Asish @asishinfosec
Joined January 2010-
Tweets211
-
Followers78
-
Following332
-
Likes59
LSASS dumping in 2021/2022 - from memory - without C2 s3cur3th1ssh1t.github.io/Reflective-Dum…
Published a short blogpost about how the introduction of #IMDSv2 affects #SSRF attempts on #AWS #EC2 instances, especially when attempting to retrieve #metadata information. blog.appsecco.com/server-side-re… #reInvent2019 #cloudsecurity #owasp cc: @appseccouk
CVE-2019-10392 — Yet Another 2k19 Authenticated Remote Command Execution in Jenkins read the blog post @ iwantmore.pizza/posts/cve-2019… /cc @jenkinsci @TheHackersNews
Here we go! Chaining a Stored XSS and a SQL Injection to compromise an Uber Wordpress. Bonus point: I've used a quiz 🙃 (and both are still 0-days) rcesecurity.com/2019/09/H1-442… #BugBounty #togetherwehitharder #h14420
The Universal SSL pinning bypass for Android applications //frida -U -f <your_application_package_name> -l <path_to_fridascript.js_on_your_computer> --no-paus frida -U -f -l D:\frida\fridascript.js --no-paus medium.com/@ved_wayal/hai…
I want to give another shout-out to @streaak for his amazing work on github.com/streaak/keyhac…. This is an excellent reference for anyone that wants to determine the security implications of a publicly-disclosed API key.
A handy and well-polished tool to enumerate permissions associated with AWS credentials you may have stumbled upon in the wild. It looks like it's released as part of a research that will be presented at BH this summer. github.com/andresriancho/…
Looking for new way to exploit Tomcat Host-Manager ? certilience.fr/2019/03/tomcat…
I'm releasing all the slides (~800!) of my Mobile Security class: mobisec.reyammer.io! They are not perfect, but students learned how to reverse apps, find&exploit real-world bugs, reason about threat modelling / system security, etc. Very proud of them :-) 👶 => 👨💻👩💻
Want to learn how to use Frida Without Jailbreak on devices running Latest iOS 12.4? Take a look at link.medium.com/ff9fZ7r0zU #iOS #MobileSecurity #iOSsecurity #Frida #Jailbreak #JailbreakiOS12
Here is the whole exploit chain of Jenkins Unauthenticated RCE(and PoC video youtu.be/abuH-j-6-s0)! Hacking Jenkins Part 2 - Abusing Meta Programming for Unauthenticated RCE! blog.orange.tw/2019/02/abusin…
Love Impacket? Ever land on a box and wanna run it, but either don't have Python2 installed or don't want to install new dependencies? I wrote a pipeline to statically build all the examples to Windows and Linux x64 binaries. Hope it helps! github.com/ropnop/impacke…
Most common ways to compromise Domain Admin accounts github.com/swisskyrepo/Pa…
Hacking Jenkins Part 1 - Play with Dynamic Routing! The part 2 is an interesting RCE, and will be published in February :P blog.orange.tw/2019/01/hackin…
Frida Hooking Android #MobileSecurity #AndroidSecurity @fridadotre by @11x256 Part 1: 11x256.github.io/Frida-hooking-… Part 2: 11x256.github.io/Frida-hooking-… Part 3: 11x256.github.io/Frida-hooking-… Part 4: 11x256.github.io/Frida-hooking-… Part 5: 11x256.github.io/Frida-hooking-…
Unauth RCE as root in Cisco Prime Infrastructure... widely used for data center management. Quick n' easy vuln: blogs.securiteam.com/index.php/arch…
Fun fact: if you ever get into a Splunk web console (as admin), you can shell it too. n00py.io/2018/10/poppin…
[BLOG] Get-AzurePasswords: A Tool for Dumping Credentials from Azure Subscriptions blog.netspi.com/get-azurepassw… Thanks @kfosaaen, super handy!
We've developed a new attack on WPA/WPA2. There's no more complete 4-way handshake recording required. Here's all details and tools you need: hashcat.net/forum/thread-7…

Cali Nichols @Nq538RtB5tm7C7
0 Followers 200 Following Join my circle for 5 monthly US stock picks with a track record of winning. We're looking for 15%+ moves in one trading session. Follow for live updates.
Qosee @Qosee11772
11 Followers 599 Following
Bug Bounty Recon @BugBountyRecon
1K Followers 1K Following
Yunus Y. @ynsy34
582 Followers 404 Following Security Engineer ~ Pentester ~ another security enthusiast.. #CyberSecurity #Whitehat #InfoSec #BugHunter #OSCP #OSCE #CISSP
arthusu @ArthusuxD
852 Followers 3K Following Hacking web Pentester PHP coder Linkedin: https://t.co/awweoN7hK6
Arul Kumar @ArulVaiyapuri
952 Followers 2K Following Information Security Manager || Gamer || Computer Freak || Bug Bounty Participant ¯\_(ツ)_/¯
Jason Morrow @jrmorrow43
582 Followers 290 Following Father 1st. Responsible for SOC, IR, Threat Hunting, Vuln Mgmt, AppSec, RedTeam, PT @Asurion. Former SOC leader @walmart. #Blueteam. Tweets are my own.
ver 1.2 @ansjdnakjdnajkd
140 Followers 342 Following All my tweets are my personal opinion, and not a reflection of the position of the companies in which I work.
Yashit Maheshwary @YashitM
417 Followers 932 Following Software Engineering | DevOps | Security | OSWE | OSCP
DragonJAR - Seguridad... @DragonJAR
289K Followers 3K Following Al 👉 seguirnos, te compartiremos información de calidad sobre #Hacking, Somos una empresa 🐲 👇 Colombiana de servicios en #SeguridadInformática
Dori Clark @clori_dark
224 Followers 189 Following We work in the dark, we do what we can, we give what we have, our doubt is our passion and our passion is our task.
Akshay Gaikwad @h1_noob
91 Followers 2K Following
Alex Moraga @amoraga
197 Followers 375 Following Information Technology Engineer, OSCP, interested in penetration test, reverse engineer, bug bounty, and addicted to learning.
Wizard @0xWizard
9K Followers 956 Following
Kiran Kumar @Kiran_Death
132 Followers 970 Following OSCP | Security Researcher | Web App & Network Pen tester | bug bounty Hunter |
w00x @w00x00x
112 Followers 5K Following
Patricio Castagnaro @pcastagnaro
1K Followers 1K Following Information Security | Enthusiast AI & ML | Security Nerd | Speaker
Satyaban pradhan @Satyaba91187267
0 Followers 22 Following
nootemeee @nootemeee
55 Followers 2K Following
Robert Kugler @robertchrk
979 Followers 792 Following Information security and human rights enthusiast
Fatin Sirat @fatinsourav1
793 Followers 4K Following NSU graduate || Hobbyist Security Researcher || Gamer || Lazy.
S4thi5h @s4thi5h_infosec
2K Followers 961 Following Security Engineer, Bug Bounty Hunter @bugcrowd @SynackRedTeam, Gamer.
Partha Sarathi Ghosh @PsarathiGhosh
32 Followers 79 Following Executive Director of TiE Bhubaneswar Chapter
BZHash @B_Z_Hash
493 Followers 306 Following
MarQuis Trill | Crypt... @marquistrillx
1.9M Followers 3.8M Following Bitcoin Class of 2017 | Crypto Trader of The Year 2018 | Binance Top 50 Influencers | I help Americans & businesses with credit repair, funding. Internet Broker
Mukesh Kumar @hack_logic
93 Followers 2K Following Lead Security Engineer | SRT Member |OSCP | CREST CPSA | CREST CRT | eWAPTX | CEH | ISO 27001 | CISC
5hivaay @deepbapna
259 Followers 953 Following Bug Bounty Hunter | Synack Red Team | Cobalt Core | .. https://t.co/mum2cn7mZ5
Asif baig @AsifBaig330
61 Followers 756 Following Founder & CTO @ Veracity Info Parks CISSP, C|EH Certified | Penetration tester | Bug Bounty Hunter 😎
Joseph Saleelam Johni... @josef_jone
41 Followers 680 Following often here inquest of gasp sprinkling infosec stuffs...🕵️
Gokku @karantank111
63 Followers 545 Following
Akash c @akashc99
122 Followers 527 Following Self-learner 📕 |Bug Hunter🐞🔫|Cyber Security Professional | ◢ ◤ 🎧|Malayali 😎 | OSCP | CRTP | CRTE | HTB Rastalabs
Caroline Wong @CarolineWMWong
3K Followers 2K Following Mom. Dog lover. Chief Strategy Officer at @cobalt_io. @humansofinfosec podcast. @LI_learning cybersecurity instructor.
putsi @putsi
3K Followers 3K Following White hat hacking in Team ROT. Also, hacker-for-hire & bug bounty hunter -- https://t.co/5sHK3CHtdm
yeuchimse @yeuchimse
1K Followers 640 Following
Vyankatesh Paskanti @BeingVenky
108 Followers 2K Following Passionate about Information Security ! Info sec GEEK !
CLEAN CAR CLUB @TheCleanCarClub
671K Followers 50K Following We provide latest trends and professional car advice. Join our community of car enthusiasts. DM for promos or email: [email protected]
SFSB Scanner @TigerStripePM
2K Followers 303 Following Intelligence/Threat Analyst | MAX Security Certified | #OSINT Specialist | Scanner Enthusiast | Tracking Incidents and Events in Silicon Valley/SF SouthBay Area
Dr. S. Jaishankar @DrSJaishankar
4.0M Followers 35 Following External Affairs Minister of India. Member of Parliament (Rajya Sabha) from Gujarat State.
Sawyer Merritt @SawyerMerritt
956K Followers 401 Following EV/space/tech news. Bringing you the latest news in a single, easy-to-read feed. $TSLA investor & Model Y owner.
Varonis @varonis
6K Followers 2K Following Varonis is a pioneer in data security and analytics, specializing in software for data security, governance, compliance, classification, and threat analytics.
Aaron Costello @ConspiracyProof
2K Followers 305 Following 🇮🇪 ✝️ Chief of SaaS Security Research @ AppOmni Opinions may be that of James Joyce or Samuel Beckett who occasionally channel their spirits through me.
Rowan Cheung @rowancheung
565K Followers 513 Following Founder of the world’s most read daily AI newsletter @therundownai. Sharing the latest developments in the world of artificial intelligence.
The Kobeissi Letter @KobeissiLetter
992K Followers 569 Following Official X account for The Kobeissi Letter, an industry leading commentary on the global capital markets. Email us: [email protected]
CHP Truckee @CHP_Truckee
31K Followers 40 Following Official California Highway Patrol Truckee Twitter Account
Ravisutanjani @Ravisutanjani
171K Followers 358 Following FinTech, Startups & Indian Growth Story • Influencer • Past : VP - Testbook | Early Days : @Zomato @OYORooms @JarAppHQ | Growth & Partnerships
ProjectDiscovery @pdiscoveryio
37K Followers 125 Following Detect real, exploitable vulnerabilities. Harness the power of Nuclei for fast and accurate findings without false positives.
David J. Bier @David_J_Bier
61K Followers 720 Following @CatoInstitute Director of Immigration Studies, The Selz Foundation Chair in Immigration Policy at Cato, not CATO. "Beer," not Buyer. Libertarian. 🇺🇸🇺🇸
NemesisPRO @nemesis_dao
6K Followers 16 Following The Next Gen of #DeFi is Starting Here... $NMSP Lead Dev: @drexn3t CMO: @ArwandMadison COO: @vasmussenn
CryptoSuperAP£.eth @CryptoSuperApe
68K Followers 7K Following CEO RugLife , NO PUMP ONLY DUMP holder of #eth TG;XSuperApe @ not financial advice @ @BitMartExchange Media Partner
San José Police Medi... @SJPD_PIO
46K Followers 341 Following Follow us here for the first official word on police department news, announcements and information. Call 911 to report emergencies. Twitter not monitored 24/7.
RedBus2US @redbus2us
4K Followers 38 Following Information on studying, working, living and traveling in US as a non-American citizen. F1 Visa, H1B visa, Green Cards, MS, MBA Experiences
Cathie Wood @CathieDWood
1.9M Followers 488 Following Founder, CEO and CIO @ARKinvest. Thematic portfolio manager for disruptive innovation, mom, economist, and women's advocate. Disclosure: https://t.co/chxRD4oWOd
TripCheck - US30 @TripCheckUS30B
514 Followers 0 Following TripCheck is Oregon's traveler information portal. Tweeting incident, alert and seasonal road & weather information for US30 - Portland to The Dalles
Elon Musk @elonmusk
225.5M Followers 1K Following
Whale Alert @whale_alert
2.8M Followers 13 Following Live reporting on large and interesting #blockchain transactions as they happen. Create your own alerts for over 100 coins on https://t.co/wQEfstUfLm
Ivan at Wallarm / API... @d0znpp
7K Followers 1K Following SSRF bible author; Bug Hunter (Google/Facebook/Twitter/Yandex/Tesla); Masters in Physics, MSU / quantum magnetism; CEO at @Wallarm
High Stakes Capital @HighStakesCap
131K Followers 614 Following High-Risk Trading | Ex #1 Trader on Bybit and FTX | Bitcoin OG
Nicolas Grégoire @Agarri_FR
27K Followers 630 Following Web hacker and Burp Suite Pro trainer Refer to https://t.co/D5tRH7U2hg for trainings Follow @MasteringBurp for free tips and tricks
AEMSecurity @AEMSecurity
10K Followers 2K Following Husband + Father | Penetration Tester / Hacker | Interested in Security - Bugbounty - Vulnerability/Exploit Research CVE-2016-0956, CVE-2013-6674, CVE-2014-2018
USCIS @USCIS
493K Followers 317 Following Official X account of U.S. Citizenship and Immigration Services.
Anirban Das @anirb_das
10K Followers 32 Following
Cyrus Mehta @cyrusmehta
25K Followers 884 Following US Immigration Attorney, Owner of Immigration Law Firm, Blogger, Speaker, Adjunct Professor.
Sunnyvale Public Safe... @SunnyvalePSOA
915 Followers 235 Following The Sunnyvale Public Safety Officers' Association represents Police, Fire, EMS & Emergency Dispatch professionals dedicated to keeping Sunnyvale residents safe.
Santa Clara Police @SantaClaraPD
27K Followers 629 Following Do NOT report matters requiring police, fire or medical assistance on Twitter; call 408-615-5580 or dial 911 in an emergency https://t.co/92DX8FO7vO
County of Santa Clara @SCCgov
50K Followers 145 Following The County provides quality services and promotes a healthy safe community. Social Media Disclaimer: https://t.co/7zFei2w39A
. @SVscanners
2K Followers 947 Following
Nathaniel @nnwakelam
41K Followers 919 Following
IGN Deals @IGNDeals
275K Followers 111 Following The best source for up-to-the-minute deals on everything you actually want: Games, tech, weird stuff, it's all here. We may earn commission on some links.
Marco Rubio @marcorubio
4.9M Followers 3K Following Christian,Husband,FatherAMERICAN,SecStateUS, Instagram:@marcorubio Truth:@marcorubio #GatorNation #FinsUp
Greg Siskind @gsiskind
82K Followers 934 Following Co-founder of https://t.co/v47To2bHdF. Immigration lawyer with 1st website, blog & AI apps. Author of 8 books. ABA Law Practice Mag columnist. https://t.co/JGcuPDdFxN
Findomain App @FindomainApp
2K Followers 1 Following Discover vulnerabilities first than anyone else, automation is the key. Save your time and money. Check our service: https://t.co/rYQhUo77gS Running since 2020!
Eduard T - edu4rdshl@... @edu4rdshl
2K Followers 295 Following In love with programming. @sechacklabs & @findomainapp founder. @nspawnorg leader. Do you need a private tool? Send a DM.
The Stanford Daily @StanfordDaily
20K Followers 199 Following 🌲Stanford's independent student newspaper since 1892.🌲
President Trump 45 Ar... @POTUS45
31.1M Followers 38 Following This is an archive of a Trump Administration account, maintained by the National Archives and Records Administration.
Hack2Protect @Hack2Protect
407 Followers 98 Following Hackcrowd is a platform for all security researchers to connect and work with Chinese business on vulnerability disclosure and bug bounty programs!
The White House 45 Ar... @WhiteHouse45
23.6M Followers 12 Following This is an archive of a Trump Administration account, maintained by the National Archives and Records Administration.
Sunnyvale DPS @SunnyvaleDPS
22K Followers 1K Following Official account for the Sunnyvale Department of Public Safety. This account is not monitored 24/7. 9-1-1 for emergencies. 408-730-7100 for general inquiries.
ch @chybeta
14K Followers 4K Following open to bug bounty collaboration @HackenProof Security Researcher Just dm https://t.co/VVU1OV5yz6 业余打土狗