RomHack Camp 2026

Francesco Infantini

My interest in technology started with a curiosity about how systems work and how they break. That curiosity eventually led me into infrastructure administration, where I spent several years managing enterprise environments and supporting critical systems.

Over time, I became increasingly interested in cybersecurity, particularly offensive security and adversary tradecraft. Today, I work as a penetration tester, conducting security assessments and red team engagements focused on identifying realistic attack paths and helping organizations strengthen their security posture.

My areas of interest include Active Directory security, Windows internals, command and control frameworks, and detection evasion. I hold the CRTO certification and continue to focus on developing practical offensive security skills through research, training, and real-world engagements.


Session

10-03
14:30
40min
State Trojan: The Malware with a Warrant
Pietro Boccaletto, Francesco Infantini

Your smartphone is not just a phone. It is your microphone, camera, archive, diary, GPS tracker, wallet, authenticator, and memory. In this talk, we will explore what happens when that device is turned into an informant during a legitimate criminal investigation through the use of lawful investigative malware, commonly known in Italy as a "captatore informatico".
We will start from the civic and legal tension: the need for effective investigations versus the privacy impact of compromising the most intimate device we own. Then we will move into the technical side, dissecting a real-world mobile implant to understand how it likely infected the device, what data it was able to collect, how it communicated, and what traces it left behind.
This is not an anti-law-enforcement talk. It is a hard look at the technical power of these tools, the risks created by their use, the vendors and supply chains behind them, and the practical signals defenders can monitor.

Cybersecurity and Hacking
STAGE 1 (Section 9)