dru1d @_dru1d
Husband. Hacker. Adversary Simulation team lead. OSCP. blog.dru1d.ninja 127.0.0.1 Joined September 2009-
Tweets2K
-
Followers934
-
Following2K
-
Likes15K
@signalapp @1Password @SlackHQ @googlechrome The attack: override JavaScript builtins in v8_context_snapshot.bin. When apps use these builtins during normal operation, malicious code executes. Code integrity checks miss this, since snapshots are not considered executable. blog.trailofbits.com/2025/09/03/sub…
Best Citrix Breakout ever. You can only download .ica files that provide access to certain local applications but breakout out of these applications is not possible? Just modify the .ica file before starting it and remove The InitialProgram= value -> Full Citrix Session! 🤓
Excited to be presenting "Keep COM and Hijack On: Redefining Windows Session Hijacking" at Black Hat Arsenal Europe this December. Looking forward to connecting with many of you there! 🤟 blackhat.com/eu-25/arsenal/…
Fixed the issue in Koppeling, was missing a single line of code to fix up the RVA of the Name field within the IMAGE_EXPORT_DIRECTORY struct github.com/monoxgas/Koppe…
Fixed the issue in Koppeling, was missing a single line of code to fix up the RVA of the Name field within the IMAGE_EXPORT_DIRECTORY struct github.com/monoxgas/Koppe…
WARP speed ahead! Want to learn more about the future of function matching in Binary Ninja (and hopefully your other favorite tools too!)? Mason talks about that and more in our latest blog post: binary.ninja/2025/08/22/war…
@NathanMcNulty Intune be like
I Just documented a cool way to authenticate proxied tooling to LDAP in an AD environment using C2 payload auth context, without stealing any tickets or hashes! Keep tooling execution off-host and away from EDR on your Red Team assessments! specterops.io/blog/2025/08/2…
I automated the POC for stealing policies from MP relays from this blog into a modified version of mssqlclient specterops.io/blog/2025/07/1… would work too with any other piv account to the DB github.com/garrettfoster1… (no PR because impacket doesnt merge, sorry)
if you want to train a model yourself with GRPO: 1. find a verifiable task: jasonwei.net/blog/asymmetry… 2. add a new reward function to open-r1: github.com/huggingface/op…
if you want to train a model yourself with GRPO: 1. find a verifiable task: jasonwei.net/blog/asymmetry… 2. add a new reward function to open-r1: github.com/huggingface/op…
He’s not on X anymore, but Mike (GitHub: alfarom256) has a new post on how he developed his own tooling to abuse JDWP. malicious.dev/posts/jdwp/
At long last - Phrack 72 has been released online for your reading pleasure! Check it out: phrack.org
Everywhere I look Factor_ meals sit outside homes baking in the sun
I had a blast learning and working through some cool bug classes! It turns out the FAFO method can be useful for learning new things. 😂
I had a blast learning and working through some cool bug classes! It turns out the FAFO method can be useful for learning new things. 😂
i love how software was trending towards being more secure. more sanitizers shipping with clang. more software being written with memory safety in mind. then: vibe coding enters the arena
PDQ SmartDeploy versions prior to 3.0.2046 used static, hardcoded encryption keys for cred storage. Low-privileged users could potentially access admin creds from registry or deployment files. @unsigned_sh0rt unpacks his testing in his latest blog post. ghst.ly/4mjyuvw
EDR vendors secure their sales pipelines but neglect monitoring GitHub for exposed installer tokens -leaving customers vulnerable to abuse and over-licensing. Adversaries likely exploit these tokens to build sandboxes for payload testing. Here are search patterns to help…
WSFC misconfigurations can turn your domain into one big fustercluck. I'm sharing fustercluck today as part of my #BHUSA presentation. The README summarizes the issues and a detailed blog is coming soon. github.com/garrettfoster1…
My presentation starts in 20 minutes! Oceanside C level 2. Hope to see you there! #BHUSA
I pushed updates to SCCMHunter as part of my Arsenal demo at #BHUSA today! New features include a relay module for TAKEOVER-5 and a community contribution to coerce client push from a *nix host for ELEVATE-2. github.com/garrettfoster1….
👋 Say hello to Nemesis 2.0, a streamlined, Docker Compose-based platform that is laser-focused on file triage. After introducing v1 two years ago, the team has reworked the platform to better serve what people need from it. Read more from @harmj0y. ⤵️ ghst.ly/4mxQzFU

Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
chompie @chompie1337
83K Followers 1K Following hacker, weird machine mechanic, X-Force Offensive Research (XOR)
John Hammond @_JohnHammond
298K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
Battle Programmer Yuu @netspooky
20K Followers 1K Following knuck if you buck 日本語/español OK (he/they) @tmpout @binarygolf @[email protected] (fedi) @ https://t.co/mZ77OENytt (bsky)
n00py @n00py1
13K Followers 963 Following Retweeter of InfoSec/Offsec/Pentest/Red Team. Occasional blogger/Independent security research.
Phillip Wylie @PhillipWylie
52K Followers 20K Following xIoT Security Evangelist @phosphorusinc | Offensive Security Expert | Phillip Wylie Show Podcast Host @thehackermaker | @pentesterblue coauthor
Jean @Jean_Maes_1994
12K Followers 1K Following @sansoffensive Certified instructor/SEC565 author/SEC699 co author
Kαι @0xUrbanWolf
17K Followers 277 Following I never brag how real I keep it, cuz it's the best secret — Nas, Take It In Blood
Dr. Nestori Syynimaa @DrAzureAD
20K Followers 2K Following Principal Identity Security Researcher at Microsoft. Ex-Secureworks. (MSc, MEng, PhD, CITP, CCSK). And yes, opinions are my own ;)
Upper Paleolithic Hog... @TchCrayon
1K Followers 2K Following give a bee a tiny blindfold & just see what it does - 28 - zealot of falconry
J⩜⃝mie Williams @jamieantisocial
10K Followers 7K Following threats && stuff || #UNC1799 forever 🤘|| @DistrictHeather ♥️ + 🍷 **𝚅𝚒𝚎𝚠𝚜 𝚎𝚡𝚙𝚛𝚎𝚜𝚜𝚎𝚍 𝚊𝚛𝚎 𝚖𝚈 օ𝚠𝚗**
EvilMog® @mog.evil.a... @Evil_Mog
17K Followers 2K Following Hacker, Team Hashcat, Bishop of the Church of Wifi, Uber Badge Collector. Views != Employers. Not a Ph.D, Recycled Memes,
Nikhil @Ox4d5a
18K Followers 1K Following Penetration Tester | i XCHG 0's 1's and do hacks | Red Team Sorcery https://t.co/6LUhkvN2hz | #eJPT | #OSCP | #CRTP | #CRTA | #CESP | #CRTE
Sheri @sheri_soderberg
316 Followers 3K Following
Anita @anita51elliott
308 Followers 3K Following
Wanda @brewerwanda93
268 Followers 3K Following
Sellebjergen @Sellebjergen1
1 Followers 60 Following
ישי @IshayT6
2 Followers 692 Following
Keahu @Keahu465551
89 Followers 2K Following
srt0th anubiaxiom @srt0th
44 Followers 27 Following ✦ Sr. T0th ✦ For accessibility. For human rights. For disabled people. We rise against those who silence us. We are Anonymous. We are Legion.
droogie @droogie1xp
1K Followers 347 Following degen | ♠️♥️♣️♦🐸 infosec thoughtcrime leader la/li/lu/le/lo
Liteid @Liteid1
9 Followers 804 Following
Hannah Berg @tmfunc8763
17 Followers 365 Following
mohamed nabil @mohamednab32745
2 Followers 53 Following
Hoang Tien Thanh @htthanh02
2 Followers 172 Following
Aan @petruknisme
681 Followers 2K Following Red Teamer • OSINT Researcher • Rust • Offensive Tool Developer
saddam hossain @saddamBD25
21 Followers 579 Following
souhaib @souhaib17273415
4 Followers 448 Following
Tiki @TikiSec
102 Followers 1K Following Infosec beach bum. Tiki bars, cyber and everything in between.
Maestro @_rootsh
247 Followers 310 Following Taking lightning and sticking it in a rock until it learns to think
AppSec Village @AppSec_Village
11K Followers 6K Following AppSec Village @DEFCON & @RSAConference A volunteer-run, non-profit focused on education, awareness, and community. Founded by @erezyalon and @tzionit411.
aws @amazon_web_slut
2 Followers 84 Following
BLΛDE ☠ @fs0x30
4 Followers 2K Following Red Team Ops | Mal Dev & RE | Vuln Research & Exploit Dev ⚔️
abel stuker @astukra
35 Followers 203 Following
Richard Johnson @richinseattle
18K Followers 3K Following Computer Security, Reverse Engineering, and Fuzzing; Training & Publications @ https://t.co/mloVP6rPB7; hacking the planet since 1995; Undercurrents BOFH
mxmc @m_x_m_c
18 Followers 3K Following
Spencer Walden @__Masq__
777 Followers 4K Following Principal Cyber Threat Analyst @Centene #cti #ctf #blueteam #dfir #malware #netsec #infosec
Luke Jahnke @lukejahnke
3K Followers 6K Following
Advance-sec @advance_sec0
765 Followers 705 Following Advance-sec platform: is one of the top leaders in research and acquisition of vulnerabilities and 0day exploits. Email: [email protected] Wire: @advance_sec
soutag @soutagx86
60 Followers 512 Following aaaaaaaaaaaaaaaaaabbbbbbbbv mostly websec blog : https://t.co/orahW4iR1r
Hackem Cybersecurity ... @hackem
4K Followers 5K Following Consultoría y Capacitación en Ciberseguridad, Ethical Hacking / Pentesting, Forense y Software Libre. #Cybersecurity #Hacking #Pentesting #CEH #OSCP #Forensics
AbuMuslim (أبومُ... @m19o__
8K Followers 2K Following Just another OffSec geek. Speaker at Black Hat, IEEE, BSides & RE:HACK. Organizer of BSidesABQ & OWASPCairo. Building @CyberDose_
Anton Dewitz @AntonDewitz
37 Followers 1K Following
PossumSec @0xPossumSec
44 Followers 1K Following
0x2A Security @0x2asec
49 Followers 956 Following Security: the answer to the ultimate question of life, the universe, and everything.J'onn J'onzz @leinn32
393 Followers 964 Following Security engineer, Historian, Researcher at huskysec, I like mobile applications
J0ey @J0eyhacks
82 Followers 460 Following Other than messing with gibsons🧑🏻💻, I nerd, fight, and jump. Unlike the real Joey.
znd @zinedlabs
399 Followers 1K Following
𝓙𝓪𝓬𝓴2 @2RunJack2
1K Followers 3K Following #ThreatIntel Researcher @S2W_Official @TALON_INTEL Main Author of Threat Intel Report 'Campaign DOKKAEBI : Documents of Korean and Evil Binary' / Formerly FSI
Jesse Michael @jessemichael
1K Followers 1K Following
random @random22334
1 Followers 1K Following
vx-underground @vxunderground
368K Followers 290 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Dave Kennedy @HackingDave
223K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
chompie @chompie1337
83K Followers 1K Following hacker, weird machine mechanic, X-Force Offensive Research (XOR)
Vincent Yiu @vysecurity
29K Followers 308 Following Director, Red Team, Offensive Security. Help organizations safeguard their businesses from the bad guys.
Filip Dragovic @filip_dragovic
7K Followers 1K Following My research unless stated otherwise. My opinions are my own and do not represent the views of my employer.
Jack Rhysider 🏴... @JackRhysider
164K Followers 4K Following Creator of @DarknetDiaries. Tell me a good hacker story. 💻🔦⤵️🐰🕳️ Discord: https://t.co/qxanMuJ5X2
John Hammond @_JohnHammond
298K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
Adam Chester 🏴�... @_xpn_
36K Followers 501 Following Hacker for Hire at @SpecterOps | Blog at https://t.co/tjfTOllCEu | Insta at https://t.co/PqR6CZPwjl
rootsecdev @rootsecdev
26K Followers 1K Following Senior Security Consultant @TrustedSec | Military grade meme poster, researcher, cloud penetration tester, voider of warranties. My thoughts are my own.
mgeeky | Mariusz Bana... @mariuszbit
14K Followers 812 Following 🔴 Operator, Initial Access afficionado, Researcher, ex-AV engine developer, ex-Malware analyst 🦋 @mgeeky.bsky.social 🫖 green tea lover
Mike Felch (Stay Read... @ustayready
16K Followers 2K Following Targeted Ops Red Team @ TrustedSec | Hacking since Renegade BBS backdoors | Prior CrowdStrike/BHIS | In Christ's grip | I speak for myself only | K1HAQ
Battle Programmer Yuu @netspooky
20K Followers 1K Following knuck if you buck 日本語/español OK (he/they) @tmpout @binarygolf @[email protected] (fedi) @ https://t.co/mZ77OENytt (bsky)
n00py @n00py1
13K Followers 963 Following Retweeter of InfoSec/Offsec/Pentest/Red Team. Occasional blogger/Independent security research.
Thomas Roccia 🤘 @fr0gger_
31K Followers 2K Following AI Security x Threat Intel · Sr. Threat Researcher @Microsoft · Creator of #Unprotect & #NOVA · Malware Warlock · Python 🧡 · Prev @McAfee_Labs · Views mine 😈
Jake Williams @MalwareJake
142K Followers 2K Following Breaker of software | VP R&D @hunterstrategy | CTI/DFIR | @ians_security faculty | Bookings: jake at malwarejake dot com | GSE #150 | He/him
Rad @rad9800
9K Followers 540 Following irrational. founder. building solutions to secure organizations. @deceptiq_
シャポコ🌵 @shapoco
36K Followers 2K Following 絵を描く、電気で遊ぶ、通知を無視する| 同じ名前で Misskey\.io、Bluesky、mixi2 にも| お題箱: https://t.co/TcgjTuG4wh
Check Point Research @_CPResearch_
23K Followers 119 Following Fighting cyber threats one research at a time. News from Check Point’s (@checkpointSW) Research team.
𝓦𝓲𝓵𝓵𝔂�... @WillyMacShow
38K Followers 845 Following For Business Inquiries email [email protected] | Need a PC? Use Code WILLY @MetaPCs https://t.co/OKGlnzaB3d | react to my vids idc :)
db @whokilleddb
1K Followers 500 Following Maldev @bhinfosecurity | Finding increasingly stupid ways to do simple things
rev.ng @_revng
5K Followers 4 Following Building the next generation decompiler. Binary analysis is a dish best served static.
Rattler Innovations @RattlerInnovLLC
5K Followers 222 Following Small Business based in Elgin, TX. 🇺🇸 We sell reusable spray paint stencils for your favorite camouflage patterns. Unapologetically Pro 1A / 2A.
creature @voidXway
3K Followers 498 Following
Back Engineering Labs @BackEngineerLab
1K Followers 4 Following Developing https://t.co/FGFRjFl0ql Discord: https://t.co/EeXwaigjlI
AppSec Village @AppSec_Village
11K Followers 6K Following AppSec Village @DEFCON & @RSAConference A volunteer-run, non-profit focused on education, awareness, and community. Founded by @erezyalon and @tzionit411.
Richard Johnson @richinseattle
18K Followers 3K Following Computer Security, Reverse Engineering, and Fuzzing; Training & Publications @ https://t.co/mloVP6rPB7; hacking the planet since 1995; Undercurrents BOFH
Spencer Walden @__Masq__
777 Followers 4K Following Principal Cyber Threat Analyst @Centene #cti #ctf #blueteam #dfir #malware #netsec #infosec
Hackem Cybersecurity ... @hackem
4K Followers 5K Following Consultoría y Capacitación en Ciberseguridad, Ethical Hacking / Pentesting, Forense y Software Libre. #Cybersecurity #Hacking #Pentesting #CEH #OSCP #Forensics
Luke Jahnke @lukejahnke
3K Followers 6K Following
droogie @droogie1xp
1K Followers 347 Following degen | ♠️♥️♣️♦🐸 infosec thoughtcrime leader la/li/lu/le/lo
scriptjunkie (Matt) @scriptjunkie1
7K Followers 1K Following Documentation is lies. Source is an abstraction. Assembly is the truth. Also at https://t.co/VYFZ0HHnQn and nostr npub10mx0gx3r2lszrrut8kvr5mt2m8r9ffhn
𝓙𝓪𝓬𝓴2 @2RunJack2
1K Followers 3K Following #ThreatIntel Researcher @S2W_Official @TALON_INTEL Main Author of Threat Intel Report 'Campaign DOKKAEBI : Documents of Korean and Evil Binary' / Formerly FSI
malware Owl @malware_owl
129 Followers 217 Following Entering the world of Malware (◎▼◎) =========== Since August 2022. Opinions expressed are my own and not those of my employer
Low Level @LowLevelTweets
39K Followers 1K Following 🛠 senior security engineer @ bigcorp 🧙♂️ offensive security specialist 🏴☠️ hacker 📸 internet person: teaches hacking and security at https://t.co/WmlAkKGCmc
Lonely Hackers Club @L0nelyH4ckers
2K Followers 70 Following
Mark Rowe @bdash
625 Followers 110 Following Pinball, pinball, pinball. And some computer security nonsense too. https://t.co/4NkQsMtiG6
Chris Rose @WhatsACreel
973 Followers 1 Following
Piotr Bazydło @chudyPB
4K Followers 307 Following Principal Vulnerability Researcher at watchTowr | Previously: Zero Day Initiative | @[email protected]
Matt Linton @0xMatt
7K Followers 772 Following #DFIR with a lot of focus on the IR part. Cellist, NASA Alum, Parrot lover, USAR & EMS do-er. BlueSky is @amuse.bsky.social
William Burgess @joehowwolf
2K Followers 4K Following Ex-theoretical physicist, currently terrible hacker and wannabe security researcher. Views are, regrettably, my own. Likes = bookmarks
HolidayKirk @HolidayKirk
12K Followers 609 Following ceo of nu-metal // admin: @numetal_moment / editor-in-chief @numetal_agenda / https://t.co/hxQczm2ioC // "the godson of nu metal” - Ross Robinson
0patch @0patch
8K Followers 225 Following Microscopic cures for big security holes. 0patch (pronounced 'zero patch') Bluesky: https://t.co/js7yaM3lqN Mastodon: @[email protected]
James @James_inthe_box
22K Followers 464 Following
Is Now on VT! @Now_on_VT
4K Followers 788 Following Stay ahead of cyber threats. Get real-time alerts on notable APT/FIN/ORB indicators from VirusTotal. A threat intel project by @craiu.
Two Seven One Three @TwoSevenOneT
2K Followers 1K Following Chief Security Officer (CSO) || Security Researcher at https://t.co/YsorB5YEAu || Penetration Tester || Red Teamer || Social Engineering Awareness Trainer
Seamus Hughes @SeamusHughes
68K Followers 6K Following Current: @NCITE_COE — I read a lot of court records because I like a good story. Won a Pulitzer that one time. “A well-known PACER watcher” - Justice Department
DHH @dhh
554K Followers 131 Following Father of three, Creator of Ruby on Rails + Omarchy, Co-owner & CTO of 37signals, Shopify director, NYT best-selling author, and Le Mans 24h class-winner.
Ched "cheddar" 🧀�... @CheddarB0b42
2K Followers 3K Following day: helping students | night: homelab mad scientist | TryHackMe extremist (according to L-nkedIn automation) | personal views only https://t.co/lCaJ3wtNXe
William Knowles @william_knows
1K Followers 3 Following
Channel Awesome @ChannelAwesome
69K Followers 199 Following Official Twitter for Channel Awesome & Nostalgia Critic YouTube - https://t.co/zwOSIhd2tE Twitch - https://t.co/51MIqvFQr4 Instagram - https://t.co/sOAPCYqiRL