Atlant1s🎃 @ActiveDef_sec
DFIR, Security researcher, Full stack Defender Joined September 2012-
Tweets696
-
Followers130
-
Following1K
-
Likes1K
After coding 36 app with AI models, I've compiled a security checklist that you can follow. Trick: Paste this into AI coding tools (Cursor/Windsurf) and ask them to generate a security report. Then fix all errors before launch. BOOKMARK this: ↓
Here is a new custom administrative template (ADMX) for editing and auditing Microsoft Defender Attack Surface Reduction (ASR) policies, without being exposed to the rule GUIDs. github.com/MichaelGrafnet…
New blog post: blog.sunggwanchoi.com/recreating-an-… Github: github.com/ChoiSG/OneDriv… Blogged about recreating an ISO payload from the recent @Unit42_Intel's blog post - unit42.paloaltonetworks.com/brute-ratel-c4… . Learned DLL sideloading, LNK & ISO payload generation, and a bit of cpp.
Introducing MSFTrecon - MSFTRecon is a reconnaissance tool designed for red teamers and security professionals to map Microsoft 365 and Azure tenant infrastructure. It performs enumeration without requiring authentication, helping identify potential security misconfigurations…
Welcome to the era of the token. In the past, attackers had to breach networks, bypass security controls, escalate privileges, and evade detection just to reach confidential data. Now? A single OAuth authorization - granted with one click - can hand over access to emails, files,…
Welcome to the era of the token. In the past, attackers had to breach networks, bypass security controls, escalate privileges, and evade detection just to reach confidential data. Now? A single OAuth authorization - granted with one click - can hand over access to emails, files,…
Stop some of the most common SMB based lateral movement techniques dead in their tracks: "Set-MpPreference -AttackSurfaceReductionRules_Ids d1e49aac-8f56-4280-b9ba-993a6d77406c -AttackSurfaceReductionRules_Actions Enabled" bit.ly/psexec-wmi #BlueTeam #RedTeam
🏠📸 Si vous avez des biens immobiliers que vous aimeriez mettre en valeur à Marrakech; Je vous conseille vivement cette nvlle agence avec qui j'ai moi meme travaillé, et qui est tenue par des jeunes marocains 🇲🇦 Je vous mets le lien IG en commentaire ⬇️
@PyroTek3 discussing free AD security tools from the @TrimarcSecurity team. Full episode here; youtu.be/-5jWcZ2UNMk
#APT #Bitter #ManLinghua APT-Q-37 #wmRAT Maybe related to #MysteriousElephant 📍🇮🇳 💥🇨🇳🇲🇳🇧🇩🇳🇵🇸🇦🇵🇰 ⛓️ #Phishing > PDF|OLE|RAR > Download RAR (Fake OLE > #LNK) > #VBS + Persistence > Curl to payload > #RAT > Obtain info > #C2 🔗360 Threat Intelligence: mp.weixin.qq.com/s?__biz=MzUyMj…
#TTP 📩[T1566.001] Spear-Phishing 📦[T1036] Fake OLE 👥[T1027.012] LNK abuse 🏹[T1059.005] Execute VBS ⚓️[T1053] Persistence 📥[T1105] Curl to download 🕷️[T1082] Device info collection 🔎[T1083] Discover files and folders 📡[T1219] Remote communication via RAT
"How Hackers Persist & Escalate Privileges in Entra ID/Microsoft 365" 🔥 -- a demo showcasing dynamic groups and adding a rogue guest to a tenant, leveraging just the vanilla defaults of the cloud environment 👀 jh.live/Ih4u2LV1BIc
📌Active Directory Attacks Complete Guide📝 🔗drive.google.com/file/d/1NbLPfU…
Based on @r3nzsec and @Unit42_Intel report unit42.paloaltonetworks.com/edr-bypass-ext… A new detection rule was added to my repo here github.com/0xAnalyst/Defe… to detect the load of vulnerable `WN_64.sys` and `wnbios.sys` to unhook EDR #ThreatHunting #KQL #EDR #Defender
reminder that the bcrypt hash function ignores input above a certain length! so if you do bcrypt(username || password) for some reason, a sufficiently long username will make it accept any password. to fix this you can sha256 the input first.
reminder that the bcrypt hash function ignores input above a certain length! so if you do bcrypt(username || password) for some reason, a sufficiently long username will make it accept any password. to fix this you can sha256 the input first.
Cloud Hacking 🔥 x.com/7h3h4ckv157/st…
CloudPentestCheatsheets 🚨 This repository contains a collection of cheatsheets put together for tools related to pentesting organizations that leverage cloud providers. github.com/dafthack/Cloud…
New blog post: Today I Learned - NSG Flow Log dfir.ch/posts/today_i_… Flow logs are the source of truth for all network activity in your (Microsoft) cloud environment 😉 To quote the documentation: "Flow logs should be enabled on all critical subnets in your subscription as an…

0x4143 @0x4143
2K Followers 5K Following Purple Teaming by day, Malware Hunter by night 🏴 (All opinions are my own, not of my employer)
timlake @timlake252160
0 Followers 2K Following
Jacinto Bernhard @BernhardJa42075
1 Followers 173 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of u p to $100,000. If interested, please contact https://t.co/EA36XBUIXg
Mentel Ewa @Camerondiazmich
32 Followers 568 Following Hi, I'm Ewa ! Widow, Mother, artist and co-founder Ewa Agro plants /creator lover of @avaline wine 🍷 Poland American 🇺🇸 🇵🇱 Stay happy
4oun76uwwgv @4oun76uwwg95073
10 Followers 144 Following Pioneer Wealth: Prof. Matthew’s AI + finance pros boost profits! Free 1st month. AI scans data, experts guide stocks/crypto. Click to join now!
jungman @notajungman
746 Followers 4K Following undefined, and any attempt would be ill advised and unrefined.
Alaeddine Mesbahi @3asm_
490 Followers 1K Following Co-founder of Ostorlab, ex-google security automation steam, enjoys minted tea.
DonnaLambert @r2VQzlJ2gIG4p
79 Followers 2K Following
nanjin002 @nanjin00272827
21 Followers 4K Following
. @useruse46513503
19 Followers 441 Following
AlmaGoldsmith @tX6507oKFu1434
82 Followers 2K Following
Tisefith @tisefith5322
9 Followers 928 Following Follow me, maybe it's the beginning of our fate, we can talk
crawler_cookie_0 @crawler_cookie0
49 Followers 4K Following
RhoninTheWise @X01VVD01X
681 Followers 2K Following Independent Security Researcher/BJJ Addict/Craftsman of Code/Wireless, Malware, and Exploit analysis/Chess enthusiast on the side.
Mr B0b @_MrB0b
397 Followers 723 Following #DFIR Analyst | Ex Red Teamer | CTF player with @tipi_hack | #OSCP | #GXPN | #GCFA | #LethalForensicator
meik 🥋☠️✌️... @meikk
1K Followers 3K Following X/Twitter is dead. read-only account follow me on bsky instead.
Corey Brooks @CoreyBr21566941
370 Followers 2K Following lil Corey music money been on the grinding with my guys is what I do..... make nothing out of something
Tornike @tornikepa
562 Followers 3K Following #Linux #Malware Researcher #Pent3ster published vulnerabilities #0day #Exploits advisories from various resources by #Cybersecurity #Bug #ReverseEngineering :wq
Valery Serkin @SerkinValery
110 Followers 446 Following
Lawrence @Lawrenc52280603
195 Followers 2K Following Research And Security. Want to learn and help the IT community. Tweets are my own
John Kollitidis @JKolliti
48 Followers 591 Following
Lizard Labs Software @lizardlabs
4K Followers 4K Following Software developer, founder. Follow me for tweets about programming, bootstrapping, tips, tools, SQL Server, log analysis, #infosec, #data, #dotnet, #SQL, #DFIR
Information Security ... @InfoSec_b
7K Followers 7K Following A Info Sec community with less noise & more quality on @briefly_tldr.
Paco Padilla @pacopadilcyber
1K Followers 5K Following Certified Ethical Hacker♦️Digital Forensic Examiner♦️Incident Responder♦️Developer♦Cybersecurity Professor⚡OSCP⚡GCFE⚡CISSP ⚡eCIR ⚡eCTHP⚡eMAPT⚡CEH⚡CHFI⚡CRPT♟️ACM
Egress, a KnowBe4 Com... @EgressSoftware
9K Followers 8K Following Our mission is to eliminate the most complex cybersecurity challenge every organization faces: insider risk. #HumanLayerSecurity #Cybersecurity #EmailSecurity
DSDigital @DSDigital_Info
393 Followers 4K Following Curated InfoSec and related IT info. Sysadmin signal booster. Actually not a bot™
Nicole Beckwith @NicoleBeckwith
42K Followers 7K Following Director, Security Operations @kroger 🍓 Intel, Hunting, IR, Detection Engineering, Insider Risk, Fraud & Forensics 💻 Fmr LE & DFIR for OH & Secret Service TF.
ΜΔDΞRΔS @hackermaderas
22K Followers 14K Following Home of #CyberpunkisNow. Hacker, researcher, writer, creating original #Technology #InfoSec #OSINT #Privacy content & analysis.
Barbara Schachner �... @barschachner
474 Followers 430 Following Director Product Security @Dynatrace. Previous Security Architect, Pentester and Red Team Lead. Tweets are my own.
Rakesh Mishra @RakeshM16071987
35 Followers 1K Following
m00zh33 @m00zh33
417 Followers 5K Following
Eyal Neemany @Zwiitzer
86 Followers 161 Following Lead Researcher at @Symantec Endpoint Division Playing around Enterprise security, Active Directory and Windows.
sinklands @sinklands
91 Followers 1K Following
Chris Timmons (broken... @broken_data
394 Followers 951 Following Security Architect | Pentester | Red Team | Blue Team | Chef | Barista | General Fixer-Upper | Explain the header photo and win OSINT points. Tweets are my own.
Wanobi @wanobi_kenobi
417 Followers 909 Following OSCP, Penetration Tester, Penspin, Puzzles, Cats, Bourbon
G @sweaty_soc
139 Followers 805 Following Focused on Security Operations related content. Run by #infosec professional, thoughts are my own and not my employer. #soc #siem #secops #blueteam #hunt
Andrii Bezverkhyi @andriinb
3K Followers 2K Following inventor of Uncoder IO & AI, #threatbounty #sigma and @MITREattack addict, founder & CEO @SOC_Prime personal account, all opinions are my own. he/him 🇺🇦
Max Heinemeyer @shelldaemon
636 Followers 298 Following Cyber Security & AI Enthusiast. Ethical Hacker. CPO @ Darktrace. Thoughts are my own. (he / him)
mrragava @mrragava
221 Followers 5K Following
NikitaK @K_Nikita_
106 Followers 3K Following
aop688 @aop688
1 Followers 169 Following
@zephrfish.yxz.red @ZephrFish
19K Followers 580 Following Photos at @ZephrSnaps | Founder at @ZephrSec |Staff on @CuratedIntel | Lab Creation @XintraOrg
Kyle Cucci @d4rksystem
6K Followers 560 Following Threat Research @proofpoint | Author of "Evasive Malware" @nostarch | Talks about cybercrime, threat intel, and malware stuff.
Dray Agha @Purp1eW0lf
6K Followers 3K Following Hunt & Response Senior Manager @HuntressLabs || "Competition is the law of the jungle, but cooperation is the law of civilisation” - Kropotkin
Jiří Vinopal @vinopaljiri
10K Followers 462 Following Threat Researcher at Check Point @_CPResearch_ #DFIR #Reversing - All opinions expressed here are mine only. https://t.co/iWvwWF1AnN
Myrtus @Myrtus0x0
8K Followers 707 Following Malware Researcher | Developer | @Cryptolaemus1 | @NVIDIA bsky: [email protected]
𝙽𝙴𝚃𝚁𝙴�... @netresec
9K Followers 815 Following Experts in Network Forensics and Network Security Monitoring. Creators of #NetworkMiner, #CapLoader, #PacketCache, #PolarProxy and #RawCap.
James Hooker @g0blinResearch
6K Followers 2K Following Developer, turned security advocate - OSCP, BRDY, GNGR. Co-founder of @hackthebox_eu. My thoughts are my own.
xer0dayz @xer0dayz
8K Followers 2K Following Founder of @Sn1perSecurity. Creator of Sn1per. Top 20 worldwide on @bugcrowd in 2016. OSCE/OSCP - https://t.co/iqw8gBpkKb
0x4143 @0x4143
2K Followers 5K Following Purple Teaming by day, Malware Hunter by night 🏴 (All opinions are my own, not of my employer)
Raul • 𝖙𝖍𝖊... @theg3ntl3m4n
1K Followers 647 Following Lead Red Team @beyondtrust | Ex-Red Team @mandiant @crowdstrike
watchTowr @watchtowrcyber
9K Followers 13 Following watchTowr enables organizations to get ahead of in-the-wild exploitation with Preemptive Exposure Management technology.
📔 Michael Grafnett... @MGrafnetter
3K Followers 120 Following Principal Security Researcher @SpecterOps, Microsoft MVP Identity & Access
Arda Büyükkaya @WhichbufferArda
5K Followers 1K Following Cyber Threat Intelligence Analyst @EclecticIQ | Threat Hunter | Malware Analyst |. (All opinions expressed here are mine only). 🇹🇷🇳🇱
Nusuk Hajj - نُسُ... @NusukHajj
34K Followers 8 Following #نسك_حج المنصة الموحدة لحجز وإدارة رحلتك إلى الحج، لخدمة الحجاج من أوروبا، وأمريكا الشمالية والجنوبية، وأستراليا, و بعض دول آسيا وأفريقيا.
Aaron Jornet @RexorVc0
4K Followers 396 Following Threat Researcher at @socradar | Malware Researcher | Threat Hunter | CTI ¦ Former @ElevenPaths @Panda_Security
shay @shaybt12
2K Followers 703 Following
DebugPrivilege @DebugPrivilege
40K Followers 2K Following Windows Nerd | Ex-MSFT | Microsoft MVP in Windows | Interested in Security, Debugging, and Windows Internals.
mikecybersec @mikecybersec
65 Followers 117 Following DFIR | Automator of things | APT Hunter | Malware Reverser | SANS Instructor Candidate | Views expressed here are my own
spencer @techspence
12K Followers 2K Following 🛡️Empowering defenders & dismantling threats | Ethical Threat | pentester @securit360 | host @cyberthreatpov | SWAG https://t.co/AFJtZQcti7
Almohadravid @almohadravid
9K Followers 2K Following “ Il ne faut pas perdre son temps à avancer des arguments de bonne foi face à des gens de mauvaise foi.” 🍊⛰️🧡
Jaf @Jafkech
29K Followers 2K Following Applied Economist by Formation/ Auto-Entrepreneur by Nature/ Interested in World History, Economics and Geopolitics
أخبار بلادي... @akhbarbladie
17K Followers 31 Following أخبار مغربية ودولية 🌍🇲🇦 Moroccan and international news
Mohamed Ashraf @X__Junior
1K Followers 479 Following Detection @nextronsystems, Challenges Developer @CTFCreators, CTF Player @F1R3F411. Interested in #RE #Malware #Cryptography #WindowsInternals #DFIR.
DFIR Alert @DFIRalert
248 Followers 22 Following All the latest cybersecurity #DFIR #ThreatHunting #MalwareAnalysis #Detection rules from the #DFIR lab at @binalyze
Morocco First 🇲�... @TheRealMarroqui
12K Followers 39 Following Le Maroc en action | Actu, histoire & géopolitique | Fier défenseur du Royaume millénaire du Maroc. #SaharaMarocain (occidental et oriental) 🇲🇦❤️
الموجز الرو... @mog_Russ
641K Followers 26 Following Русские новости || Russia news, and geopolitical conflict areas in the world - Posts: EN\AR
7h3h4ckv157 @7h3h4ckv157
51K Followers 117 Following Hacker (He/Him) | Hall of Fame: Google, Apple, NASA, 𝕏 (FKA Twitter) | Speaker: BlackHat MEA x1 | CVE ×4 | HTB Rank: Guru | P1 warrior - Bugcrowd | CS Engineer
Bert-Jan 🛡️ @BertJanCyber
4K Followers 563 Following CSIRT | https://t.co/Tu1l2ZFe0T | Microsoft Security MVP | Blue & Purple Team | SOC | SIEM | Threat Hunting | Detection Engineering | #KQL |
cr0@Defensive-Securit... @cr0nym
3K Followers 2K Following Focus on Linux/Kubernetes Attack/Detection/Forensics/Incident Response/Threat Hunting/Active Defense. Learning hard every single day.
Stephan Berger @malmoeb
28K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
Dark Web Informer @DarkWebInformer
129K Followers 60 Following Providing Cyber Threat Intelligence from the Dark Web & Clearnet: Breaches, Ransomware, Darknet Markets, Threat Alerts & more. https://t.co/Fi7VW9lg94
Hackmanac @H4ckmanac
89K Followers 367 Following We track verified, real-world cyber attacks to help you develop effective Cybersecurity strategies. Try https://t.co/eB7qgxKFAa, your Strategic Threat Intelligence platform
Yarden Shafir @yarden_shafir
24K Followers 309 Following A circus artist with a visual studio license
Will Harris @parityzero
4K Followers 802 Following Chrome Security gnome. I work on the sandbox and local data protection on Windows. @parityzero.99 on signal. Opinions here are my own!
Yashraj Solanki @RustyNoob619
1K Followers 316 Following Cyber Threat Intelligence Analyst @bridewellsec (All tweets are my views) C2 Hunting | Malware Noob | ICS Addict
Coffin @coffinxp7
25K Followers 207 Following 🕵🏻♂️| ꜱᴇᴄᴜʀɪᴛʏ ʀᴇꜱᴇᴀʀᴄʜᴇʀ | ᴄᴏɴᴛᴇɴᴛ ᴄʀᴇᴀᴛᴏʀ | ᴡʀɪᴛᴇᴜᴘꜱ: https://t.co/xRCKfLzQG7 |ᴡᴇʙꜱɪᴛᴇ: https://t.co/pjFfqTxbZO | ᴄᴏᴍᴍᴜɴɪᴛʏ: https://t.co/5p05U7h0BM
Outpost24 @outpost24
2K Followers 2K Following We’re on a mission to help our customers tighten their cyber exposure before their business can be disrupted.
Clint Gibler @clintgibler
22K Followers 563 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
Deutsche Telekom CERT @DTCERT
5K Followers 44 Following Technical tweets for technical folks by Deutsche Telekom CERT, CTI, and DFIR. #dfir #cyber #cert #cti #TelekomSecurity
Stef Rand @techieStef
2K Followers 443 Following Senior Intelligence Analyst @RedCanary! Former DFIR @Mandiant, former @NetworkDefense intern. Psychology nerd. When I am not computering, I go outside and play!
Andrew Thompson @ImposeCost
39K Followers 1K Following Head of Research and Discovery (RAD) @Google Threat Intelligence Group via @Mandiant acquisition. Posts are attributable to me—not my employer. Former @USMC.