St0pp3r @_st0pp3r_
Detection Engineering · Threat Hunting · Incident Response github.com/st0pp3r Joined September 2018-
Tweets165
-
Followers223
-
Following261
-
Likes249
The lolol.farm continues to grow! Introducing a new project: LoFP - Living off the False Positive Where you can blend into the noise, or leverage it for triage and rule writing. 🎊🍻 br0k3nlab.com/LoFP/ #DetectionEngineering #Security
The lolol.farm continues to grow! Introducing a new project: LoFP - Living off the False Positive Where you can blend into the noise, or leverage it for triage and rule writing. 🎊🍻 br0k3nlab.com/LoFP/ #DetectionEngineering #Security https://t.co/6VzkLuzzY7
We all know the “this is fine” meme—when it comes to burnout, it’s anything but. In our newest blog, @confused_binary serves up practical tips to help testers and teams recognize, manage, and avoid going up in flames. Read it now! trustedsec.com/blog/pen-testi…
Just used this beauty on a quick query I wanted to run. This needs to be in your bookmarks.
#ESETResearch has discovered the first known AI-powered ransomware, which we named #PromptLock. The PromptLock malware uses the gpt-oss:20b model from OpenAI locally via the Ollama API to generate malicious Lua scripts on the fly, which it then executes 1/6
Check out my latest blog for the series #DetectionEngineering - Practicing #DetectionAsCode In this part we are looking into ways of automating documentation and the generation of a change log to track updates in the repository! Coming up next is applying versioning schemas!
Check out my latest blog for the series #DetectionEngineering - Practicing #DetectionAsCode In this part we are looking into ways of automating documentation and the generation of a change log to track updates in the repository! Coming up next is applying versioning schemas!
Documentation is key in #DetectionEngineering! Automate it with Jinja & Git for streamlined processes. Plus, generate changelogs to keep teams informed and improve collaboration. Discover more in @_st0pp3r_ latest blogpost 👉 blog.nviso.eu/2025/08/26/det…
Ready to uncover the secrets of #PoisonSeed's #PhishingKit? 🤯 Read @lontze7 latest blog post to learn how they bypass MFA and discover essential protection tips against their tactics. 👇 blog.nviso.eu/2025/08/12/she…
@bindureddy Deploy First Pray Later Debug Forever
Check out part 3 of our blog post series #DetectionEngineering - Practicing Detection-as-Code.
Check out part 3 of our blog post series #DetectionEngineering - Practicing Detection-as-Code.
Ever wondered what a "middleman" can do for your security? In the world of software development, one of the biggest hidden dangers is #HardcodedCredentials. Read our latest blog post on #CyberArk’s Central Credential Provider (CCP) here 👇 blog.nviso.eu/2025/08/01/sto…
📢 New blog post 📢 𝐁𝐫𝐞𝐚𝐤𝐢𝐧𝐠 𝐝𝐨𝐰𝐧 𝐭𝐡𝐞 𝐌𝐢𝐜𝐫𝐨𝐬𝐨𝐟𝐭 𝐃𝐞𝐟𝐞𝐧𝐝𝐞𝐫 𝐄𝐱𝐭𝐞𝐫𝐧𝐚𝐥 𝐀𝐭𝐭𝐚𝐜𝐤 𝐒𝐮𝐫𝐟𝐚𝐜𝐞 𝐌𝐚𝐧𝐚𝐠𝐞𝐦𝐞𝐧𝐭 𝐨𝐩𝐩𝐨𝐫𝐭𝐮𝐧𝐢𝐭𝐢𝐞𝐬 𝐟𝐨𝐫 𝐪𝐮𝐞𝐫𝐢𝐞𝐬 𝐢𝐧 𝐀𝐝𝐯𝐚𝐧𝐜𝐞𝐝 𝐇𝐮𝐧𝐭𝐢𝐧𝐠 & 𝐋𝐨𝐠 𝐀𝐧𝐚𝐥𝐲𝐭𝐢𝐜𝐬…
Check out part 2 of our #DetectionEngineering - Practicing #DetectionAsCode series is out! This part is all about laying the groundwork for a scalable and efficient detection repository.
Check out part 2 of our #DetectionEngineering - Practicing #DetectionAsCode series is out! This part is all about laying the groundwork for a scalable and efficient detection repository.
Tool release form my @Steel_Con talk. Nothing ground breaking but free tools are free tools github.com/two06/LinkedIn…
Check out my latest blog for @NVISO_Labs on #detectionengineering and Detection-as-Code.
Check out my latest blog for @NVISO_Labs on #detectionengineering and Detection-as-Code.
Detection-as-Code: From Concept to Practice 👇 Check out @_st0pp3r_ latest blog series, where he unpacks the fundamentals of #DetectionEngineering and takes a closer look at the game-changing concept of #DetectionAsCode. blog.nviso.eu/2025/07/08/det…
Great list of resources for anyone getting started in #detectionengineering (h/t to Richard Akroyd for creating this list) github.com/rfackroyd/dete…
🚨 BLOG ALERT 🚨 I dove into maintenance in #DetectionEngineering - why it matters so much and the paradox that won’t let me sleep at night. This is the first post in a new series:
🚨 BLOG ALERT 🚨 I dove into maintenance in #DetectionEngineering - why it matters so much and the paradox that won’t let me sleep at night. This is the first post in a new series:

Thinkst Canary @ThinkstCanary
13K Followers 10K Following Most companies only realise they are breached when informed by a 3rd party. This is a stupid problem! Thinkst Canary. Know. When it Matters.
AlvaGissing @aGw2ncvp6R9L2
31 Followers 886 Following
Shikata ga nai @Shikata_ga_naii
269 Followers 2K Following *Shell lover. Nothing can be done about it!
shshp @shshp4
0 Followers 5K Following
theonexc @theonexc1
0 Followers 3K Following
tom square @harold9850
4 Followers 167 Following
Schalt Odiltz @SOdiltz
2 Followers 161 Following
Carlos Mayorga @Sud0Chul0
600 Followers 6K Following System Administrator | Fortinet | Azure | Entra | #cybersecurity
Bart @bartblaze
14K Followers 653 Following Threat Intel and more. Opinions are my own, unless retweeted. Open DMs.
Ydworgoo @Ydworgoo523244
50 Followers 570 Following
Andrew @4ndr3w6S
3K Followers 2K Following Detection Engineering @HuntressLabs | Prev. Practice Lead, TAC (Purple Team) @TrustedSec | @SpursOfficial Super Fan - COYS!
Juan Marcelo Gutiérr... @juanmasktr
351 Followers 5K Following Cuando uno compara sus talentos con los de Leibniz uno tiene la tentación de tirar todos sus libros e ir a morir silenciosamente en la oscuridad de algún rincón
THOMAS @0xSH4RKS
118 Followers 1K Following
Prashanth Writes @Prashanthblogs
0 Followers 88 Following Cybersecurity enthusiast | Threat Hunter | SIEM Specialist | Reporting and learning from vulnerabilities | All opinions are my own
Chris Martinez @chriscmartinez
195 Followers 1K Following
xp_osint @cyber_m33rk4t
12 Followers 225 Following
Rain @pRain1337
48 Followers 543 Following
Javelin @avtvfh1125
327 Followers 632 Following Detection Engineerに戻ってしまった RISS/NW/ES/CISSP/GCDA/GCFA
AppSec Village @AppSec_Village
11K Followers 6K Following AppSec Village @DEFCON & @RSAConference A volunteer-run, non-profit focused on education, awareness, and community. Founded by @erezyalon and @tzionit411.
michael @michaelweimer_
33 Followers 369 Following security professional, researcher, penetration test lead @teamhoplite | co-founder, CTO @shieldcyberio
Safiullah_Niazi @Safiull93168968
114 Followers 1K Following Cyber Security Engineer || Automating Security Workflows || Incident Responder
Hussein Sherafat @Hussein_Sherafa
236 Followers 6K Following
n0zk @n0zk__
168 Followers 2K Following Purple teamer | Privacy fighter | A lazy CTF player | I build, make and break weird stuff
dexter @dexter79331247
0 Followers 2K Following
wellstrong @_wellstrong_
5 Followers 262 Following diving into the cybersecurity world! if i retweet, it's either for future reference for myself or i found it interesting or funny. BIG weather enthusiast too!
Dinohacks @nhegde610
547 Followers 2K Following Researcher. Malware Analyst. Part time threat hunter. Part time blogger
Syed Shamsudheen @SyedShamsudheen
23 Followers 639 Following
_____ @H_ng_an
187 Followers 2K Following
Ankur @Ankuryogi11
345 Followers 6K Following
Angelo Violetti @angelo_violetti
178 Followers 739 Following
James W. @cyberbiz4
164 Followers 4K Following looking for a cyber position in blue team. Metro Vancouver, Canada. Defender, GIAC x 3, AWS, M365, Splunk, Azure
Brian Halbach ☕️ @brianhalbach
1K Followers 6K Following Who has two thumbs and can count to ten. Does cyber security things | abyss gazer | opinions are my own | (he/him)
Al_eX5 @Al_eX_U29s
0 Followers 131 Following
Daniel K. @mesme
105 Followers 4K Following
prakash kamalakannan @sn0wli0n
667 Followers 5K Following Security Researcher @Acronis #OSCP #Adversaryemulation
Philippe André @Philipp77967111
4 Followers 1K Following
Max Rogers @MaxRogers5
3K Followers 1K Following Sr. Director of SOC at Huntress. Ex-Mandiant/FireEye. Bringing security to the Fortune 5,000,000.
Jose Rodriguez 🇵�... @Cyb3rPandaH
6K Followers 342 Following #CyberDefense #AI #DataScience @GeorgeMasonU @NOVAcommcollege @pucp
Eric Capuano - Bsky: ... @eric_capuano
11K Followers 3K Following Co-Founder @recon_infosec | SANS DFIR Instructor | IANS Faculty | https://t.co/yUXCSu2Yso | ⬡ ❤ @shortxstack
Ryan "Chaps" Chapman @rj_chap
8K Followers 3K Following DFIR & malware analyst. @sansforensics FOR528 Author & FOR610 Instructor. @CactusCon crew. Husband & father. Comments = own.
SANS APAC @SANSAPAC
2K Followers 355 Following The most trusted source for cybersecurity training, certification and research. To view upcoming events and course information visit our website.
John Hammond @_JohnHammond
298K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
SEKTOR7 Institute @SEKTOR7net
15K Followers 346 Following Homo Aptus. Vincit qui se vincit - Publilius Syrus. Consulting, Training, Technology, Cyber domain, and more... @x33fcon founder.
Thinkst Canary @ThinkstCanary
13K Followers 10K Following Most companies only realise they are breached when informed by a 3rd party. This is a stupid problem! Thinkst Canary. Know. When it Matters.
Leo @Itz_L30
979 Followers 1K Following Security Researcher | Detection Engineering #CTI | #threatintel Progress. Not perfection.
Random Balkan Guy @randombalkang
58K Followers 6K Following Unfiltered Balkan culture, society & people. Memes are satire & humor. Ads/Collabs: DM/📧 | 🇷🇴🇭🇷🇧🇦🇷🇸🇲🇪🇧🇬🇲🇰🇦🇱🇽🇰🇬🇷🇹🇷
Pentest Laboratories @pentestlabltd
2K Followers 0 Following Provide #RedTeaming services by executing custom scenarios to test your cyber resilience.
Thomas Patzke @blubbfiction
5K Followers 445 Following Incident Response, Threat Hunting. Opensource security tool developer (https://t.co/2twMtVpZtL). Moved to @[email protected]
Scott Lynch @packetengineer
2K Followers 5K Following Certified @SANSDefense Instructor | SECOPS/CERT Manager | Defcon BTV | Navy Vet | Sailor | Tweets Are My Own
Αⅼех @sifex
350 Followers 642 Following Security / Detection Engineer working at @wise Building https://t.co/stmzR52Imy at @northdotsh
Andy Rector @DetectorRector
1K Followers 400 Following Detection Lead @ Mandiant Managed Defense / Former IR Consultant @mandiant. Tier 3 Hipster; I came in like a #WrectorBall
MDSec @MDSecLabs
15K Followers 0 Following Consultancy and Training from a trusted supplier of offensive security. Red Team and Adversary Simulation by ActiveBreach team | https://t.co/fqpbJ9WDXD | https://t.co/UvOhGA4Zou
Bad Sector Labs @badsectorlabs
8K Followers 503 Following Cybersecurity news, techniques, exploits, and tools every week at https://t.co/UgKmeEEjIV 🐘 @[email protected]
Cyberkid @Anastasis_King
3K Followers 1K Following Cybersecurity Evangelist | Penetration Tester | Red Teamer | Bug Hunter | Grey Hat Hacker
Keith @kwm
3K Followers 605 Following Award-winning husband and dad. Co-founder @redcanary. Tweets are my own, unless otherwise noted.
Blue Team News @blueteamsec1
52K Followers 9K Following The cybersecurity home for the latest #BlueTeam, #DFIR, and #ThreatHunting news and tools.
Panos Gkatziroulis �... @netbiosX
25K Followers 812 Following Red/Purple Teamer | Blogger | Ex-Director @pentestlabltd | Mod @ https://t.co/1nzjl9KpSH | https://t.co/mIM1GA1mN4
Nextron Research ⚡�... @nextronresearch
2K Followers 10 Following Nextron Systems Threat Research Team research (att) https://t.co/QTt2X62dXP
Dray Agha @Purp1eW0lf
6K Followers 3K Following Hunt & Response Senior Manager @HuntressLabs || "Competition is the law of the jungle, but cooperation is the law of civilisation” - Kropotkin
Matt Bromiley (🇺�... @_bromiley
7K Followers 1K Following Lead Solutions Engineer @ LimaCharlie, BlackHat Instructor, SANS Analyst/Instructor, Security Researcher. Cybersecurity mentor.
Dark Web Informer @DarkWebInformer
129K Followers 60 Following Providing Cyber Threat Intelligence from the Dark Web & Clearnet: Breaches, Ransomware, Darknet Markets, Threat Alerts & more. https://t.co/Fi7VW9lg94
Andreas Sfakianakis /... @asfakian
5K Followers 3K Following Tweets about Cyber Threat Intelligence | SANS #FOR578 Instructor | Speaker My tweets=my views. RTs ≠ endorsement. https://t.co/6zRhe2JRUj
Kostas @Kostastsale
18K Followers 367 Following @TheDFIRReport | No longer active here – find me on Bluesky: https://t.co/qHzDSxCRfG. 🇬🇷🇨🇦
Adel Ka @0x4D31
4K Followers 2K Following security engineer @OpenAI | ex-google. views are my own, not my employer's!
Jonny Johnson @JonnyJohnson_
8K Followers 419 Following Principal Windows Security Researcher @HuntressLabs | Windows Internals & Telemetry Research
J⩜⃝mie Williams @jamieantisocial
10K Followers 7K Following threats && stuff || #UNC1799 forever 🤘|| @DistrictHeather ♥️ + 🍷 **𝚅𝚒𝚎𝚠𝚜 𝚎𝚡𝚙𝚛𝚎𝚜𝚜𝚎𝚍 𝚊𝚛𝚎 𝚖𝚈 օ𝚠𝚗**
eks @eks_perience
206 Followers 110 Following
JPCERTコーディネ... @jpcert
32K Followers 6 Following JPCERTコーディネーションセンター(JPCERT/CC)の公式アカウントです。情報セキュリティに関する注意喚起、公開資料やセミナー情報などを発信しています。ご意見、ご要望などへの返信をご希望の際は[email protected]にご送付ください。
1aN0rmus @TekDefense
4K Followers 1K Following CTO at @permisosecurity Alum: @Mandiant, https://t.co/kqlvYwe86k, USMC
Ali Hussein @0xanalyst
590 Followers 708 Following Penetration Tester turned into Blue Team and IR Specialist #PurpleTeaming #DFIR
Manuel @0xc0ffee
457 Followers 2K Following Sec dude during the day, beer brewer at night. neutral as a neutron. backout plan: 40 30 78 63 30 66 66 65 65 40 69 6e 66 6f 73 65 63 2e 65 78 63 68 61 6e 67 65
LetsDefend @LetsDefendIO
131K Followers 0 Following Learn cybersecurity with hands-on blue team training
Andrew @4ndr3w6S
3K Followers 2K Following Detection Engineering @HuntressLabs | Prev. Practice Lead, TAC (Purple Team) @TrustedSec | @SpursOfficial Super Fan - COYS!
Tony Lambert @ForensicITGuy
6K Followers 1K Following Recovering sysadmin that now chases adversaries instead of uptime. Sr Malware Analyst @redcanary
Wietze @Wietze
7K Followers 392 Following Threat Detection & Response. Views are my own, unless retweeted. Maintainer of https://t.co/000t7J0NBR & https://t.co/thv6PP5C48 Co-maintainer of https://t.co/rXIxOggXs2
Darren LaCasse @stiltznet
444 Followers 481 Following Threat Detection, Intelligence, and Incident Response @elastic At the intersection of logs and security (and now AI!)
Md Ismail Šojal �... @0x0SojalSec
30K Followers 5K Following Cyber_Security_Re-searcher || 0SINT || Malware Analysis II Pwn || Ai Re-searcher || Project @AIStrikeSec || 0ld Accounts Suspended @0xSojalSec ||
unpack64 @SwitchToThread
13K Followers 5K Following
OrdinalExport @OrdinalExport
12K Followers 592 Following
KQLCafe @KqlCafe
1K Followers 2 Following A Community to make the world a better place with KQL | Learn, share and practice the KQL language | #kql #threathunting #security