ttffdd @_ttffdd_
ttffdd Joined June 2012-
Tweets59
-
Followers149
-
Following154
-
Likes322
Hey! Need a tool to collaborate and analyze the scope(nmap, nessus,etc),reportgen during a pentest or bb,but it's too tedious to install something(oh you)? I have a solution for you:demohive.hexway.io Free,easy-to-use,and with cat pictures inside. Well,what else do you need?
Вышел выпуск подкаста №4. Наконец cобрались обсудить давно интересующу нас тему: менджмент и бизнес - особенности данных веток таланов для пентестера. Есть ли вобще другие? Уже разлит по площадкам soundcloud.com/m1mo-croc music.yandex.ru/album/10321679 podcasts.apple.com/ru/podcast/id1…
На фоне последних новостей, кажется, я придумал как уничтожить зелёный банк (ЗБ). ЗБ: Мы Сбербанк Люди: Проще Сбер ЗБ: Ок, мы теперь Сбер Люди: СБ ЗБ: серьезно?! Ок, СБ Люди: С ЗБ: Да вы шутите Люди: ... Зелёный банк был расформирован.
Вышел третий выпуск нашего подкаста. На этот раз мы ушли в тему "Синдрома самозванца", коснулись того как он помогает или мешает в работе со стороны Defensive и Offensive команд. Подкаст доступен на: music.yandex.ru/album/10321679 podcasts.apple.com/ru/podcast/id1… soundcloud.com/m1mo-croc
Small cheatsheet for checking card no present operations this 3d secure protocol (v 1.0.2) github.com/webr0ck/3D-Sec… #3DS #Pentesting #paypal #CNP
SSRF + CRLF + HTTP Pipeline + Docker API = RCE… How dangerous is Request Splitting, a vulnerability in Golang or how we found the RCE in Portainer and hacked Uber link.medium.com/dSWQ6ewPL6
Шла 5 неделя изоляции, контент подходил к концу, поэтому мы решили сделать хитрый ход и сгенерировать контент самим! Встречайте пилот нового ИБ подкаста "Мимокрокодил". Первый выпуск уже на площадках: podcasts.apple.com/ru/podcast/id1… soundcloud.com/m1mo-croc music.yandex.ru/album/10321679
Спасибо! Большой фанат @igc_iv и @rustamkom25
Спойлер вопросов на собеседовании: - Рассказать в деталях про любой client-side баг/атаку - Рассказать в деталях про любой server-side баг/атаку - Почему нужно фиксить Self XSS - Stateless vs Stateful - Рассказ про находку, которой хотелось бы поделиться team.mail.ru/vacancy/10003/
New Writing Bypass SameSite Cookies Default to Lax and get CSRF Looking at a new Chrome feature and the 2 minute quirk which make it possible to bypass it, also solution to my CSRF challenge. #CSRF #SameSite medium.com/@renwa/bypass-…
Detailed and helpful, thank you very much
Если у вас есть checkmarx и вы ещё не пробовали писать в нем запросы, самое время попробовать! habr.com/ru/company/din…
Web Village: Denis “ttffdd” Rybin @_ttffdd_ "Doing AWS Zoo Audit" #ZeroNights 2019
#ZeroNights HackQuest 2019 starts today at 20:00 (Moscow Time (UTC+3)) hackquest.zeronights.org
To better understand Mobile platform vulnerabilities I've created a picture with transition between @owasp tops: mobile WEB. This is just my view. It may be wrong, let me know if it is =) github.com/whitel1st/owas… Repo contains pdf version with links #owasptop10 #MobileSecurity
#ZeroNights 2019 CFP is OPEN: Offensive and defensive research (15/30/45min). Submit your talk! 01x.cfp.zeronights.ru/zn2019/ Please RT!
Just want to remind that #turbointruder for #burp is awesome. There are is a small but pretty nice lifehack how to use Sublime instead of embedded editor.
Today I've gone crazy. Proudly present to the world - web goose! 😂 Powerful asistent with #bugbounty programs and #pentest . He knows #web at the level of professionals. RT for luck with BB🙃

Margaret @m_parker50
295 Followers 3K Following
null @nulldottxt
3 Followers 202 Following
Москвина @moskvina_i
37 Followers 88 Following
🅢🅐🅛🅐 @SALA2OOO
12 Followers 290 Following
Chann Wilmerc @ChannWilmerc
0 Followers 54 Following
Blue. @leileis20
0 Followers 4K Following
Мария Филим... @MariaFilimonov8
2 Followers 103 Following
Lucky Luke @Lky_hkr
9 Followers 338 Following
FeDEX @FetchDEX
1K Followers 1K Following { Christian Hacker } { @WreckTheLine } { Blockchain Security @osec_io 🦦 }
Arkadiy Litvinenko @TheBetepok
1K Followers 536 Following Information Security Fan. Used to play in CTF with @BalalaikaCr3w and LC↯BC. @OFFZONE_moscow & @CTFZone ex-organizer
Max @maxporemsky
39 Followers 173 Following
Фабишевски�... @fabishevskij
62 Followers 839 Following
Danila Leontev @korgik_0
7 Followers 141 Following
Evgenii Protsenko @procenkoeg
21 Followers 43 Following
kumaran @kumaran923
133 Followers 5K Following
Cyberlands.io @Cyberlandsio
54 Followers 31 Following API Penetration Testing company making cloud-native apps and infra secure
МимоКрокод�... @m1mo_croc
56 Followers 19 Following Мимокрокодил — это подкаст про IT-технологии и Информационную безопасность, где три ИБ-специалиста рассуждают о куче вещей, в которых ничего не понимают.
snowlovely @snowlovely2
5 Followers 330 Following
Shikari Senpai @ShikariSenpai
373 Followers 199 Following
torbusy @torbusy1
0 Followers 16 Following
Johnnie @jmoose_oh
103 Followers 5K Following
Emil Lerner @emil_lerner
3K Followers 346 Following Independent security researcher. CTO & co-founder of https://t.co/F296lUgKA8. Bushwhackers CTF team.
smiling♪ @CorwinGG
49 Followers 337 Following be careful not to choke on your aspirations // AppSec @ ...
Dmitriy @f2Ny3Hda0qCxN9X
0 Followers 85 Following
Andrew @sec0day
0 Followers 41 Following
Pearl Felix @PearlFelix1985
14 Followers 463 Following
Чіт @John44147535
0 Followers 417 Following
Mukesh Kumar @MukeshK31083683
0 Followers 71 Following
Dmitry D. @dd_penza
27 Followers 143 Following
sec @Andrey02056531
1 Followers 52 Following
Kelesis Nikita @nkelesis
41 Followers 123 Following
Alex Novgorodov @alexnovgorodov
697 Followers 776 Following Developing DAST and security code analyzersDenis @DenisLipov
1 Followers 118 Following
Absolute AppSec @absoluteappsec
1K Followers 121 Following “The podcast for kids who cant appsec good and want to learn how to do other stuff good too.” https://t.co/LxF35l9Giw
ascr0b @ascr0b
29 Followers 49 Following
Aleksey Grishin @mokando_work
8 Followers 1 Following Security Engineer. https://t.co/1dwdEqxVBQ BugBounty program lead. H1: https://t.co/eE0YgOt46i BC: https://t.co/MCdwjSGD8j
Emil Lerner @emil_lerner
3K Followers 346 Following Independent security researcher. CTO & co-founder of https://t.co/F296lUgKA8. Bushwhackers CTF team.
Oversecured @OversecuredInc
3K Followers 0 Following Securing the mobile world 🌐 We know how to protect your Android & iOS apps with our robust vulnerability-scanning solutions #MobileAppSecurity #Cybersecurity
JS0N Haddix @Jhaddix
167K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
shubs @infosec_au
56K Followers 2K Following Co-founder, security researcher. Building an attack surface management platform, @assetnote
Pavel Zhovner @zhovner
13K Followers 788 Following Techno Freak | Founder of Flipper Devices — https://t.co/dsBTv4XPDb | Telegram channel https://t.co/a0I9smaFNt
Cloud Village @cloudvillage_dc
6K Followers 24 Following Cloud Village is an open space to meet folks interested in offensive and defensive aspects of cloud security.
WSO2 @wso2
13K Followers 2K Following Create awesome digital experiences quickly, easily, and securely with WSO2 - just add developers. #WSO2APIManager #WSO2IS @Asgardeo @Ballerinalang @ChoreoDev
AppSec Village @AppSec_Village
11K Followers 6K Following AppSec Village @DEFCON & @RSAConference A volunteer-run, non-profit focused on education, awareness, and community. Founded by @erezyalon and @tzionit411.
ZaX @ReeverZax
4K Followers 640 Following Bounty Hunter Yogosha, YesWeHack and Hackerone Security Researcher. Brice Augras - CEO @BZHunt1 #Brest #HackerEthique
Valeriy @Krevetk0Valeriy
5K Followers 843 Following Security enthusiast, bug bounty hunter at @Hacker0x01 and @Bugcrowd https://t.co/RjYvPJaXTW https://t.co/dkUfA2vywe
fuzzyf10w @fuzzyf10w
730 Followers 1K Following OSCP // OSCE // OSWE // OSED :: security enthusiast :: CTF player
МимоКрокод�... @m1mo_croc
56 Followers 19 Following Мимокрокодил — это подкаст про IT-технологии и Информационную безопасность, где три ИБ-специалиста рассуждают о куче вещей, в которых ничего не понимают.
Hack3rScr0lls @hackerscrolls
10K Followers 57 Following for hackers by hackers Contact: [email protected]
Denis Makrushin @makrushind
11K Followers 628 Following Here to save the world. Tweets are my own. https://t.co/J4fzcKzcMO
Ninja Zero One @NinjaZeroOne
38 Followers 65 Following
Sergey Toshin @_bagipro
7K Followers 186 Following Ranked as the #1 security researcher for Google Play Security Rewards Program. The founder of @OversecuredInc Android and iOS vulnerability scanners
Web Security Academy @WebSecAcademy
130K Followers 36 Following Free web security training from @PortSwigger
NCC Group Research & ... @NCCGroupInfosec
20K Followers 2K Following Technical account for global cyber security & resilience provider, NCC Group. This account is run alongside the @NCCGroupplc corporate account.
terjanq @terjanq
10K Followers 255 Following security enthusiast that loves hunting for bugs in the wild. co-founder and player of @justCatTheFish. infosec at @google. opinions are mine.
spaceraccoon | Eugene... @spaceraccoonsec
25K Followers 302 Following Here to learn! Infosec@Open Government Products | White Hat && SecOps
☁️ Andres Riancho @AndresRiancho
1K Followers 115 Following Application and Cloud security expert. Hacker.
STÖK ✌️ @stokfredrik
135K Followers 1K Following Hi.. im that hacker / creative that your friends told you about., 💫🔮
PortSwigger Research @PortSwiggerRes
111K Followers 7 Following Web security research from the team at @PortSwigger
Ed @EdOverflow
20K Followers 161 Following Web developer & security researcher. Senior Pentester @cure53berlin. Author of @securitytxt. ➡️ https://t.co/BOy1tiLLBr
Trail of Bits @trailofbits
35K Followers 255 Following We help secure the world’s most targeted organizations and products. We combine security research with an attacker mentality to reduce risk and fortify code.
Synack Red Team @SynackRedTeam
48K Followers 622 Following The power behind the @Synack platform is an elite team of the world's top cybersecurity researchers. Our best are honored at https://t.co/6bEAyp7HWJ
The Paranoids @TheParanoids
15K Followers 153 Following We are the information security team @Yahoo! Report vulnerabilities at https://t.co/VaAvra8Rv9
Arkadiy Litvinenko @TheBetepok
1K Followers 536 Following Information Security Fan. Used to play in CTF with @BalalaikaCr3w and LC↯BC. @OFFZONE_moscow & @CTFZone ex-organizer
Mathias Karlsson @avlidienbrunn
17K Followers 603 Following Web security fiddler. Bug bounty bastard. Sometimes I cut shapes.
Omar Espino • @omespino
11K Followers 699 Following Security hall of fame: Google VRP • Microsoft • Reddit • Telegram • Twitter • Facebook • Apple • Netflix • Slack • etc •