fromheroto... @_mzer1221
Joined March 2016-
Tweets28
-
Followers41
-
Following198
-
Likes142
💎🔨 Exploiting Hardened .NET Deserialization: New Exploitation Ideas and Abuse of Insecure Serialization, by Piotr Bazydło (@chudyPB)
Riding the inforail to exploit #Ivanti Avalanche: @chudyPB provides details on several bugs he found in the popular MDM tool. He goes in-depth on root cause, including a video of one of the bugs in action. Read all about it at zerodayinitiative.com/blog/2022/7/19…
Our research on @IBM Password Sync Plugin for Windows AD was recognized in their Security Bulletin ibm.com/support/pages/… PoCs for our findings: LDAP Injection/account takeover blog.stmcyber.com/vulns/cve-2021… Memory corruption - stack/heap blog.stmcyber.com/vulns/cve-2021… blog.stmcyber.com/vulns/cve-2021…
Intel finally fixed the CPU bug our XAAS challenge from #confidence2020 was based on 😀. You can find our writeup and exploit at github.com/p4-team/ctf/tr… and Intel's advisory at intel.com/content/www/us…. We originally got the idea from @trav_downs' research: travisdowns.github.io/blog/2020/05/1…
Recently I have created new xss challange (xss_2). For brave enough here's the link: elusivefox.net/challenges/xss…
Returning root to userland - quick journey for the weekend - FYI - code610.blogspot.com/2021/04/return…
For all those who want to start their #cybersecurity career path and become a professional #pentester.
Escaping VirtualBox 6.1 (Part 1) : secret.club/2021/01/14/vbo… credits @jonasLyk VirtualBox VM Escape 0day : Most Difficult Way To Launch a Calculator : youtu.be/mjKxafMbpS0
I've released NAT Slipstreaming, a spooky new technique that allows an attacker to remotely access any TCP/UDP service bound to a victim machine, bypassing the victim’s NAT/firewall, just by the victim visiting a website. samy.pl/slipstream/ Happy Halloween!
CVE-2020-16938 - aka bits please! So...recent update changed the permissions on partitions and volume device objects, granting everybody read access. This means that by opening the device directly you can read the raw data without any privs. 7zip parses NTFS so super for POC
Three more #CVEs from @chudyPB to the collection! CVE-2020-13169 Multiple Stored XSS in #SolarWinds Orion Platform, CVE-2020-6370 XSS vuln. in #SAP #NetWeaver, CVE-2020-6371 #Information disclosure in SAP #NetWeaver AS ABAP via the #POWL Test Feeder endpoint. Congratulation!
Found a new .NET deserialization gadget in System[dot]Drawing[dot]Design[dot]dll. Maybe I'll try a pull to ysoserial[dot]NET in the next few days...
I found an interesting #LOLBIN using Windows Update Client (wuauclt.exe) as a loader - blog, pull request to LOLBAS and in the wild sample here dtm.uk/wuauclt/ - I am hoping to finalise some of my work on the methodology I used soon @MDSecLabs so keep your eyes posted.

Talon Lubowitz @lubowitz46322
81 Followers 4K Following
Riskoo @Riskoo1
383 Followers 2K Following
Sp3x @Sp3x11
7 Followers 180 Following
test domain @User2Micro
721 Followers 4K Following
Marta Chiara S. @MartaChiaraS
12 Followers 237 Following Dziennikarz poVIAUniversityCollege i UWr,którym obecnie nie jestem.Moim motorem jest muzyka,taniec,gotowanie, film i kryminał.Sportowiec słaby,kibic najlepszy:)
Altered Security @AlteredSecurity
7K Followers 2K Following Global leader in hands-on learning for enterprise and cloud security education. Join 40000+ infosec professionals from 130+ countries
Jamie G @jamie_sixworks
120 Followers 195 Following CTO of @SiXworks, previously Head of Cyber. Lover of all technology and security things Nat Sec & Defence. Disrupting the paradigm of defence sector delivery.
CyberSecuritySalesMan @CSSalesMan
574 Followers 3K Following Cybersecurity sales-man. I sell the best cyber cyber stuff. Words of wisdom. The most in-depth analysis of the cyber-world. I failed my own Turing test.
_____ @H_ng_an
187 Followers 2K Following
Exodus (josh) @tehEx0dus
996 Followers 3K Following Inner monologue of a misguided sense of humor: cryptography. code, break stuff, policy issues, & numerous misspelling. Founder of @CircleCityCon.
Jirka Vejrazka @JirkaV
473 Followers 984 Following Experienced IT Security guy. Mostly harmless. Days without piping grep into grep: 0
Robert Tomkowski @trodbert
176 Followers 93 Following Software and security engineer. Currently working on his world domination plan as CEO of @hacking_dept and Head of R&D at @stm_cyber. Member of @p4_team.
Jakub Brzozowski @redfr0g_
126 Followers 310 Following XSS and coffee enjoyer @ Nord Security https://t.co/jWOWe8bZ6q
arthusu @ArthusuxD
851 Followers 3K Following Hacking web Pentester PHP coder Linkedin: https://t.co/awweoN7hK6
Xis_one @xis_one
21 Followers 71 Following
Vulhalo @vulhalo
144 Followers 920 Following
Wojciech Reguła @_r3ggi
6K Followers 863 Following iOS/macOS app security researcher & blogger. 🍎 Black Hat / DEF CON / TyphoonCon speaker. Head of mobile appsec @SecuRingPL
polrider @polrider1
10 Followers 213 Following
Hans-Martin Münch @h0ng10
1K Followers 885 Following CEO of MOGWAI LABS GmbH. I play CTF with powerpuffpwn.
Piotr Bazydło @chudyPB
4K Followers 307 Following Principal Vulnerability Researcher at watchTowr | Previously: Zero Day Initiative | @[email protected]
Jakub Sajniak @kubolos231
199 Followers 310 Following Pentesting at @stm_cyber. Playing CTFs with @p4_team | @S™.
Czarna Owca @004ffca
85 Followers 714 Following Scientia potentia est. Trying to do good things in cybersec. #IntelligenceOperations
Natalia Wróbel @NataliaWrbel20
8 Followers 7 Following
./AbOdE @AbOdE_HaK
122 Followers 2K Following
Matisec @M4tisec
51 Followers 186 Following
Przemysław Kowalski @przemyslaw_k1
15 Followers 316 Following
Elusive_Fox @E1u5iv3F0x
62 Followers 132 Following https://t.co/2b9gV83x40 more XSS challenges: https://t.co/rRS5BE0C9y
\x00 CRASHES @michalbeza
103 Followers 1K Following ${191*7} && fuzz the world! ه҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿
DreamITeam @DreamITeam
84 Followers 183 Following Obsługa informatyczna, Outsourcing IT, Opieka Informatyczna, Audyt IT, Wdrożenia i Migracje do Chmury, Microsoft 365 Experts
Michał Ruta @LordRuter
181 Followers 580 Following
Stupid Astronomer @SolarImager
902 Followers 96 Following I do the stupid things so you don't have to, like point a telescope at the sun! Do not do this at home!
SpaceX @SpaceX
40.0M Followers 120 Following SpaceX designs, manufactures and launches the world’s most advanced rockets and spacecraft
WarNewsEN @WarNewsEN
2K Followers 71 Following Data and news from top research and think tanks around the world.
Kancelaria Prezydenta... @prezydentpl
61K Followers 123 Following Oficjalne konto Kancelarii Prezydenta RP Karola Nawrockiego
Danny Limanseta @DannyLimanseta
22K Followers 1K Following I make games with AI. Product Designer, Co-founder at https://t.co/C6xWXxJrsL & https://t.co/5jKwzHKucU. Founding Designer at RedMart, acquired by Alibaba.
OS Dev @OSdev_
2K Followers 378 Following Senior Engineer @Qualcomm I C/C++ | Kernel Development | Low level & System Programming
Piotr Brzyski @p_brzyski
7K Followers 215 Following Analityk bezpieczeństwa | Specjalista zarządzania kryzysowego | Związany z @warnewspl1 | Możesz wesprzeć moją pracę na https://t.co/xL63kmfq99
Krzysztof Bosak 🇵�... @krzysztofbosak
505K Followers 5K Following Poseł i wicemarszałek Sejmu. Lider @Konfederacja_, prezes @RuchNarodowy. Mąż @KarinaBosak, ojciec Artura, Daniela i Emilii. Chrześcijanin
Paweł Zariczny @pawel_zariczny
11K Followers 1K Following #PoCoNamMarynarkaWojenna 🚢, #MorzeŻywiIbogaci ⚓ ⛴️, Team Przemysł Okrętowy 🛳️, #społecznik, ⚽, Prywatne opinie, Staram się #Abecadłem 😉 RT ≠ poparcie
Jarosław Kaczyński @OficjalnyJK
158K Followers 103 Following Prezes Prawa i Sprawiedliwości. Jedyne oficjalne konto.
Lex Fridman @lexfridman
4.4M Followers 588 Following Host of Lex Fridman Podcast. Interested in robots and humans.
Tomasz Rożek @RozekTom
121K Followers 3K Following Mąż, tata, autor książek. Założyciel i prezes Fundacji Nauka To Lubię. Prowadzi vbloga NaukaToLubie i NaukaToLubie Junior @naukatolubie
Marek Wałkuski @Marekwalkuski
38K Followers 1K Following Korespondent Polskiego Radia w Białym Domu. Autor książek:„Zakamarki Białego Domu”, „To jest napad”, „Ameryka po Kawałku” i „Wałkowanie Ameryki”.
Darwin to Jesus @darwintojesus
68K Followers 909 Following Lifelong atheist who found Jesus Christ. Husband and father. Exposing the lies and fallacies of Atheism, proclaiming the truth of Christianity.
Albert Świdziński @A_Swidzinski
34K Followers 360 Following amicus plato sed magis amica veritas Head of analysis at https://t.co/4uNfs0BV46
Steve · Millionaire ... @SteveOnSpeed
332K Followers 84 Following Money, Confidence and Strength || Mission: Help 10M people achieve financial freedom || Learn how to steal the habits of millionaires in my free newsletter
Z buta dookoła Świa... @Dziki59667847
46K Followers 357 Following Łukasz Podstada ⛺ Piesza 👣 samotna wyprawa dookoła Świata 🌍 Start 15.07.2020 z Cieszyn 🇵🇱 Teraz Afryka 🇨🇲 Kamerun
Donald J. Trump @realDonaldTrump
108.8M Followers 53 Following 45th & 47th President of the United States of America🇺🇸
Evan Amato @SirEvanAmato
101K Followers 552 Following Author @the_culturist_ | Coffee dealer https://t.co/WXTfvmwbtW | Sharing the secrets of Old World elegance
Sztab Generalny WP @SztabGenWP
68K Followers 202 Following Oficjalny profil Sztabu Generalnego #WojskoPolskie | The official account for the General Staff of the Polish Armed Forces. #SGWP
Jon SayWen @SayWen_eth
2K Followers 2K Following Collecting and Creating Pixels. Coding games and tools with A.I.
𝕏 Bug Bounty Write... @bountywriteups
35K Followers 4K Following 🔍 Bug Bounty Hunter | Content Creator | Sharing cybersecurity write-ups & resources | AI | | by @piyush_supiy #bugbounty #bugbountytips
retarded guru 🍊 @0xKubi
22K Followers 2 Following https://t.co/d9MLcKyb9G | https://t.co/ELOcaxorET Czytając moje treści miej na uwadze, że ich autor może okazać się większym debilem od Ciebie
Mateusz Lachowski @LachowskiMateus
154K Followers 790 Following Dziennikarz i reżyser. Korespondent Telewizji Polskiej w Ukrainie. Subskrybuj: https://t.co/Za1Mth79MB
Kenneth Andersen @inScopeStudios
627 Followers 73 Following I'm a programmer and a teacher. I love teaching how to program n create games. 👑 https://t.co/5Ptkfw5oGz 🎮 https://t.co/Tx3rodrROZ 📺 https://t.co/f5MLEkzTSt
Hunter @HunterMapping
23K Followers 184 Following Internet search engine for security researchers Contact Us: [email protected]
SinSinology @SinSinology
13K Followers 674 Following Pwn2Own 20{22,23,24,24.5,25,25.5}, i look for 0-Days but i find N-Days & i chase oranges 🍊
FOFA @fofabot
12K Followers 191 Following Cybersecurity Search Engine Contact Email: [email protected] Telegram: https://t.co/E5EcKr5Kyl
naiive @naiivememe
296K Followers 185 Following
eversinc33 🤍🔪�... @eversinc33
6K Followers 1K Following computers be computin | https://t.co/Eiur8iOJQ4
MalwareHunterTeam @malwrhunterteam
244K Followers 38 Following Official MHT Twitter account. Check out ID Ransomware (created by @demonslay335). More photos & gifs, less malware.
Andrzej Duda @AndrzejDuda
2.0M Followers 736 Following
Donald Tusk @donaldtusk
2.1M Followers 667 Following Premier Rzeczypospolitej Polskiej 🇵🇱 Prime Minister of Poland 🇵🇱
James Forshaw @tiraniddo
49K Followers 339 Following Security researcher in Google Project Zero. Author of Attacking Network Protocols. Tweets are my own etc. Mastodon: @[email protected]
WarNewsPL @WarNewsPL1
417K Followers 1K Following Konflikty, bezpieczeństwo i geopolityka. 📡 Kanał YouTube 👇 https://t.co/218Pc1V39V Kontakt: [email protected] Portal: https://t.co/ePLp81KtdK
RELOCATIFY @relocatify1
13K Followers 3K Following Kambodża-bezpieczeństwo dla Twoich aktywów.Pomagamy otworzyć konto bankowe,kupić nieruchomość, założyć firmę lub zainwestować. Telegram: https://t.co/bbmKwccwMN
Alex Albert @alexalbert__
97K Followers 637 Following Claude Relations @AnthropicAI. Opinions are my own!
InfoPiguła @InfoPigula
10K Followers 28 Following Bezstronnie. Rzetelnie Odławiamy z całego medialnego bullshitu 20 wartościowych newsów. Co dnia. Skracamy je lepiej, niż ChatGPT. Sprawdź - nasze apki 📲
RaportWojenny @RaportWojenny
46K Followers 555 Following Najnowsze wiadomości ze stref konfliktów zbrojnych oraz polityki międzynarodowej.
Anna Maria Dyner @Anna_M_Dyner
79K Followers 2K Following Head of International Security Programme at @PISM_Poland. Belarus, Russia, hard security, and hybrid threats. Private opinions only.
SatoshiSync @SatoshiSync
50K Followers 28 Following 1st Chain-Agnostic Interoperability Protocol for BTCFi and Runes Connecting all inscription liquidity markets.
Alex - "Krypto Inwest... @CryptoAlexand
19K Followers 2K Following 🎯 Kryptowaluty & Życie! 🎥 YT "Krypto Inwestycje" 📱 Social Media, Marketing, Business Developer WEB3 Profil trochę satyryczny, to nie porady :D
Whale Alert @whale_alert
2.8M Followers 13 Following Live reporting on large and interesting #blockchain transactions as they happen. Create your own alerts for over 100 coins on https://t.co/wQEfstUfLm