Aloïs Thévenot @TechBrunchFR
Jack of all trades, master of some. CTO / Pentester @vaadata - Bluesky: @techbrunch.fr techbrunch.fr Lyon, France Joined December 2010-
Tweets6K
-
Followers2K
-
Following1K
-
Likes675
DOMLogger++ v1.0.9 is now out and available! 🎉 This update fixes a lot of issues, including the historical DevTools bug on Chromium 🔥 It also brings full Caido session handling, which is going to be useful in the near future! 👀 👉 github.com/kevin-mizu/dom… 1/2
Visiting NCC Group’s blogs right now feels like a CTF challenge: decipher the mangled text while dodging XSS pop-ups. Better to use web archive to see the original content but they have even changed the URLs! Example: nccgroup.com/research-blog/… The fox-it.com etc are…
One of the best sessions I've seen for years! A deep-dive to Entra architecture, high availability, etc. 🤯 Must see for all Entra enthusiasts!
One of the best sessions I've seen for years! A deep-dive to Entra architecture, high availability, etc. 🤯 Must see for all Entra enthusiasts!
Technical blog that walks through the attack in more detail: horizon3.ai/intelligence/b…
We just dropped a new paper 🚀 🚀 Meet MAPTA, a multi-agent pentesting AI for the web. With just a few tools, it crushed the XBOW benchmark with 76.9%. MAPTA has already uncovered and reported critical security issues to Tier-1 companies, with multiple CVEs pending. Full details…
We just dropped a new paper 🚀 🚀 Meet MAPTA, a multi-agent pentesting AI for the web. With just a few tools, it crushed the XBOW benchmark with 76.9%. MAPTA has already uncovered and reported critical security issues to Tier-1 companies, with multiple CVEs pending. Full details… https://t.co/4MZplHjRo0
Technical walk through of NodeZero solving GOAD-Hard in 14 minutes For the skeptics that think this is hardcoded or trained on a specific environment, feel free to stand up GOAD-Hard and add a bunch more VM’s with random misconfigured and exploitable software like Ivanti,…
We've just pushed details on our latest #Nighthawk release (Sivako) nighthawkc2.io/sivako/ - including async BOF support, native kerberos and more 🔥 vimeo.com/1115201393?sha…
Releasing a project I've been working on for a while: thermoptic - A next-generation HTTP stealth proxy which perfectly cloaks requests as the Chrome browser across all layers of the stack. github.com/mandatoryprogr…
I Researched Ruby class pollutions and discovered a new exploitation method, Rotate Chains, achieving 100% exploit success rate; also created a bi0s CTF 2025 challenge based on the technique which had 0 solves. Read the research/writeup: winters0x64.xyz/posts/post-2
Pentesting AWS IoT? 🔐 Learn how to use certs + IAM auth, simulate attacks with MQTT plugins, and test real-world scenarios using the EXPLIoT framework. 📺 Watch part 2 of our IoT security series: youtube.com/watch?v=5m6DSX… #IoTSecurity #AWS #Pentesting
My mind wanders a lot, right now I'm picking up on the 1Password CTF challenge (again!!). "Anyone who can read a private CTF flag from a private vault could receive $1 million USD from AgileBits." Looks daunting, but like all the hard things in life, we divide them into easier…
My 2nd Sitecore blog is live. This time, it's a Pre-Auth HTML Cache Poisoning (fun reflection) + Post-Auth RCE 🫡
My 2nd Sitecore blog is live. This time, it's a Pre-Auth HTML Cache Poisoning (fun reflection) + Post-Auth RCE 🫡
🚨 New blog post: ELEGANTBOUNCER - Catch iOS 0-click exploits without having the samples. Features iOS backup forensics & messaging app scanning for iMessage, WhatsApp, Signal, Telegram & Viber attachments. 🔗 Link -> msuiche.com/posts/elegantb…
#ESETResearch has discovered the first known AI-powered ransomware, which we named #PromptLock. The PromptLock malware uses the gpt-oss:20b model from OpenAI locally via the Ollama API to generate malicious Lua scripts on the fly, which it then executes 1/6
Hardly anyone I know can do a good iOS app security assessment because it's such a pain in the ass to deal with this, amongst other ✨just Apple✨ things. Android has typically been much easier to test. Not anymore?
Hardly anyone I know can do a good iOS app security assessment because it's such a pain in the ass to deal with this, amongst other ✨just Apple✨ things. Android has typically been much easier to test. Not anymore?
🚨 Plex patched a vuln in Media Server (1.41.7.x → 1.42.0.x). ⚠️ Censys sees 428k+ server interfaces, not all vuln, but at risk. ✅ Update to 1.42.1.10060+ immediately. 👇Check your exposures with Censys hubs.ly/Q03F5J4G0 #infosec #vulnerability #plex
Trying to fly under EDR's radar? @_logangoins explains how to use HTTP-to-LDAP relay attacks to execute tooling completely off-host through the C2 payload context. Perfect for when you need LDAP access but want to avoid being caught stealing creds. ghst.ly/41mjMv7
New blog post just dropped! West Shepherd breaks down extending the Mythic Poseidon agent for ARM64 Dylib injection on Apple Silicon. Details include: ✅ Shellcode construction ✅ Memory allocation ✅ Runtime patching ✅ Thread creation Read more ⤵️ ghst.ly/41Nu4ED
For anyone with a Kindle, jailbreaking it takes 5 minutes and turns it into one of the cheapest, most capable eInk devices you can own. Runs Linux! kindlemodding.org
Low-Cost and Comprehensive Non-textual Input Fuzzing with LLM-Synthesized Input Generators usenix.org/conference/use…

JS0N Haddix @Jhaddix
167K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
bugcrowd @Bugcrowd
187K Followers 6K Following The leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuity™
HackerOne @Hacker0x01
324K Followers 3K Following The only official HackerOne Twitter account. A global leader in offensive security solutions. #HackForGood #togetherwehitharder
YesWeHack ⠵ @yeswehack
39K Followers 3K Following Global Bug Bounty & Vulnerability Management Platform 🎯 https://t.co/57gODBq2WZ 👾 https://t.co/ICc6RyhJTp 💡 https://t.co/KNYxhkKuzt
SecurityTrails, A Rec... @securitytrails
13K Followers 1K Following Security Trails was acquired by Recorded Future. To see what's new, visit @RecordedFuture.
Nicolas Grégoire @Agarri_FR
27K Followers 630 Following Web hacker and Burp Suite Pro trainer Refer to https://t.co/D5tRH7U2hg for trainings Follow @MasteringBurp for free tips and tricks
Gareth Heyes \u2028 @garethheyes
37K Followers 1K Following JavaScript for hackers: Learn to think like a hacker. https://t.co/e0aNEbEDk5
André Baptista @0xacb
17K Followers 781 Following Hacker grinding for L1gh7 and Fr33dφm, straight outta the cosmic realm. Co-founder @ethiack
Md Ismail Šojal �... @0x0SojalSec
30K Followers 5K Following Cyber_Security_Re-searcher || 0SINT || Malware Analysis II Pwn || Ai Re-searcher || Project @AIStrikeSec || 0ld Accounts Suspended @0xSojalSec ||
Peggy @peggy_silva55
260 Followers 3K Following
IRIS C2 @C2IRIS
141 Followers 12 Following The world's most advanced offensive cyber command & control platform
Drucilla @AmeliaOtsu86031
35 Followers 1K Following Its all about fashion market place & encouraging young talent .
Jennifer @vielejennifer14
289 Followers 3K Following
Nassim @MetalnaS
21 Followers 134 Following
Mukhtary @mukhtaraudu1
390 Followers 2K Following cybersecurity analyst || CompTia sec+ || Lifelong learner || Bug bounty || @cyblack Alumni
Merill Fernando @merill
19K Followers 4K Following Product Manager @microsoft | Tweets my own Built → https://t.co/ujxKqxXjf2 • https://t.co/QbUp63ffXf • Graph XRay • https://t.co/tSWrIw8Ajh 📰 Newsletter→ https://t.co/tPzAEl0Zuq 🎙️ Podcast→ https://t.co/TBlNKTzn8t
zak @zak5012
2 Followers 116 Following
Calum Hall @_calumhall
950 Followers 336 Following Co-Founder of Phorion 🔍| Threat Detection and Response Manager at GitHub 👨💻| macOS researcher 🍎 | BlackHat speaker 2021 📢 Opinions are my own
💻🥷 WarthogTK �... @warthogtk
2K Followers 6K Following Pentester | Ex MD (Intensivist) | (Black) Arch Linux enthusiast - AD - MalDev | DCS, Gaming/VR/MR, Metal+++, Geopolitics, Defense #avgeek Opinions are my own
Alwish Christian @Alwish_Groovy
37 Followers 994 Following Growth Partner at groovyweb | Business Analyst | Empowering IT leaders with strategic outsourcing to accelerate innovation and growth | Healthtech expert.
Everly @GussieH68744
13 Followers 345 Following Recruiting webshel l engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/QiDjPZp6L0
🐸 𝕕𝕠 𝕞�... @DoMinhDuy7
124 Followers 648 Following it's essential to enjoy the journey and have fun along the way. That's why my motto is to "work hard, play hard" 😎.
Thakur @369teslaram
67 Followers 1K Following Truth, Cybersecurity,Failed Philosopher,Failed Teacher
Julian @Roulian92
0 Followers 49 Following
Lukastaboga @lukastaboga
9 Followers 232 Following
J.O.B @job_concepts
321 Followers 4K Following Software development and cybersecurity insights. Starve your distractions and feed your focus! [email protected]
SallyHenrietta @NF8ju96b08yV55f
68 Followers 2K Following
MSE @DigitalMistica
353 Followers 4K Following 🌐 I made this account to warn others and share my experience with a potential Trojan that auto-downloaded from the TikTok Seller website. 🆘
jai🇮🇳 @jai_sahaj
204 Followers 2K Following lover of all things cyber, nature, photography, automobiles & gadgets. Always on the lookout for innovation for good cause, Sahaja Yoga #JaiShriMataji
RedGhost Hive @redghosthive
295 Followers 4K Following FSW 🌐| Exploring Cloud ☁️ & Cybersecurity | Future DevSecOps Pro 🚀 | Bug Bounty Hunter on the side hustle 🐞 | Building skills, breaking barriers.
Lev Salinas @levsalinas
336 Followers 8K Following
Mohamed Elbably @elbably0x
89 Followers 622 Following
Cyber_nerd @Benjamin15469
93 Followers 1K Following Security + Pentesting + Web + Mobile + Network + Cloud + Ai + RE + IR
Zakaria (H4X0z) 🇵�... @H2X0z
298 Followers 1K Following 17y | Part-time Bug Bounty Hunter | https://t.co/q0LftkkCrx
Alexander Ferguson @alexand03082
158 Followers 537 Following If you look at what you have in life, you'll always have more. If you look at what you don't have in life, you'll never have enough.
Altayeb Salim @Im_Altayeb
8 Followers 549 Following I am working on developing myself. I love teaching others what I know about CS | #CCNA | #MCSA | #eJPTv2 #eWPTv2 #CEH
CHAOUI ELHOUSSAINE @X3r0_Flux
29 Followers 930 Following
kngn2314 @kngn2314
1 Followers 92 Following
mahmoud shaarawy @0xShaarawy
255 Followers 1K Following
Smeysue @Smeysue9oeGSQM
70 Followers 1K Following
Luke Jahnke @lukejahnke
3K Followers 6K Following
leonard lianto @leonard_lianto
2 Followers 167 Following Trying to balance college and personal interests
Nick VanGilder @nickvangilder
2K Followers 3K Following Red Team Director | Mission Focused Leader | Combat Veteran | Offensive Security Program Builder | Mentor and Coach
Dawam Longmun Reuben @longmundawam
50 Followers 457 Following Cybersecurity Analyst|Builder|Construction Engineer|Pentester inview
Muhammad Farhan @Realmufar
6 Followers 437 Following
01x00x01 @01x00x01
191 Followers 2K Following
tarch @TheoArchimbaud
3 Followers 103 Following
saperlipopette @SaperliRhum
1 Followers 67 Following
h3llbl4ckk @h3llbl4ckk
3 Followers 255 Following
Abdalrhman Mohamed @Abdalrhman91217
18 Followers 98 Following
Ben Sadeghipour @NahamSec
233K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
Sam Curry @samwcyo
97K Followers 1K Following Hacker, bug bounty hunter. Run a blog to better explain web application security.
PentesterLab @PentesterLab
190K Followers 0 Following We make learning web hacking and security easier. Online systems, code review, videos & courses that can be used to understand, test and exploit bugs!
shubs @infosec_au
56K Followers 2K Following Co-founder, security researcher. Building an attack surface management platform, @assetnote
John Hammond @_JohnHammond
298K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
LiveOverflow 🔴 @LiveOverflow
155K Followers 1K Following wannabe hacker... he/him 🌱 grow your hacking skills @hextreeio
James Kettle @albinowax
79K Followers 92 Following Director of Research at PortSwigger aka Burp Suite. Find my research, tools & contact details at https://t.co/vP6UbGmvl3
Paul Seekamp @nullenc0de
17K Followers 608 Following I spend a significant amount of time reading security stuff. Co-Founder/Partner @CoastlineCyber https://t.co/ZQT5L8q2RO
HackerOne @Hacker0x01
324K Followers 3K Following The only official HackerOne Twitter account. A global leader in offensive security solutions. #HackForGood #togetherwehitharder
Justin Gardner @Rhynorater
35K Followers 2K Following Christian | Full-time Bug Bounty Hunter | Host of @ctbbpodcast | Advisor @CaidoIO | 4x LHE MVH | 🗣️ English, 日本語 | ♥️ @mariahchan_ ♥️
Web Security Academy @WebSecAcademy
130K Followers 36 Following Free web security training from @PortSwigger
Jobert Abma @jobertabma
43K Followers 718 Following I tweet about security and my experience as a hacker. Co-founder of HackerOne (@Hacker0x01).
Hack The Box @hackthebox_eu
229K Followers 229 Following #1 Cyber Performance Center, providing a human-first platform to create and maintain high-performing cybersecurity individuals and organizations.
Synacktiv @Synacktiv
20K Followers 271 Following Offensive security company. Dojo of many ninjas. Red teaming, reverse engineering, vuln research, dev of security tools and incident response.
ProjectDiscovery @pdiscoveryio
37K Followers 125 Following Detect real, exploitable vulnerabilities. Harness the power of Nuclei for fast and accurate findings without false positives.
Nicolas Grégoire @Agarri_FR
27K Followers 630 Following Web hacker and Burp Suite Pro trainer Refer to https://t.co/D5tRH7U2hg for trainings Follow @MasteringBurp for free tips and tricks
Geekboy @emgeekboy
25K Followers 452 Following Hacker, Co-Founder @pdiscoveryio, Ex-Security Analyst / BugBounty @Hacker0x01
Snehal Antani @snehalantani
2K Followers 795 Following CEO @ https://t.co/iCeEA2K04F… tweets are my own
Arthur Gervais @HatforceSec
3K Followers 513 Following
Z A D D Y @mercuryheavens
3K Followers 1K Following Security Researcher 👨🏽💻👨🏽💻 | CS Phd Candidate @ucl @uclisec | chef at https://t.co/cjB8Bt8yh4, https://t.co/jLQT9Dh5Yt, ██████ | Crypto | UFC at Night
IRIS C2 @C2IRIS
141 Followers 12 Following The world's most advanced offensive cyber command & control platform
Advance-sec @advance_sec0
762 Followers 705 Following Advance-sec platform: is one of the top leaders in research and acquisition of vulnerabilities and 0day exploits. Email: [email protected] Wire: @advance_sec
Keanu Nys @RedByte1337
897 Followers 74 Following Offensive Security Lead @ Spotit. Creator of GraphSpy
Tim Becker @tjbecker_
2K Followers 349 Following Security Researcher at @theori_io. Flag capturer at @PlaidCTF. Cryptography enjoyer.
Will @BushidoToken
36K Followers 3K Following Senior Threat Intel Advisor @TeamCymru | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | Co-founder @BSidesBournemth | @darknetdiaries #126: REvil
Team Atlanta @TeamAtlanta24
678 Followers 26 Following 🔥AIxCC Winner Team | Georgia Tech, Samsung Research, KAIST, POSTECH | 🚀Building next-gen AI-driven bug finding & fixing systems | CRS Atlantis 🌊
3ndG4me @3ndG4me_
1K Followers 152 Following I hack stuff. CTFs and Reverse Sea 🐚. ⌨️🤠 @dc706_ Co-Founder, OSCP, @PvJRedCell staff, author, maldev, researcher.
MOR DAVID @m0rd4vid
236 Followers 435 Following Cyber Security Expert & Red Teamer with 5+ Years of Experience.
Profundis.io @profundisio
683 Followers 0 Following Mapping the internet - turning DNS/host data into intel for sec teams, OSINT & bug-bounty hunters. Automated recon & real-time alerts.
tylerni7 @tylerni7
5K Followers 633 Following Hacker, scientist, and most things in between. PPP (@PlaidCTF) member for life. @theori_io he/his maybe at @[email protected]
Elliot Belt @Elliot_belt
58 Followers 297 Following Active Directory and Web Pentesting enjoyer 🗿🇫🇷 CTF Player @Phreaks2600
Seth Art @sethsec
1K Followers 374 Following Cloud Security Research and Advocacy @Datadoghq. Previous: Cloud Penetration Testing lead @BishopFox. Also on Mastodon https://t.co/R1KYbwIdme
Michael Weber @BouncyHat
1K Followers 77 Following Security Consultant. Not affiliated with Red Hat. I just like the hat. @[email protected]
Dr. Nestori Syynimaa @DrAzureAD
20K Followers 2K Following Principal Identity Security Researcher at Microsoft. Ex-Secureworks. (MSc, MEng, PhD, CITP, CCSK). And yes, opinions are my own ;)
Jack Cable @jackhcable
14K Followers 916 Following Ethical hacker. CEO & Co-founder @CorridorSecure. Prev: @CISAgov @HSGAC @KrebsStamos @TrustVanta @DefenseDigital. @Stanford CS.
EXPLIoT @expliot_io
2K Followers 145 Following Open Source IoT Security Testing and Exploitation Framework | IoT Security Audit Platform | Hardware Hacking Tools
Soroush Dalili @irsdl
20K Followers 909 Following Hacker (ethical), web appsec specialist, trainer, tools builder & apps breaker, @SecProjectLtd founder 🕸️https://t.co/YipuTcYnWc🥷 🍏A dad-joke maker🍐
MSec Operations @MSecOps
1K Followers 1 Following
Scott Piper @0xdabbad00
19K Followers 317 Following https://t.co/EXe2MI2DLm Cloud security historian. Developed https://t.co/ZXFwkuxUp4, CloudMapper, and Parliament. Organizer for @fwdcloudsec. Researcher at @wiz_io ✦
William Knowles @william_knows
1K Followers 3 Following
MDSec @MDSecLabs
15K Followers 0 Following Consultancy and Training from a trusted supplier of offensive security. Red Team and Adversary Simulation by ActiveBreach team | https://t.co/fqpbJ9WDXD | https://t.co/UvOhGA4Zou
Atredis Partners @Atredis
3K Followers 1K Following Atredis is a 100% worker-owned team of world-class security researchers and consultants. We do risk-centric, research-driven security testing and consulting.
RedDrip Team @RedDrip7
16K Followers 29 Following Technical Twitter of QiAnXin Technology, leading Chinese security vendor. It is operated by RedDrip Team which focuses on malware, APT and threat intelligence.
Dwyer @_Dwyer_
3K Followers 370 Following Threat research is the name of my game. I know enough to know that I have a lot to learn. opinions are my own
Mark Simos @MarkSimos
6K Followers 379 Following Simplify and clarify • Cybersecurity architecture and strategy • Business + Security Alignment • Make the world better @markasimos.bsky.social
Fabian Bader @fabian_bader
9K Followers 813 Following #Security #Azure #AAD #MDE #M365 #AD #PKI Microsoft MVP Tweets and opinions are my own @[email protected]
Worty @_Worty
3K Followers 555 Following Organizer of @HeroCTF || ctf w/ @FlatNetworkOrg || TeamFR 2021, 2022 & 2025 🇫🇷 || 🥷 @Synacktiv
Calum Hall @_calumhall
950 Followers 336 Following Co-Founder of Phorion 🔍| Threat Detection and Response Manager at GitHub 👨💻| macOS researcher 🍎 | BlackHat speaker 2021 📢 Opinions are my own
Coincidence @CoincidenceTeam
2K Followers 1 Following Coincidence is a cooperative game studio created by ex-Zachtronics developers. Zach Barth is no longer teaching high school and is making games again.
slonser @slonser_
4K Followers 163 Following Co-Founder @neploxaudit. CTF team @C4TBuTS4D Security Researcher at Solidlab.
Seth Jenkins @__sethJenkins
2K Followers 116 Following Project Zero Security Researcher - Hang glider pilot - Jesus Follower @[email protected]
Shadow_gatt @shadow_gatt
80 Followers 179 Following
Thomas Stacey @t0xodile
510 Followers 209 Following Penetration tester trying to perform novel research. You can find all of my write-ups and research at https://t.co/2chUIHJDeP.
Laurent Cheylus @lcheylus
3K Followers 3K Following Mastodon: @[email protected] Cybersecurity Linux BSD - Lyon addict Tweets in French and English
Nate Anderson @NateHindenburg
74K Followers 1K Following Personal account. Check @hindenburgres for the research, come here for the color commentary. All opinions, all opinions my own.