Codean @CodeanIO
Ethical hackers rock and we think they do not get enough love (tool wise). So we are creating a tool for security analysts, by security analysts! about.codean.io Remote, Netherlands Joined April 2021-
Tweets63
-
Followers410
-
Following175
-
Likes67
Two of our Codean Labs colleagues evaluated OpenPGP.js and identified a signature spoofing vulnerability. Writeup includes a PoC where we demonstrate the vulnerability by spoofing a message by the Dutch government's Cyber Security Center! codeanlabs.com/blog/research/…
It's been four years already! Here’s to four more years of making the world more secure! linkedin.com/feed/update/ur…
At Codean Labs, our mission is to make the world more secure — and what better way than to secure fundamental open source projects? We identified CVE-2025-47934, a critical vulnerability in OpenPGP.js to spoof signatures, see github.com/openpgpjs/open… github.com/openpgpjs/open…
Codean Labs' @b0n0b0__ and @Doyensec's @drw0if discovered CVE-2025-32464, a heap-buffer overflow in HAProxy. Read our write-up here: codeanlabs.com/blog/research/…
We discovered CVE-2024-12425 & CVE-2024-12426 which allow attackers to write files & extract sensitive data. Check our blog post for the impact & how to protect yourself. linkedin.com/feed/update/ur…
We spent a lot of effort on improving the security of Ghostscript and this is our third and final blog post about everything we found. Enjoy the read! linkedin.com/feed/update/ur…
We just reached over 1,000 commits on Codean 🎉 Just a few thousand more and I am sure Codean will be done by then 😉
We are finally catching up on some basic capabilities everyone expects, but are still darn hard to get right! Finally, landed on SCIP and SCIP indexers to have code intelligence that also enables us to create unique and cool features in the future. Stay tuned for more!
Another day another high impact #CVE-2024-29511 on #Ghostscript ≤ 10.02.1. it leads to an arbitrary file read/write (under certain conditions) outside of the -dSAFER sandbox. You can find all details about this #vulnerability on our blogpost. codeanlabs.com/blog/research/…
We found #CVE-2024-29510, a format string vulnerability in Ghostscript ≤ 10.03.0. It enables attackers to gain Remote Code Execution (#RCE) while also bypassing all sandbox protections. It has significant impact so please update Ghostscript! codeanlabs.com/blog/research/…
A public service announcement about #CVE-2024-4367 that we found in one of our pentests at Codean Labs. Make sure to update your #Firefox version to 126 and for #developers to update your PDF.js dependency. You can read our blog post for all details. linkedin.com/feed/update/ur…
We found a vulnerability in Mozilla’s PDF.js (CVE-2024-4367 and CVE-2024-34342 via react-pdf) resulting in arbitrary JavaScript execution when opening a malicious PDF. This results in XSS on many web- and even desktop apps. Blog post coming soon! linkedin.com/feed/update/ur…
Our Capture The Flag events are designed around the accessibility to the source code of all vulnerable targets. What's even more fun is that the whole CTF is played from within Codean! I guess we should host another public CTF sometime soon™! linkedin.com/feed/update/ur…
We are looking for design partners! "Yeah, yeah, yeah... just another sales tactic." Well yes, you are not wrong, we obviously do need to make money. That said, we believe we can create a win, win, win! Sounds interesting? Let us know! linkedin.com/feed/update/ur…
Did you know that we publicly discuss features and the architecture of Codean?! Join our Discord at discord.gg/nVDwK8fbH7 and let us know what you want from a tool like Codean!
#pentesting projects we do via Codean Labs relied on an older version of Codean. Today we onboarded a pentest project on the NEW platform at codean.io 🎉 We did find some bugs that we fixed and identified the need for more features... Plenty of work for all of us!
𝗪𝗲 𝗵𝗮𝗱 𝗳𝘂𝗻 𝗱𝘂𝗿𝗶𝗻𝗴 #𝗱𝗲𝘃𝗲𝗹𝗼𝗽𝗺𝗲𝗻𝘁 There should be a nice way to look at the code that a Codemark points to. To achieve this, we show you a full blown editor with all the bells and whistles, including Codemarks... No worries, its now fixed 😉
While many parts of Codean are already #designed and "tested" for #userexperience, implementing much is still tbd! Two parts were really hampering even trying Codean: member management and repository synchronization. Both of these have been just implemented and rolled out!
Here's a write-up of another vulnerability we found, caused by a lack of input validation. This time it's CVE-2023-38504, a DoS in Sails.js, an MVC framework for Node. Enjoy! codean.review/vulnerability-…

marias @marias697616410
5 Followers 260 Following
Satoooon @Satoooon1024
1K Followers 948 Following CTF(Web) w/@thehackerscrew1 | seccamp'21-C | Mastodon: https://t.co/n78LO4cTLe
hamaccount @hamaccount
16 Followers 2K Following
pyn3rd @pyn3rd
13K Followers 605 Following Security Researcher&Red Team&Cloud Security. BlackHat&HITB&CanSecWest Speaker.
m411k @m411k_
182 Followers 922 Following I do computer science and I love hacking, public pgp key in my blog 👇
Aerlyn Vorynx @myu_2y
132 Followers 3K Following
Abdullah Asif @AbdullahAsifVir
373 Followers 1K Following #Cybersecurity #WebApplications #CloudArchitect. Retweet not endorsement.
rouk @rouksec
0 Followers 87 Following
my car @camry19870501
25 Followers 42 Following
Ismail Arabi @IsmailArabi18
83 Followers 2K Following
Joshua Henry @jhenry0110
77 Followers 1K Following Jesus Follower and Disciple🙌🏿,Biblical Scholar🙏🏿, Computer & I.T. Guy⌨️📱🖥, Software Engineer, Cybersecurity Enthusiast and Hacker
Ahmed Alahdl @alahdl_ahm20179
5 Followers 64 Following
X CyberSec @xcybersecnews
75 Followers 202 Following Navigating the digital frontier, securing tomorrow with every click
lee1981 @lee1981b
456 Followers 3K Following Learning Cyber-Security, Bug bounty hunting, Ethical hacking & Malware Analysis 😀
Jawad Saqib @jawadsaqib_
247 Followers 1K Following PNPT | CEH | Cyber Security enthusiast, Pentester, Web Developer, Python + Bash ❤️ Author at https://t.co/pVa55H5BHZ
GH057 @daritdob
1K Followers 1K Following Pain is just a French word for Bread ➰L0NG5TR33T™ [email protected]
Ameer Hamza @0xhamza
248 Followers 4K Following I have Diverse Interests: Interested in Global Politics Specific to Great Power Rivalry, Middle East, South Asia and OBOR. Interested in Information Security.
Raymond @LinRaymond2006
14 Followers 1K Following
Zwink @_zwink
299 Followers 163 Following
Luca Palumbo @Luca_Palumbo_
33 Followers 87 Following AI MSc student @unipisa | BSc in Physics | CTF player @fibonhack
nick0ve @nick0ve
388 Followers 386 Following Computer Engineering @unipisa | CTF @fibonhack @aboutblankets | Blockchain Security @osec_io
Sambam4mba @he31707900
8 Followers 917 Following Bor3d hacker of iot devices, security researcher? Security Breacher!
Ashish Kunwar @D0rkerDevil
13K Followers 5K Following ex @Microsoft Security Researcher| Vulnerability Research | Threat Intel | EASM | DE | Penetration Tester | Opinions here are solely mine not my employer
Nis_sec @BugBugproofmind
46 Followers 812 Following cybersecurity guy | Breaking things so others can sleep better | Bug Hunter | Scope sniper #SecurityResearcher
Hussein Muhaisen @husseinmuhaisen
2K Followers 4K Following In stealth reversing security complexity for the consumer and the enterprise // @ // PagedOut and GuidedHacking
callme Pai @Cupu__man
0 Followers 662 Following
Mehedi Hassan @mehedi6120
38 Followers 453 Following Cybersecurity Specialist | Bug Hunter | Penetration Tester
Julian @Roulian92
0 Followers 49 Following
Stager @_stager_
10 Followers 251 Following
shshp @shshp4
0 Followers 5K Following
johnny9 @johnny__9
3 Followers 234 Following
Kuldip Pujara @kuldippujara
84 Followers 789 Following I am web developer. in love with @php_net, @nodejs, @reactjs, @vuejs technologies
Omar Ammar @N0RMXL_
11 Followers 538 Following
Hossein Khatibi @khatibi5339
0 Followers 11 Following
Amiram @amirhseddighi
92 Followers 279 Following
Christopher Morales @D4sh010101
73 Followers 2K Following
offsec @offsec225881
1 Followers 120 Following
Justin Gardner @Rhynorater
35K Followers 2K Following Christian | Full-time Bug Bounty Hunter | Host of @ctbbpodcast | Advisor @CaidoIO | 4x LHE MVH | 🗣️ English, 日本語 | ♥️ @mariahchan_ ♥️
Publer @publer
63K Followers 163 Following Your ultimate social media management platform 💚 Plan, Schedule, Collaborate, Analyse & Report Explore Publer for free: https://t.co/7mwhUROkS5
Erik Ploegmakers @ploeg
1K Followers 749 Following I am CEO @ https://t.co/en9hJ4xoak previously Zerocopter/Fox-IT. I listen to and play music. I read comics. I'm a lawyer and a lousy hacker but I'm trying.
Paul @PaulBakkerNL
242 Followers 333 Following Grey hairs for (tech) Entrepreneurs | @pingpingio | Realistically paranoid | Likes solving complex problems
BSides Munich @BSidesMunich
1K Followers 460 Following BSidesMunich - Security Conference in Munich https://t.co/yxqy2qBPZX
Eric Luteijn @eluteijn
1K Followers 2K Following Uitgever ITchannelPRO. Dagelijk met IT en telecom-nieuws bezig: The Digital Workspace, Security-, Datacenter-, VoIP en UC&C- en IoT topics voor het channel.
ITchannelPRO @ITchannelPRO_NL
38 Followers 19 Following ITchannelPRO is hét kennisplatform voor de circa 8.000 Telecom en IT-business partners en geldt als de primaire informatiebron in het IT-kanaal in Nederland.
out of memory @oom_rl
621 Followers 711 Following normalize truth! used to run a nuclear reactor underwater. ++ https://t.co/k2p36kfDtR (THIS ONE) @[email protected]
Sebastian @sebastian_paul
889 Followers 1K Following Interested in all things Security, Security Governance and AppSec. Occasional conference speaker. Opinions are my own, and not afraid to change them.
OWASP Netherlands @owasp_NL
1K Followers 63 Following The Open Web Application Security Project (OWASP) is a worldwide free and open community focused on improving the security of application software.
hextree.io @hextreeio
8K Followers 2 Following 🌱 Grow your cybersecurity skills with concise and well-edited video courses - in early-access, sign-up now! Created by @LiveOverflow and @ghidraninja.
Chantal 🔮 @MiFare_lady
2K Followers 1K Following Co-founder @wicca_NL for Women in Infosec | #WICCON | DC3120 | 🎙@ngrynerds | Partner in Cybercrime of @vm00z | SSDGM 🖤 | (she/her)
HackerHotel @HotelHacker
1K Followers 335 Following Hacker Hotel provides a luxurious hacking experience. For hackers and makers, with workshops and lectures at all skill levels!
Pieter Jansen @pitrpitr
660 Followers 539 Following hacker - tweets are personal - former founder of https://t.co/h26ZSLvBmE (acquired), now SVP Cyber Innovation @Darktrace
Anis_Boss @AnisBoss_
187 Followers 232 Following Interested in Cyber Security | REV, PWN | CTF Player at @the3000org | (1.01)^365== 37.8 | https://t.co/6cf6Hdg6MV
b0n0b0 @b0n0b0__
84 Followers 134 Following CTF player @fibonhack Security Analyst and Researcher @CodeanIO
TryHackMe @RealTryHackMe
282K Followers 103 Following An online platform that makes it easy to break into and upskill in cyber security, all through your browser.
Intigriti @intigriti
193K Followers 658 Following Bug bounty & VDP platform trusted by the world’s largest organisations! 🌍
Hacking Articles @hackinarticles
276K Followers 453 Following House of Pentesters Join us: https://t.co/Y6XOlSOA92
CyberSecurity Tools @cyberdian_tools
13K Followers 4 Following Daily tools news digest of breaking news in the #CyberSecurity, design by @cyberdian, IT Consulting firm. We Tweet in 🇫🇷 & 🇺🇸 #InfoSec #TousSecNum
rizemon @rizemon
126 Followers 497 Following Working | 🇸🇬 University graduate | OSWE | OSCP | BSCP @[email protected]
Giorgio Dell'Immagine @g_dellimmagine
78 Followers 504 Following Computer science student @Unipisa - Cryptography @zksecurityXYZ - CTFs with @fibonhack
Aleandro @drw0if
271 Followers 890 Following Computer science student @ UniPI - ctf player with fibonhack, r00tstici - Security Engineer @ Doyensec
Luca Palumbo @Luca_Palumbo_
33 Followers 87 Following AI MSc student @unipisa | BSc in Physics | CTF player @fibonhack
Stef @Stef_van_Dop
1K Followers 1K Following hack the planet! Please note: this profile is only here cause i dont want somebody claiming my nickname on twitter, follow me on bluesky: @stefvandop.nl
Marcel van de Kolk @de_kolk
73 Followers 696 Following #Privacy #Security #Informatiebeveiliging #GSXR
Oscar Koeroo @okoeroo
5K Followers 2K Following High-performance security, Concern CISO MinVWS, Kobayashi Maru, #OpCyberpaint, Daddy^2, Husband, Hacker, Creative.
Jan Ellermann 🇪�... @JanEllermann
566 Followers 777 Following 🇪🇺 Data Protection, Freedom AND Security enthusiast, tweets are my private opinion, EDEN is not a garden - but the @Europol Data Protection Experts Network 😜
Forum InCyber (FIC) -... @INCYBER_Europe
19K Followers 2K Following #InCyberForum (FIC) #1 🇪🇺 Event on #Cybersecurity 🗓️ April 1-3 2025
Albert @AlbertSYN_ACK
12 Followers 191 Following
All about CTF @CTFtime
19K Followers 55 Following
Jarkko Vesiluoma @jvesiluoma
2K Followers 2K Following White hat hacker, Team ROT. Bug bounty hunter. Owner of Redtest-Security. Co-founder @HajySec + @rotcofi. OSCP/OSCE/OSWE. Opinions expressed are mine.
Thomas Malmberg @tsmalmbe
468 Followers 1K Following Tweets about infosec, travelling, racing, Springsteen - various whining in finnish.
putsi @putsi
3K Followers 3K Following White hat hacking in Team ROT. Also, hacker-for-hire & bug bounty hunter -- https://t.co/5sHK3CHtdm
Paul Shomo - Security... @ShomoBits
1K Followers 1K Following Cybersecurity analyst, engineer-inventor, and Dark Reading contributor. Former engineering leader behind EnCase and DFIR. Former kernel developer for Wind River
Mint Security @mintsecurityfi
222 Followers 25 Following Infosec Consultants in Finland. Also #veracode and #spamhaus and #alphasoc.
Reasonable_In🖊 @TranslationInLo
307 Followers 5K Following Billionaire bros, Anti - { Liberal, Feminist, Colonist, Communist, Sugardaddy, Protagonist, Capitalist, Socialist} Group of 34 guys using same acc😂bonito sor
sudi @sudhanshur705
5K Followers 695 Following Remember, whatever happens... There's always a vulnerability https://t.co/FFVfnf39jY
Burp Suite @Burp_Suite
131K Followers 14 Following Burp Suite is the leading software for web security testing.
PortSwigger @PortSwigger
100K Followers 23 Following We are a leading provider of software and learning on web security. We make @Burp_Suite and @WebSecAcademy.
PortSwigger Research @PortSwiggerRes
111K Followers 7 Following Web security research from the team at @PortSwigger
Lionfishcybersecurity @LionfishCyber
2K Followers 2K Following Lionfish Cyber Security is the next evolution of cyber security for small to mid-sized businesses.
ONE Conference @OneConferenceNL
2K Followers 494 Following The ONE Conference is Europe’s prime cybersecurity event. To stay updated, follow us on LinkedIn https://t.co/keQbPvAeqJ
[email protected]... @axi0mX
61K Followers 2K Following Bootrom exploit philanthropist. Apple silicon hacker. iOS jailbreaker. Join us as we dance madly on the lip of the volcano.
Cristofaro Mune @pulsoid
2K Followers 777 Following In between Physics & Computing. Fault Injection, TEEs, IoT & anything else challenging my curiosity. Founder at Raelize (@raelizecom)