Shmuel Cohen @_BinWalker_
Former Security researcher @SafeBreach | Former malware researcher @_CPResearch_ | 3x BlackHat speaker | DEFCON speaker | SecTor speaker Joined September 2018-
Tweets81
-
Followers248
-
Following243
-
Likes299
Our research on BitLocker got nominated for not one but TWO Pwnie Awards - “Best Desktop Bug” and “Most Innovative Research”! Happy for the 3rd Pwnie Award nomination in two consecutive years @PwnieAwards !
Windows Downdate : Downgrade Attacks Using Windows Updates : safebreach.com/blog/downgrade… Slides : i.blackhat.com/BH-US-24/Prese…
My DEF CON 32 talk “Windows Downdate: Downgrade Attacks Using Windows Updates” is live on YouTube! youtu.be/HHmxuxQ7bE8?si…
If you're into researching Google's Quick Share, don't forget to check out QuickShell! It implements the RCE chain we found and tools allowing to sniff, receive and send the protocol's packets, fuzz the protocol, exploit vulnerabilities we found and more! github.com/SafeBreach-Lab…
It looks like we finally got POC for CVE-2024-38063 Check it out, looks good github.com/ynwarcs/CVE-20…
Had the best time presenting Windows Downdate at @BlackHatEvents USA and @defcon 32, thank you all for joining. Windows Downdate is now live! Blog - safebreach.com/blog/downgrade… GitHub repo - github.com/SafeBreach-Lab… #BHUSA #DEFCON32
I had the best time presenting QuickShell with @_BinWalker_ at @defcon !! 👨💻🥷 True enthusiasts in this conference you just can't ask for a better audience as a speaker Blogpost is live - safebreach.com/blog/rce-attac… And don't forget to check out the tool - github.com/SafeBreach-Lab…
Reminder: tomorrow at @BlackHatEvents 10:20 AM in Oceanside A - I will be sharing my journey of researching downgrade attacks on Windows and their severe implications on Windows’s platform security. Join my talk “Windows Downdate: Downgrade Attacks Using Windows Updates” #BHUSA
ProcessHacker is now called SystemInformer, and it looks just amazing with lots of new features. Make sure you check it out if you use the old ProcessHacker: github.com/winsiderss/sys…
The MagicDot concepts won't disappear from Windows soon. In addition to reading MagicDot's blogpost, if you aim to find vulns based on the known unfixed issue, don't miss @tiraniddo 's blogpost about Windows path types and their convertion to NT paths - googleprojectzero.blogspot.com/2016/02/the-de…
⚠️Windows users, watch out! Researchers detail a #vulnerability in the Windows DOS-to-NT path conversion process which can be exploited by threat actors to gain rootkit-like capabilities, hiding files and processes without admin permissions. thehackernews.com/2024/04/resear… #hacking
Make sure you read this cool article about my recent research "The dark side of EDR: repurpose EDR as an offensive tool"
Make sure you read this cool article about my recent research "The dark side of EDR: repurpose EDR as an offensive tool"
Make sure you check out this amazing research made by @oryair1999
Make sure you check out this amazing research made by @oryair1999
#BHASIA Briefing "The Dark Side of EDR: Repurpose EDR as an Offensive Tool" will dive into the implications of this novel attack vector, shedding light on the intricate relationship between attackers and XDR. Learn more about the talk and register here>> bit.ly/3x2dB3d
EDRaser. powerful tool for remotely deleting access logs, Windows event logs, databases, and other files on remote machines github.com/SafeBreach-Lab…
I am thrilled to share some exciting news with you all! I have been accepted to present not just one, but TWO of my research projects at Black Hat Asia 2024 (@BlackHatEvents)! 🚀 Check out all briefings: blackhat.com/asia-24/briefi… #BHAsia #BlackHat #CyberSecurity
Had a great time presenting my research about the creation of the PoolParty tool at Black Hat EU 2023 @BlackHatEvents 🎩 Thank you all for joining! PoolParty is now live at - github.com/SafeBreach-Lab… PoolParty research blogpost is now live at - safebreach.com/blog/process-i… #BHEU
Learn how I proved I can undetectably run a crypto miner for free using Azure Automation service: safebreach.com/blog/cryptocur… Github: github.com/safebreach-lab… Microsoft said it's "By design" meaning it is still exploitable. ⚠️Azure's terms of use do not permit crypto mining

0x2e3635 @XLPMSFT65
134 Followers 4K Following Dad | Husband | Gen X | Msft Windows AD Support | Azure Administrator | Programmer | Cybersecurity | 🇪🇸
arip petits @AripPetits
6 Followers 1K Following
o-sec @osec403
9 Followers 120 Following
Madhukar Waghmare @MadhukarWa29819
5 Followers 140 Following
GCU Tense Correction @tensecorrection
1K Followers 480 Following 🗡️🇨🇦🔪 I am a student of the language of the people of the land of the sun, the moon, and the stars.
adamm @adamsimuntis
445 Followers 577 Following Occasionally CTFs with @justCatTheFish & @AIgenerated1
nuyo4h @nuyo4h
0 Followers 2K Following
Andrew Fox @AndrewF75815113
8 Followers 264 Following
Karma 🌐 @Im_Karmaa
107 Followers 518 Following
yperry @YishayPerry
5 Followers 39 Following
Adan @AdanRosler
16 Followers 274 Following
404 @403BAC
5 Followers 336 Following
infosecStudent @infosecstudent
177 Followers 1K Following Lifelong security learning, helping others make the world a more secure place.
Zolpidem Zoidberg @ZlpdmZdbrg
126 Followers 1K Following
Dhanush @Dhanush40257016
2 Followers 54 Following
imjxy @imjxy6
2 Followers 92 Following
hasherezade @hasherezade
89K Followers 910 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)
Pablo Lecavalier-Ruiz... @RuizLecavalier
146 Followers 43 Following Entrepreneur| MLOps |Compositeur québécois
Hamza Ayub @ayub614404
6 Followers 227 Following
Perez @AdriCSsss
3 Followers 277 Following
zoharbuber @zoharbuber
35 Followers 2K Following
^.Übermensch @_foobarr
24 Followers 2K Following
Venkatesh Konar @VenkateshKonar9
44 Followers 492 Following
Meruem @Meruem49839142
169 Followers 8K Following
Haluk YAMANER (Хал... @halukyamaner
137 Followers 2K Following 🇹🇷 Founder of Future Software UAE 🇦🇪 ☆ https://t.co/sYHfEXQwsX ☆ https://t.co/fYB77sI7gm
Smadj @elismadja
65 Followers 188 Following
🦉🦉🦉 Nina Ngo... @pink_girl_0x0
355 Followers 4K Following Prompt engineering | Cybersecurity Enthusiatic Rug pull survivor turned scamcoin detective. https://t.co/pPGBZtgGzv https://t.co/auXQPTFfnN
Alexandr Sh @shuraGlyph
78 Followers 863 Following programming, reversing. c, asm, python. x86, arm, pic. BSUIR ... NeroElectronics ... CheckPoint
S @sahsaifi
38 Followers 2K Following
Lebowski @cr4ckerwhite
10 Followers 149 Following #cybersecurity #threathunting #phishfisher @infosec catch #phish, eat #malware, chup #scammers
土星 天王 @inner_net
7 Followers 207 Following
ɘɿuɔɐɿɈ @tiersigma
655 Followers 8K Following defenders think in lists.attackers think in graphs. as long as this is true, attackers win. ---sanity through retrowave™--- ---wannabe schwachstellenjaeger---
VoidTea @its_void_tea
24 Followers 698 Following
Joshua J. Drake @jduck
28K Followers 2K Following Securing the future through modern technology. Founder and Software Security Specialist at @magnetitesec
bluerust @bluerust
202 Followers 1K Following
Quang Nguyen @sovietw0rm
796 Followers 6K Following
Gili Raanan // Cybers... @giliraanan
5K Followers 318 Following Cyberstarter. ex-partner @sequoia. Investor @wiz_io @cyera_io @island_io @fireblockshq @armissecurity
Trend Zero Day Initia... @thezdi
83K Followers 16 Following Trend Zero Day Initiative™ (ZDI) is a program designed to reward security researchers for responsibly disclosing vulnerabilities.
Binary Gecko @Binary_Gecko
1K Followers 1 Following Binary Gecko GmbH. Custom Security Research Solutions. Organisers of @offensive_con.
b33f | 🇺🇦✊ @FuzzySec
33K Followers 1K Following 意志 / Antiquarian @ IBM X-Force / t501 / Ex-TORE ⚔️🦅 / I rewrite pointers and read memory / AI Psychoanalyst / Teaching @CalypsoLabs
Yuki Chen @guhe120
10K Followers 281 Following 古河, Indepent security researcher, Bug bounty, ACG Otaku, Pwn2Own 15/16/17, PwnFest16,TianfuCup 18/19/20, 5 times MSRC MVR yearly Top 1. Got two pwnie awards.
Wisdom @Wisdom_HQ
983K Followers 10 Following Philosophy, Psychology, Motivation. Learn From The Wisest & Smartest Men Who Ever Lived On Earth
Mitja Kolsek @mkolsek
4K Followers 705 Following CEO of ACROS Security; Co-founder of 0patch (https://t.co/XQ9EYMnQYX) Bluesky: https://t.co/HhsFBafHK0 Mastodon: @[email protected]
ptr-yudai @ptrYudai
6K Followers 350 Following 🍣🍣🍣 https://t.co/5OmzwCTPea 🍣🥺🍣 @zer0pts の猫 🐯 🍣🍣🍣 https://t.co/5OmzwCTPea Japanese Sushi Hacker (I turn off notification of every SNS/email due to notification anxiety.)
עמית סגל @amit_segal
858K Followers 42 Following Follow in ENGLISH - @amitsegal פרשן פוליטי | חדשות 12 וישראל היום | אבא של עברי, ענר ואליענה | ירושלים הבירה 🇮🇱
Tips For Men - Fashio... @tipsformenx
628K Followers 24 Following Lifestyle | Inspiration | Outfit Ideas | Grooming
UpSkillYourLife @UpSkillYourLife
982K Followers 79 Following Create yourself and stop living on autopilot.
James Forshaw @tiraniddo
49K Followers 339 Following Security researcher in Google Project Zero. Author of Attacking Network Protocols. Tweets are my own etc. Mastodon: @[email protected]
Reverse Engineering a... @re_and_more
15K Followers 521 Following RE and More by Alexey Kleymenov (https://t.co/s1pWjL46AW). Private classes and group workshops in malware analysis and reverse engineering. #infosec #malware
Mark Ermolov @_markel___
12K Followers 130 Following I research security of Intel platforms. I don't work for Intel
Alisa Esage Шевч�... @alisaesage
38K Followers 101 Following Independent Hacker & Researcher, Owner of Zero Day Engineering @zerodaytraining • Pronounced ‘is edge’
CVE @CVEnew
56K Followers 3 Following Official account maintained by the CVE™ Program to notify the community of new CVE IDs. Posts contain abbreviated details. Full CVE Records on https://t.co/ALn4YvUtom
albina @enjojoyy
10K Followers 3K Following lead devrel @MasumiNetwork | prev @Trezor | @EthGlobal finalist | bci/acc
RussianPanda 🐼 �... @RussianPanda9xx
15K Followers 523 Following Меня ищет МВД 🚔 | Threat Hunter @HuntressLabs | TRACLabs | Malware Addict | DFIR
Hollie Hennessy @HollieHennessy
5K Followers 737 Following Lead Analyst covering IoT and OT Cybersecurity. London. Foodie. Classicist. Views are my own.
Tal Be'ery @TalBeerySec
10K Followers 2K Following Security Research Manager. Co-Founder, CTO @ZenGo. Advisor @ZeroNetworks. x-VP Research Aorato, acq by @Microsoft. 9 times @BlackHatEvents speaker.
ohad bar-eli @ohadbareli
30 Followers 51 Following
Piotr Bazydło @chudyPB
4K Followers 307 Following Principal Vulnerability Researcher at watchTowr | Previously: Zero Day Initiative | @[email protected]
sakura @eternalsakura13
8K Followers 190 Following Lead Security Researcher @zellic_io. 2022-2024 Top 3 Chrome VRP. 2023 Top 2 Facebook Whitehat. 2025 MSRC MVRs 9th. BlackHat Asia/USA & Zer0Con speaker.
ic3qu33n @nikaroxanne
2K Followers 206 Following reverse engineer | hacker | vx artist | malware witch | my artistic process is a daemon process. @[email protected]
David Kaplan @depletionmode
3K Followers 526 Following Security Research. Opinions and private research are my own Lover of all things JSR $F7D7 💪🇮🇱 עם ישראל חי
Boaz Maoz @boazmaoz
1K Followers 1K Following Managing Director, Google Cloud Israel. Tweets are my own
1377 High-yield Nukes @buptsb
2K Followers 1K Following
DirectoryRanger @DirectoryRanger
35K Followers 96 Following This account assembles and disseminates information related to Active Directory and Windows security.
x86matthew @x86matthew
21K Followers 189 Following C / asm / system emulation / reverse engineering. @the_secret_club
j00ru//vx @j00ru
37K Followers 826 Following (Mostly) Windows hacker & vulnerability researcher. Google Project Zero. @DragonSectorCTF