Constantin @HackmichNet
Windows security novice ... Always try to learn something new ... Happy hacking hackmich.net Joined June 2011-
Tweets4K
-
Followers465
-
Following2K
-
Likes698
One of the best sessions I've seen for years! A deep-dive to Entra architecture, high availability, etc. 🤯 Must see for all Entra enthusiasts!
One of the best sessions I've seen for years! A deep-dive to Entra architecture, high availability, etc. 🤯 Must see for all Entra enthusiasts!
A huge list of interesting Azure Sentinel hunting queries to give you some inspiration for your next purple team. github.com/Azure/Azure-Se…
A Nightmare on EDR Street: WDAC's Revenge beierle.win/2025-08-28-A-N…
It seems there now is a BOF implementation of ADSyncDecrypt to dump Entra ID connect creds 👀 github.com/Paradoxis/ADSy…
Dump Kerberos tickets like Rubeus's dump command🕵️♂️ github.com/Fudgedotdotdot… #infosec #cybersecurity #pentest #redteam
Documentation is key in #DetectionEngineering! Automate it with Jinja & Git for streamlined processes. Plus, generate changelogs to keep teams informed and improve collaboration. Discover more in @_st0pp3r_ latest blogpost 👉 blog.nviso.eu/2025/08/26/det…
Super interesting project... I have many ideas github.com/mihemihe/myADM…
WOW!!! temp43487580.github.io/intune/bypass-… @TEMP43487580 such a good post!!! it is so well written, interesting research and great results! Thank you! 🤩
Hi Friends! We continue our series of articles about RPC and impacket. In the second part, we looked at tools that can be used to analyze RPC servers, and also examined RPC security issues : ) cicada-8.medium.com/impacket-devel…
Trying to fly under EDR's radar? @_logangoins explains how to use HTTP-to-LDAP relay attacks to execute tooling completely off-host through the C2 payload context. Perfect for when you need LDAP access but want to avoid being caught stealing creds. ghst.ly/41mjMv7
I found that using RegQueryMultipleValuesW to read sensitive registry values bypasses nearly all the EDRs I tested. Alongside NtOpenKeyEx with OpenOptions 0x04, you can read Windows secrets without touching the disk and without SYSTEM. More here: sud0ru.ghost.io/silent-harvest…
👀Turns out MS-EVEN can do a lot more than NULL auth: In addition to leaking environment variables, it is possible to coerce authentication from arbitrary logged on users* 🤯 *If you are willing to trigger Windows Defender.
I wanted to find out if you could start the WebClient service remotely, so I ended up digging into it specterops.io/blog/2025/08/1…
IPC 6 is live; RPC 5; RPC Security 3. In this part, I discussed how to secure RPC endpoints and the RPC runtime system policy. The final part of the first wave of IPC will be next, where I will talk about tooling in RPC research. sud0ru.ghost.io/windows-inter-…
gpoParser, which I presented at #leHACK2025 and #DEFCON, is available here: github.com/synacktiv/gpoP… It is a specialized utility designed to enumerate Group Policy Objects (GPOs) and identify potential security misconfigurations.
[New Blog 📚] The Fragile Balance: Assumptions, Tuning, and Telemetry Limits In Detection Engineering If you ever struggle with false positives and the idea of tuning detections. This is for you. Read More - nasbench.medium.com/the-fragile-ba…
CypherHound github.com/fin3ss3g0d/cyp… now supports ALL traversable AD edges in BloodHound CE! There have been a lot of traversable edges added by @SpecterOps over the last year, my project is providing prebuilt queries for you to use with the latest edges! Don't miss out!
🧵 Red teams are shifting to stealthier AD enumeration via Active Directory Web Services (ADWS) over port 9389. Tools like SOAPHound, SoaPy & ShadowHound wrap LDAP queries in SOAP, bypassing traditional detections. ipurple.team/2025/08/12/act… A KQL to detect this type of AD…
We are very excited to announce our new tool - ATEAM Thomas Elling and I have been working on this project for the last year and this tool is the result of the research that we presented at the DEF CON Cloud Village this year. netspi.com/blog/technical…
Last week I covered computer accounts, so this week let's talk about user accounts. There are several different types of user accounts - at least how they are used. There are standard user accounts, service accounts, and admin accounts. There are numerous user account settings…

Dr. Nestori Syynimaa @DrAzureAD
20K Followers 2K Following Principal Identity Security Researcher at Microsoft. Ex-Secureworks. (MSc, MEng, PhD, CITP, CCSK). And yes, opinions are my own ;)
Fabian Bader @fabian_bader
9K Followers 813 Following #Security #Azure #AAD #MDE #M365 #AD #PKI Microsoft MVP Tweets and opinions are my own @[email protected]
Thomas Naunheim @Thomas_Live
7K Followers 458 Following #MicrosoftMVP | Cyber Security Architect 🛡️| #MicrosoftEntra 🔑 + #Azure ☁️ | #Schaengel
Sami Lamppu @samilamppu
3K Followers 830 Following Principal Cloud Security Lead, Elisa Santa Monica, Microsoft Security MVP. Tweets are my own. Blogger, speaker.
Jan Geisbauer @JanGeisbauer
2K Followers 650 Following Trying to find a path in the fog. Head of Security @glueckanja & Microsoft Security MVP.
Michael Schneider @0x6d69636b
1K Followers 413 Following infosec, working at @scipag, #RedTeam, classic car rally driver for @teampaddymurphy, 🐘@[email protected]
Joe Stocker @ITguySoCal
8K Followers 1K Following Christian Family Man, CEO of Patriot Consulting (Microsoft Security Partner) Author of "Securing Microsoft 365" Microsoft MVP (Security) (2020-present)
fin3ss3g0d @fin3ss3g0d
217 Followers 65 Following Red Team Operator/Pen Tester | Offensive Security Software Developer | Tweets are unaffiliated with my employer | OSCP | OSEP | CRTO | CRTL
Domenica Cronin @CroninDome92413
84 Followers 4K Following
Mstr Omar @omar_mstr40990
0 Followers 20 Following
Senyndo @Senyndo9XN_
65 Followers 3K Following
Karen Hunter @KarenHunte77078
2 Followers 156 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/9dITK81Lgw
Malcolm Stephenie @M__Stephenie
2K Followers 7K Following I Dreams inspires 🗽 I Financial Freedom 💰 | Real Estate 🏡 I Work from Home 🏠 I Digital Entrepreneur 🅱️ I Crypto and Stock Agent 📈
Kylee King @KyleeKing297580
92 Followers 4K Following
Dennis Schäfer @dennsch
1 Followers 112 Following
Toffy @toffyrak
171 Followers 220 Following
Eetwooeeroj @Eetwooeeroj941
44 Followers 1K Following
AdelaAnn @XyxIz3Gy40m487h
80 Followers 2K Following
GladysGarcia @Vz878k00CCApaNq
73 Followers 2K Following
DriveByte GmbH @drive_byte
29 Followers 94 Following Sleep well again and leave hackers no chance to begin with. We provide innovative and tailored cybersecurity services, for corporate, and SME sized businesses.
TomU | I'm still here... @c_APT_ure
8K Followers 6K Following #InfoSec professional, husband & father of two (in random order). #BlueTeam #DFIR #APT #CTI #RedTeaming #BSidesZH (RT/Likes ≠ endorsement) 👀➡️#MalwareChallenge
Shatra @Shatra51856311
7 Followers 231 Following
perfect4sec @perfect4sec
666 Followers 5K Following DFIR | Threat Intelligence | Malware Analyst | Researcher | Cybersecurity Proactive Defense Team
klm @klmxtom
11 Followers 389 Following
_Ray @_RayRT
353 Followers 837 Following Senior Adversarial Engineer at Lares, Member of EVILCORP\Domain Fathers. https://t.co/SIwC7MLXmP
Minh Dang Tuan @tuanminh_eth
50 Followers 1K Following
Marshall @__Mastadon
59 Followers 267 Following
RET2 WarGames @ret2wargames
2K Followers 2K Following Our industry-leading platform is the most effective solution for learning modern binary exploitation through a world-class curriculum developed by @RET2Systems
Carsten @0xcsandker
2K Followers 174 Following Security enthusiast, Likes Windows Internals, AD & Entra — https://t.co/mVVbfkO7IO
Nithin Chenthur Prabh... @Azr43lKn1ght
677 Followers 979 Following Unit 42 | Creator of DFIR Labs | Former Captain @teambi0s | DFIR | Malware Analyst | Maldev | Windows RE | Trounce🦇 | Views My Own
Felix @fr1dlix
0 Followers 68 Following
Hexnov @hexnov
122 Followers 935 Following Interested in offensive security and heavy music 💻🎶 purple teaming & adversary simulation 💜⚔️
test domain @User2Micro
721 Followers 4K Following
'); DROP T̆ͫ̑̒̿�... @fardarter
1K Followers 4K Following It turns out I'm a programmer. Ethnic Jew (not a Zionist). They/them. @[email protected] @fardarter.bsky.social
Jessica @jessica1burnett
333 Followers 3K Following
Kay @tunson_kay30
261 Followers 3K Following
Kathleen @kathleen_desalv
288 Followers 3K Following
Sascha Stumpler 💻 ... @SasStu
1K Followers 725 Following IT Professional working with #ConfigMgr #CM #MSIntune #M365 #Windows #OSD #PowerShell #Azure #EPM #LeastPrivilege
Make money easily @GL4sfRl3J9wiGs
15 Followers 568 Following MEXC focuses on financial management, stocks, cryptocurrencies, digital assets and investments. Currently, new users can get free dollars when they sign up.
Tony Gore @nullg0re
625 Followers 1K Following Security Researcher, US Marine Corps Veteran, Microsoft Most Valuable Researcher 2023 & 2024
Sen. Sally Eaves @sallyeaves
138K Followers 111K Following Innovating #tech #education #business CEO Tomorrows' Tech Today - CTO CIO Senator - #AI #5G #TechForGood #SDGs #CyberSecurity #IoT #ESG #FinTech #STEM #MWC25
Elan0r @elan0r1337
11 Followers 303 Following
Benjamin Boecker @x01a4
6 Followers 103 Following
cyberkali @cyberkali1
7 Followers 287 Following
Scomnewbie @fanfleon
76 Followers 387 Following
Gerald Gaiswinkler @gaiswige
12 Followers 330 Following
deckerXL @deckerXL
45 Followers 690 Following
James W. @cyberbiz4
168 Followers 4K Following looking for a cyber position in blue team. Metro Vancouver, Canada. Defender, GIAC x 3, AWS, M365, Splunk, Azure
9MF @n1neMF
90 Followers 3K Following
Lennart @pssvdrctry
111 Followers 404 Following Systemengineer gone InfoSec w/ @ERNW_ITSec. Everything I say is just my opinion. #Powershell #ActiveDirectory #Azure @[email protected]
Stacey @staceymoore73
337 Followers 3K Following
Grzegorz Tworek @0gtweet
36K Followers 2K Following My own research, unless stated otherwise. Not necessarily "safe when taken as directed". GIT d- s+: a+ C++++ !U !L !M w++++$ b++++ G-
Dr. Nestori Syynimaa @DrAzureAD
20K Followers 2K Following Principal Identity Security Researcher at Microsoft. Ex-Secureworks. (MSc, MEng, PhD, CITP, CCSK). And yes, opinions are my own ;)
Oliver Lyak @ly4k_
9K Followers 265 Following Yet another security researcher 🔦 Github: https://t.co/7WFOFz17KI
Florian Roth ⚡️ @cyb3rops
206K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Nathan McNulty @NathanMcNulty
17K Followers 1K Following Loves Jesus, loves others | Husband, father of 4, security solutions architect, love to learn and teach | Microsoft MVP | @TribeOfHackers | 🦋@nathanmcnulty.com
Charlie Bromberg « ... @_nwodtuhs
15K Followers 653 Following Trying to hack the way we hack things 🏴☠️
vx-underground @vxunderground
368K Followers 290 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Dirk-jan @_dirkjan
28K Followers 206 Following Hacker at @OutsiderSec. Researches AD and Azure (AD) security. Likes to play around with Python and write tools that make work easier.
Matt Zorich @reprise_99
14K Followers 2K Following @Microsoft Security | https://t.co/HWozKuixTi | Tweets are my own
Florian Hansemann @CyberWarship
84K Followers 47 Following Father, Founder @HanseSecure, Pentesting, Student, ExploitDev, Redteaming, InfoSec & CyberCyber; -- Mastodon: https://t.co/KFSKYUN98M
Sami Laiho @samilaiho
30K Followers 684 Following Chief Research Officer (opinions are my own) / #1 & #2 at Ignite 2018 / Best Session - NIC x 5 / MVP Windows OS / https://t.co/YcBqnFQOur / PluralsightAuthor
Fabian Bader @fabian_bader
9K Followers 813 Following #Security #Azure #AAD #MDE #M365 #AD #PKI Microsoft MVP Tweets and opinions are my own @[email protected]
Thomas Naunheim @Thomas_Live
7K Followers 458 Following #MicrosoftMVP | Cyber Security Architect 🛡️| #MicrosoftEntra 🔑 + #Azure ☁️ | #Schaengel
BleepingComputer @BleepinComputer
240K Followers 200 Following Breaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
DebugPrivilege @DebugPrivilege
40K Followers 2K Following Windows Nerd | Ex-MSFT | Microsoft MVP in Windows | Interested in Security, Debugging, and Windows Internals.
Andrea P @decoder_it
8K Followers 290 Following Security Consultant @semperistech . Independent Security Researcher. Cyclist & Scubadiver. MSRC MVR 2022. "So di non sapere"
an0n @an0n_r0
13K Followers 725 Following CRT(E|O|L) | OSCP | @RingZer0_CTF 1st (for 2yrs) | HackTheBox Top10 | RPISEC MBE | Flare-On completer | GoogleCTF writeup winner | SSD research | Math MSc |🇭🇺
fin3ss3g0d @fin3ss3g0d
217 Followers 65 Following Red Team Operator/Pen Tester | Offensive Security Software Developer | Tweets are unaffiliated with my employer | OSCP | OSEP | CRTO | CRTL
ret2src @ret2src
371 Followers 1K Following Breaker of Stuff | Injector of 0x41 | Discoverer of Dumb Things | Creator of Glitches. Dropping shells since 0x7DC.
Chocapikk 🤘🏻 @Chocapikk_
3K Followers 264 Following Pentester. Exploit Dev. CVEs for fun 🇫🇷 Security Researcher & Software Developer @leak_ix ☁️ (soon) Views are my own 🧠
Ptrace Security GmbH @ptracesecurity
59K Followers 867 Following Empowering IT Security Professionals through Hands-On Online Courses.
Cedric Halbronn @saidelike
4K Followers 662 Following Security researcher, Pwn2Own {2021, 2022}, #VR #RE #ED (Mastodon: @[email protected])
_Ray @_RayRT
353 Followers 837 Following Senior Adversarial Engineer at Lares, Member of EVILCORP\Domain Fathers. https://t.co/SIwC7MLXmP
Simon Skotheimsvik | ... @SSkotheimsvik
1K Followers 446 Following Senior Cloud Consultant @TeamCloudWay | Microsoft MVP | International Speaker | Tech Blogger | https://t.co/53B2rAqsIx | MOD for https://t.co/vs4E6SM6no |
Traceix @usetraceix
17K Followers 416 Following Correlate binaries by behavior | Demo: https://t.co/elkZk1VrrC | Discord: https://t.co/jcZBvfLOic | Product of Revix Labs LLC
sapir federovsky @sapirxfed
5K Followers 183 Following Doing things @wiz_io And then doing more things at home | failed research blog: https://t.co/j2HT1Tpscs
(account is frozen fo... @cj_berlin
637 Followers 0 Following
Nithin Chenthur Prabh... @Azr43lKn1ght
677 Followers 979 Following Unit 42 | Creator of DFIR Labs | Former Captain @teambi0s | DFIR | Malware Analyst | Maldev | Windows RE | Trounce🦇 | Views My Own
Mike Felch (Stay Read... @ustayready
16K Followers 2K Following Targeted Ops Red Team @ TrustedSec | Hacking since Renegade BBS backdoors | Prior CrowdStrike/BHIS | In Christ's grip | I speak for myself only | K1HAQ
Hexnov @hexnov
122 Followers 935 Following Interested in offensive security and heavy music 💻🎶 purple teaming & adversary simulation 💜⚔️
Edwin van Andel @Yafsec
5K Followers 2K Following https://t.co/N6FLQyoPB7 | CTO | Speaker | Security | Hacking | ALT-S Organizer | נקר ירוק | Last Unicorn Con | Defcon 003120 | @iamthecavalry | @[email protected]
Leo Visser @autosysops
419 Followers 658 Following Cloud Consultant | Former MVP | MCT | Azure | Security | DevOps | Agile
Christian Ritter MVP @blackboxcoder
807 Followers 936 Following He/Him | Father of two ♥️♥️ | MVP |#PowerShell aficionado | Automation enthusiast | Blog author | Founder of PSUGFFM | Public Speaker | Opinions are my own.
Aurélien Chalot @Defte_
3K Followers 459 Following Hacker, sysadmin and security researcher @OrangeCyberdef 💻 Calisthenic enthousiast 💪 and wannabe philosopher https://t.co/SqDDhIGGGh 📖 🔥 Hide&Sec 🔥
0xor0ne @0xor0ne
81K Followers 514 Following | CyberSecurity | Reverse Engineering | C and Rust | Exploit | Linux kernel | PhD | My Tweets, My Opinions :) |
Tony Gore @nullg0re
625 Followers 1K Following Security Researcher, US Marine Corps Veteran, Microsoft Most Valuable Researcher 2023 & 2024
r1cksec @r1cksec
976 Followers 221 Following Data breach revealed, Malware lurks, silent, stealthy - OSINT tracks the thread.
lazzslayer @lazzslayer
4K Followers 585 Following Red Team | Co-Author of Redefining Hacking | VP for @bsidesnash | Advisory Board for @redteamvillage_ | OSCP, GCPN, CISM, GPEN | 🤠
Lennart @pssvdrctry
111 Followers 404 Following Systemengineer gone InfoSec w/ @ERNW_ITSec. Everything I say is just my opinion. #Powershell #ActiveDirectory #Azure @[email protected]
Kolja @__k0lja
60 Followers 316 Following
Black Hills Informati... @BHinfoSecurity
48K Followers 2K Following Specializing in pen testing, red teaming, and Active SOC. We share our knowledge through blogs, webcasts, open-source tools, and Backdoors & Breaches game.
Sravan Akkaram @SravanAkkaram
343 Followers 296 Following Cybersecurity Consultant @Microsoft | Microsoft MVR ’22 & ’23 🏆 | Presenter @BlackHat
Geiseric @Geiseric4
906 Followers 155 Following AD/Azure Enthusiast | eCPPTv2 | CRTP | CRTO | CRTE | CRTM | CARTP https://t.co/yYy84cNFPw
Hakku @iHakku
26 Followers 72 Following he/him #infosec "Unwissenheit erzeugt viel öfter feste Überzeugungen, als es Wissen tut."
ATTL4S @DaniLJ94
3K Followers 649 Following I like spending time understanding things | FSAS @NCCGroupInfosec
KevinLu @K3vinLuSec
3K Followers 1K Following Bluehat Speaker, Vulnerability Research, Malware Analysis, Reverse Engineering on macOS, Android, Windows, IoT(Views represented are solely my own)
S4ntiagoP @s4ntiago_p
3K Followers 852 Following Infosecing at @MDSecLabs, ex @CoreSecurity CVEs: -1
Martin Therkelsen @Mracket
1K Followers 549 Following Cloud Architect at APENTO with focus on Azure, Citrix, DevOps, PowerShell and automation. I am a Microsoft MVP and Citrix CTP. https://t.co/omtDq7HljM
Simon Goltz @SimonGoltz
223 Followers 488 Following Blogging about Zscaler and Microsoft 365 Security at https://t.co/qtmKXyv0xf | Consultant at synalis
Markus Wulftange @mwulftange
3K Followers 195 Following Principal Security Researcher and Pâtissier at @codewhitesec
Lukas Beran @lukasberancz
2K Followers 243 Following Senior Security Researcher (DART) @Microsoft. Opinions are my own. #MSIncidentResponse #DART #Microsoft365 #EntraID #DefenderXDR #Sentinel