Alex Cowperthwaite @AlexInSecurity
Everything can be hacked, it's just a question of resources and creativity. Toronto Joined February 2011-
Tweets453
-
Followers186
-
Following798
-
Likes1K
Param Miner 1.51 is now out in the BApp store! In case you missed it, Param Miner now uses timing analysis to detect hidden parameters, and help detect & exploit reverse proxies. Let me know if it finds you anything cool :)
Fortra FileCatalyst Workflow CVE-2024-6633: dbPassword="GOSENSGO613"
Fortra FileCatalyst Workflow CVE-2024-6633: dbPassword="GOSENSGO613"
Les mots de passe, c'est nul ! Avec 86 % des violations impliquant des informations d'identification volées, il est temps d'adopter les passkeys. Découvrez pourquoi ils représentent l'avenir de l'authentification dans la conférence perspicace d'Alex. @AlexInSecurity
Our offensive security team has been working closely with the maintainers of the TorchServe project and AWS to correct two vulnerabilities that could compromise AI infrastructure. Read more in the blog: ms.spr.ly/6016ljPN8 #AISecurity #AIIntegrity #AIVulnerability
So Apple has gone and updated the iMessage protocol to incorporate both forward security (very good!) and post-quantum cryptography. security.apple.com/blog/imessage-…
This shows again how our government are disconnected from the reality and doesn't understand technology. Banning a tool that is use in less than 1% of car thief is NOT going to reduce car theif. Ignorance of deputies like @FP_Champagne is a danger to cybersecurity in Canada.
This shows again how our government are disconnected from the reality and doesn't understand technology. Banning a tool that is use in less than 1% of car thief is NOT going to reduce car theif. Ignorance of deputies like @FP_Champagne is a danger to cybersecurity in Canada.
This iMessage exploit is crazy. TrueType vulnerability that has existed since the 90s, 2 kernel exploits, a browser exploit, and an undocumented hardware feature that was not used in shipped software: securelist.com/operation-tria…
Google starts prompting users to create a passkey for their account by default, but says passwords will "still remain part of our lives as we make the pivot" (@Zombie_Wretch / The Verge) theverge.com/2023/10/10/239… 📫 Subscribe: techmeme.com/newsletter?fro… techmeme.com/231010/p12#a23…
Holy shit Microsoft figured out how their signing key was leaked msrc.microsoft.com/blog/2023/09/r…
Apparently there are concerns that the LastPass thieves are cracking vaults and stealing cryptocurrency seed phrases. krebsonsecurity.com/2023/09/expert…
Thrilled to be able to launch a new cloud tool to the community. Huge thanks to my employer @Vectra_AI for supporting #opensourcesecurity #threatdetection #cloudsecurity See you all @cloudvillage_dc !
Thrilled to be able to launch a new cloud tool to the community. Huge thanks to my employer @Vectra_AI for supporting #opensourcesecurity #threatdetection #cloudsecurity See you all @cloudvillage_dc !
This is one of the most underrated enumeration/discovery techniques out there.. I've had lots of success with it. Great to see a new tool to help with this technique!
Releasing my first proper open-source tool: CloudPrivs. Brute force AWS permissions from credentials. Has a very high coverage rate is fast. github.com/AbstractClass/… #infosec #Pentesting #Hacking #CyberSecurity
Just released a post on Windows driver signature timestamp forging 👀 really stoked to finally release this! This technique effectively bypasses driver signature enforcement in Windows blog.talosintelligence.com/old-certificat…
If you’re an H-1B stuck in an endless green card line, set your alarm for July 16. Canada now has an experimental program where they’ll give 10000 permanent residencies to engineers that the US is repelling. Part of their new tech talent strategy. canada.ca/en/immigration…
If you’re an H-1B stuck in an endless green card line, set your alarm for July 16. Canada now has an experimental program where they’ll give 10000 permanent residencies to engineers that the US is repelling. Part of their new tech talent strategy. canada.ca/en/immigration… https://t.co/vkoogmWFyV
Time to announce my latest project - breaches.cloud/news/welcome
Super exciting stuff. Google released passkey support today!
Need to bypass the JWT signature? Kid param injection + directory traversal = signature bypass Vulnerable apps using 'kid' for key retrieval might allow attackers to force a predictable key file (e.g. static file or /dev/null)🔓 Crafted malicious tokens signed w/ known key

Theodora @KassulkeLe60761
28 Followers 2K Following
Daniela @Candelario43315
32 Followers 2K Following
Soji @Soji2637
2 Followers 270 Following
Erbreeiepi @Erbreeiepi0446
21 Followers 2K Following
Wilmer Boehm @BoehmWilme65857
1 Followers 173 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/GQowSX2hxC
Readdersm @ReaddersmClRD4
62 Followers 2K Following
Jallow12 @Jallow12293981
42 Followers 7K Following Be humble yourself and thanksgiving to God and be patient and be trusted person……🙏🏿🙏🏿
Snarurtea @SnarurteaFG5LN
108 Followers 3K Following
RobertaFinger @SG6W52vrY503g4g
41 Followers 4K Following
beginthread @beginthread
138 Followers 474 Following
SusanByron @mxgMH6pdbdwV7G
23 Followers 3K Following
TheresaWells @lGpU8pv5yYrHhLn
27 Followers 2K Following
Norma @hirumaakik98574
42 Followers 2K Following
RubyHazlitt @QTajp5Q9VRGrLf
63 Followers 7K Following
EllaDavid @B7XF6339XV2AYq
37 Followers 2K Following
AndreaDuBois @bf6yfUagTP6Arc
19 Followers 1K Following
Faisal Shariff @f4i230
2 Followers 599 Following
Neleausm @Neleausm163733
25 Followers 2K Following
Sytusee @sytusee43938
61 Followers 5K Following
So Sweet @_So_So_Sweet_
33 Followers 1K Following
Neshe @Neshe1431589
15 Followers 2K Following
Saffeau @saffeau59068
20 Followers 2K Following Let us replace the worries beforehand with thinking and peace beforehand!
Gillis Jones @Gillis57
5K Followers 1K Following Hacker. Journalist. Photographer. Currently covering California.
T.O. Foundation for Y... @TorontoFYIP
506 Followers 2K Following We strive to get more Toronto youth engaged in politics through education, issues resolution and research. CEO: Javon S Samuel (@javonkongets23)
0xc130d @0xc130d
55 Followers 98 Following Penetration tester, red-team enjoyer, trying to automate myself out of a job ;)
Josh Grossman 👻 (t... @JoshCGrossman
2K Followers 2K Following Friendly AppSec Ghost 👻 @OWASP_IL | @OWASP_ASVS Mastodon 🐘: https://t.co/dHMXcjRkMH Blue Sky 🦋: https://t.co/LZHGv7q5HD
Rashid Ameer @RashidA74091716
1 Followers 342 Following
CyberSaint Security @CyberSaintHQ
619 Followers 528 Following Bridging the communication gap between CISOs and CEOs. Delivering clear, actionable steps to risk remediation and compliance.
Amitai Cohen 🎗️�... @AmitaiCo
2K Followers 632 Following ✦ researching threats @wiz_io 🐞 maintaining vulns @cloudvulndb 🎙️ casting pods @ https://t.co/9Jsah9BjbO
Goldie @Aileen08241474
60 Followers 396 Following Passion of fashion modeling #beach #travel, diving, shopping #yoga, meditation, food, #BBQ I'm kind, self-love and self-respect, gentle and considerate
eshamallya @eshamallya1
5 Followers 71 Following
Christopher Moyer @iamchrismoyer
3K Followers 2K Following Writer & designer in various capacities. Bylines @ The Atlantic, Vice, Rolling Stone, and elsewhere. Marketing VP @westerncpe. OSINT, boxer dogs, fly fishing.
Jordan @jord_gee
60 Followers 342 Following
Amit Vitekar @r00tb3
418 Followers 3K Following Telecom(xG's) & IoT security. Rail buff / Railfan, Student of the Vedas & Vedanga - Jyotish Shastra(Vedic Astronomy & Astrology).
Jazzie's Jazz 👀 @Jazzies_Jazz
8K Followers 9K Following Hate stupidity, ignorance, lack of common sense. Got nothing worth to say, don't say it! I'm just me, but I have a loud voice‼ 🆕🆒🆓🆗 Bipartisan 💙 🚫MAGAs🚫
The Tech Trend @techtrendworld
4K Followers 5K Following A Tech community for industry experts, connect with them. Read their #tech blog, opinion, share your own thoughts too. #AI #ML #Blockchain #Business, #Fintech
Moad Akhraz @mdakh404_
78 Followers 2K Following I like computers, security and everything in between.
Hayabussy @_hayabussy
673 Followers 259 Following
Urban Philosophers @u_philosophers
18 Followers 305 Following BREAK THE ALGORITHM - Join Us on Bluesky: @urbanphilosophers.bsky.social
NordSpace 🇨🇦 @Nord_Space
4K Followers 178 Following NordSpace develops orbital class launch vehicles, spaceports, and satellites. 100% designed, built, and flown from beautiful Canada 🇨🇦
Raveesh 折り図 @raveeshbhalla
3K Followers 524 Following Ex-Product Lead @ Netflix and LinkedIn | I tinker, therefore I am.
Jeff Marek @JeffMarek
253K Followers 5K Following Host of 'The Sheet' on Daily Faceoff. IG: jeffmarekhockey Where the Sky is Blue : https://t.co/Xc6HoDADm7
Chief Nerd @TheChiefNerd
877K Followers 2K Following Software Engineer | Podcast Clipper | DM for Removal | Merch 👉https://t.co/LEGwYHQAst | Tips 👉https://t.co/h9xVqydk1b
Autism Capital 🧩 @AutismCapital
882K Followers 0 Following Citizen journalism with a humorous flair. Following Fintech, Crypto, AI, Longevity, Politics, Memes, and whatever the current thing is.
Crémieux @cremieuxrecueil
269K Followers 2K Following I write about genetics, 'metrics, and demographics. Read my long-form writing at https://t.co/8hgA4nNS2A.
meg west @cybersecmeg
151K Followers 937 Following Tweets about #dogs & travel & fitness & cybersecurity, oh my! Opinions are my own. 📧: [email protected]
PentestGPT @PentestGPT
22K Followers 0 Following AI-Powered Penetration Testing Assistant for offensive security testing, focused on web applications and network penetration testing.
David Weston (DWIZZZL... @dwizzzleMSFT
25K Followers 2K Following Corporate Vice President, OS Security and Enterprise @Microsoft
beginthread @beginthread
138 Followers 474 Following
CapFriendly @CapFriendly
189K Followers 489 Following Official twitter of https://t.co/seRU2zecMi. NHL Contract details, Salary Cap tracking, Draft, CBA info & fan favorites such as Armchair-GM. Basketball: @SalarySwish
Ankita Gupta @ankitaiitr
2K Followers 1K Following Cofounder and CEO @aktodotio | @iitroorkee @Dartmouth
Nathan McNulty @NathanMcNulty
17K Followers 1K Following Loves Jesus, loves others | Husband, father of 4, security solutions architect, love to learn and teach | Microsoft MVP | @TribeOfHackers | 🦋@nathanmcnulty.com
CCob🏴�... @_EthicalChaos_
9K Followers 437 Following Ceri Coburn: Hacker | R̷u̷n̷n̷e̷r̷ DIYer| Vizsla Fanboy and a Little Welsh Bull apparently 🏴 Author of poorly coded tools: https://t.co/P6tT2qQksC
Learn Prompting @learnprompting
16K Followers 895 Following Creators of the Internet's 1st Prompt Engineering Guide. Trusted by 3M Users. Compete for $100K in Largest AI Red Teaming Competition: https://t.co/AEiLMn2jzy
Yawman Flight @yawmanflight
1K Followers 395 Following We made the world's first handheld flight simulator controller. Pilot-tested, pilot-approved. Free your desk and flight sim anywhere.
Hackfest.ca @hackfest_ca
5K Followers 620 Following Largest hacking event in Canada held in Quebec City, Canada every fall. Bilingual, Technical conferences, workshops #CTF and more #infosec | @SecuritePodcast
The Team House @TheTeamHousePod
6K Followers 637 Following The Team House & Eyes On podcasts. Baby giraffes are NOT cheap.
hex nomad @hexnomad
1K Followers 0 Following
Chris Romeo @edgeroute
4K Followers 497 Following Christian; Husband; Dad; CEO Devici, GP @Kerr_Ventures: @AppSecPodcast @SecTablePodcast | #AppSec, #ThreatModeling, and #Startups
Shannon Morse @Snubs
74K Followers 1K Following Content Creator 📸 Owner @ Morse Code Creative Also @SailorSnubs 🔗 https://t.co/8H10rZ0vqO https://t.co/sf2HG0kaxl 🧵 https://t.co/ArXgfnP1eF 🦋
Bob Lord @boblord
14K Followers 2K Following Please visit me here: https://t.co/zxWw1cUrK6 https://t.co/khRWc2RxJC https://t.co/wUu4kjUeIG
AutoThreat @autothreat
693 Followers 217 Following Provider of Offensive and Defensive Vehicle Solutions. Former Mobile and Vehicle Forensics Instructor.
GrayCat PI @GrayCatPI
2K Followers 572 Following Registered in Texas & Mexico | Experts in Financial Crime & Fraud Investigations | Certified & Licensed | Follow for insights on security & investigations
Gillis Jones @Gillis57
5K Followers 1K Following Hacker. Journalist. Photographer. Currently covering California.
Mike Petriello @mike_petriello
99K Followers 2K Following Doing the baseball things at @MLB dot com. BBWAA. NYC. BU. NJ. Bass/@thesubwayghosts. Go @njdevils.
Tracy 💎 ✨ @hackerpinup
2K Followers 705 Following Bug Huntress and Embedded dev. Actress. Singer. Bikini fitness competitor. Pole dancer. 🏙 nyc. she/her
Ankita Dhakar @expankita
5K Followers 279 Following Co-Founder and CEO @capturethebugs | Managing Director @security_lit | Cybersecurity enthusiast 🥷 Building AI-powered Vulnerability Intelligence Platform 🇳🇿
Soroush Dalili @irsdl
20K Followers 909 Following Hacker (ethical), web appsec specialist, trainer, tools builder & apps breaker, @SecProjectLtd founder 🕸️https://t.co/YipuTcYnWc🥷 🍏A dad-joke maker🍐
Car Hacking Village @CarHackVillage
13K Followers 886 Following
Andrew McCalip @andrewmccalip
69K Followers 1K Following Building spacecraft @vardaspace. Circumnavigating world @ https://t.co/hLM2DEHrnx. Art @ https://t.co/Cze338MBMi Former: Co-Founder Cosine Additive, acquired by GE
Passkeys Developer @passkeysdev
219 Followers 7 Following The official home for https://t.co/UzmYTLLzpQ on Twitter! #passkeys #fido2 #webauthn
Mayor Olivia Chow �... @MayorOliviaChow
22K Followers 201 Following Mayor of Toronto. Former City Councillor, Member of Parliament, and school trustee. For assistance, email [email protected].
derek guy @dieworkwear
1.4M Followers 958 Following Menswear writer. Editor at @putthison. Creator of @RLGoesHard. Bylines at The New York Times, The Financial Times, Politico, Esquire, and Mr. Porter
Melvin langvik @Flangvik
10K Followers 513 Following Red Team @TrustedSec , terrible creator of InfoSec content 📹Opinions are my own and not the views of my employer.
Karl @kfosaaen
5K Followers 949 Following VP of Research - @netspi Co-author of “Penetration Testing Azure for Ethical Hackers” (https://t.co/R8AjWWbSyj). @kfosaaen on most other platforms
Sean Metcalf @PyroTek3
36K Followers 615 Following Identity Security Architect @ TrustedSec. Microsoft Certified Master #ActiveDirectory & former Microsoft MVP. Co-Host @ Enterprise Security Weekly. He/Him. #BLM
0xc130d @0xc130d
55 Followers 98 Following Penetration tester, red-team enjoyer, trying to automate myself out of a job ;)
サイバー犯罪さ... @g0jirasan
496 Followers 1K Following Threat Researcher @TalosSecurity . RE, malware, Windows kernel and whatnot ↙️↙️↙️ 日本語ちょっと 話す
ꙅɿɘƚɔɘqꙅ @_specters_
5K Followers 915 Following Steal whips and do kick flips 🇵🇷 Hacker & Skateboarder wannabe
Wolves Slam 🐺🐜 @WolvesSlam
5K Followers 195 Following Timberwolves Coverage, game updates, takes, highlights & memes. Some european football coverage too, including FPL! #RaisedByWolves
Ryan Hurst @rmhrisk
6K Followers 3K Following Dropout. Father. I build things. Security, Cryptography, Engineering, Entrepreneurship. @peculiarventure + xMSFT + xGOOG ++. also on https://t.co/FaDXJfnZBm & Bluesky