Next at #BSidesBE: Emanuele Barbeno & Yves Bieri (@yves_bieri ) with βNow I See You: Pwning the Synology BC500 Cameraβ
2
7
22
Weβre so pumped to be Gold sponsor for this sold-out event. We hope you all have a great time! πDon't miss the talk by Emanuele and @yves_bieri: "How we hacked the Synology BC500 IP camera"
We are officially SOLD OUT!!! Thank you everyone, we look forward to welcoming you on October 1st in Bern for a great day filled with extremely interesting content. See you all next week ;) #BSidesBE
0
5
10
How quickly can a router be exploited once a patch is available? Our security analyst @yves_bieri describes this challenging but rewarding journey in his latest blog post. Read it now and remember to patch in time! https://t.co/7ffIbzP4b3
0
9
19
We won Defcon CTF finals the third time in a row as MMM π I had an amazing time meeting old and new friends and am incredibly lucky to play CTFs with so many extraordinary talented people! Thanks to NI for organizing and the other teams for the fierce competition.
0
0
27
PlaidCTF is officially over!! Congratulations to our top-performing investigation teams! 1. "What's your ETA" (HypeBoy) 2. "Kalmar: Guardians of the Elven Veil - Paranormal Psyduck's Payback" (Kalmarunionen) 3. "Spooky Maltese Ghosts" (Friendly Maltese Citizens)
1
12
30
All five parts of our journey to Pwn2Own Toronto 2023 are now live on our blog post. Follow this exciting hardware hacking project all the way to the final exploit:
Five Compass Security analysts took on a new challenge at Pwn2Own Toronto last year. The goal? Unauthenticated remote code execution. Follow their journey on our blog this whole week! π #Pwn2Own #CyberSecurity
https://t.co/dPilHEWs0z
1
13
29
Prepare your spectral sensors, arm yourselves with arcane knowledge, and rally your team! On April 12, we venture to the eerie confines of Ashwood Hollow. Can you and your team solve the mysteries of The Plaid Phenomenon? https://t.co/OTsF4D9Zbl
4
16
30
Five Compass Security analysts took on a new challenge at Pwn2Own Toronto last year. The goal? Unauthenticated remote code execution. Follow their journey on our blog this whole week! π #Pwn2Own #CyberSecurity
https://t.co/dPilHEWs0z
2
30
78
Really cool experience to participate in #pwn2own for the first time, even if it was a collision
Collision β Compass Security was able to execute their stack overflow attack against the Synology BC500. However, the exploit they used was previously known. They still earn $3,750 and 0.75 Master of Pwn points. #Pwn2Own
2
0
21
We (@mmm_ctf_team) won Defcon CTF finals again!! Was great meeting up with everyone for a weekend of hacking and until next year!
Carnegie Mellon Universityβs hacking team, the Plaid Parliament of Pwning, defended its title at the 2023 @DEFCON Capture-the-Flag competition, earning its seventh victory in eleven years. #DEFCON2023 #DEFCON31
0
0
29
MMM takes 1st at @defcon CTF! Had a great time playing with our friends @maplebaconctf and @theori_io as @mmm_ctf_team! ππ¦π Great job to Katzebin, StarBugs, and all the other teams! And thanks to @Nautilus_CTF for organizing!
8
42
256