Alex Rebert @ayper
Security @ Google. Previously co-founder of @ForAllSecure. Opinions here are my own. @[email protected] Pittsburgh Joined August 2008-
Tweets117
-
Followers523
-
Following665
-
Likes430
We're joining forces with industry & academia to call for memory safety standardization: security.googleblog.com/2025/02/securi…. It's a recognition that memory unsafety is no longer a niche technical problem but a societal one, impacting everything from national security to personal privacy.
🛡️Want to help make the open source world safer and earn up to $45k 💰? We've revamped our Patch Rewards Program, extending its scope and increasing rewards for security patches – with a particular focus on memory safety, including bonus multipliers! bughunters.google.com/blog/527306491…
Celebrating 15 years of password hacking 💻 🔑, Swiss Army knives (and sometimes even chainsaws or swords) included! 😲 Discover how Google's security teams turn employee farewells into security tests. bughunters.google.com/blog/635526578…
Bounds-checking in C++: so people ask if the .3% overhead is real. It's not just a benchmark result, we got this through our Google-Wide profiling, that gives us the live insights from DCs. This surprised us too as it was much cheaper than we thought research.google/pubs/google-wi…
Bounds-checking in C++: so people ask if the .3% overhead is real. It's not just a benchmark result, we got this through our Google-Wide profiling, that gives us the live insights from DCs. This surprised us too as it was much cheaper than we thought research.google/pubs/google-wi…
The dedication and hard work has payed off: "for hundreds of complex web applications that are built on Google’s hardened and safe-by-design frameworks, we've averaged less than one XSS report per year in total" (see page 9 of the whitepaper).
The dedication and hard work has payed off: "for hundreds of complex web applications that are built on Google’s hardened and safe-by-design frameworks, we've averaged less than one XSS report per year in total" (see page 9 of the whitepaper).
Percentage of codebase that's memory-safe 📈, memory-safety vulns 📉, EVEN IF YOU KEEP ADDING LINES OF C 🤯
Percentage of codebase that's memory-safe 📈, memory-safety vulns 📉, EVEN IF YOU KEEP ADDING LINES OF C 🤯
Excited to share Google's memory safety strategy! We're working to build safer software by migrating to memory-safe languages like Rust as well as hardening our existing C++: security.googleblog.com/2024/10/safer-…. We'll be sharing more details in upcoming posts.
Google CVR is doing incredible vulnerability research.
Google CVR is doing incredible vulnerability research.
Released a blog about our @theori_io AIxCC experience! medium.com/@sa-blog/winni… @tjbecker_ and I were hoping to have more info about other challenges, but they aren't released, so some of the information is a bit limited. Still, hope folks can enjoy reading it!
The drop in Android's memory safety vulnerabilities is astonishing. It's counterintuitive, but prioritizing memory-safe languages in new code quickly reduces memory-safety risks. Once we turn off the tap of new vulnerabilities, they start decreasing exponentially.
The drop in Android's memory safety vulnerabilities is astonishing. It's counterintuitive, but prioritizing memory-safe languages in new code quickly reduces memory-safety risks. Once we turn off the tap of new vulnerabilities, they start decreasing exponentially.
Excited to share this blog post about server-side memory corruption that my team exploited in production. Shout-out to @scannell_simon, @epereiralopez, and @thatjiaozi - this was a very fun project. :-) bughunters.google.com/blog/622075742…
"just as our efforts to eliminate XSS attacks through tooling showed, removing large classes of exploits both directly benefits consumers of software and allows us to move our focus to addressing further classes of security vulnerabilities." security.googleblog.com/2024/03/secure…
Today I spoke on the importance of Secure by Design on behalf of @Google alongside @CISAgov @FDD @VenableLLP & more. We also launched a paper on @Google's approach to Secure by Design & published on how it can be applied to address memory safety vulns: blog.google/technology/saf…
Ever struggle with C++ buffer issues? Spatial Safety is one of the main root causes for in-the-wild exploits! Read more about how we piloted the LLVM proposal for C++ Buffer Hardening here: bughunters.google.com/blog/636855965…
this is a big one… if you have opinions on this, make sure that they are heard 👀 Fact Sheet: Office of the National Cyber Director Requests Public Comment on Open-Source Software Security and Memory Safe Programming Languages | ONCD | The White House m.cje.io/3s2Xz6t
I’m excited to announce the AI Cyber Challenge, a major, two-year @DARPA competition challenging the best and the brightest in cybersecurity and AI to secure the systems on which all American rely. aicyberchallenge.com
Announced at the #BlackHat keynote: @Google, @OpenAI, @Anthropic, and @Microsoft will collaborate with @DARPA for its AI Cyber Challenge – a 2-year competition aimed at driving innovation at the nexus of AI and cybersecurity. Read more here: whitehouse.gov/briefing-room/…

Brendan Dolan-Gavitt @moyix
30K Followers 6K Following Building offsec agents: https://t.co/G9EtnC2Gl3 PGP https://t.co/3WXr0RfRkv
Marcel Böhme👨�... @mboehme_
6K Followers 1K Following Software Security @maxplanckpress (#MPI_SP), PhD @NUSComputing, Dipl.-Inf. @TUDresden_de Research Group: https://t.co/BRnFNNgynB
Oliver Chang @halbecaf
2K Followers 144 Following https://t.co/bmyDmTlFKv Senior Staff Eng @ Google Open Source Security. Founder of https://t.co/K575lba4tt, lead/co-founder for OSS-Fuzz.
David Korczynski @Davkorcz
1K Followers 251 Following researcher @ADALogics | Software security, fuzzing, vulnerability analysis, AI, open source. | CS PhD from @CompSciOxford
Dmitry Vyukov @dvyukov
9K Followers 381 Following I tweet about fuzzing, bugs, sanitizers, security, hardening, kernels, syzkaller, Go, performance, concurrency, lock-free algorithms.
Halvar Flake @halvarflake
44K Followers 3K Following Choose disfavour where obedience does not bring honour. I do math. And was once asked by R. Morris Sr. : "For whom?" @[email protected]
nedwill @NedWilliamson
16K Followers 551 Following Tesla {Autopilot, Dojo}; Previously Google Security; PPP for life; SockPuppet, Soundhax, Speedcubing
Khaled Yakdan @KhaledYakdan
544 Followers 190 Following Co-founder @CI_FUZZ. Fuzzing/Vulnerability Research, Reverse Engineering, Malware Analysis.
Jonathan Metzman @metzmanj
2K Followers 535 Following I do fuzzing on Google's Open Source Security Team. I work on OSS-Fuzz/ClusterFuzz/FuzzBench. Speaking on behalf of myself, not my employer.
Richard Johnson @richinseattle
18K Followers 3K Following Computer Security, Reverse Engineering, and Fuzzing; Training & Publications @ https://t.co/mloVP6rPB7; hacking the planet since 1995; Undercurrents BOFH
Kostya Serebryany @kayseesee
4K Followers 564 Following Program analysis, simulators, bug detectors. Fuzzing software and hardware. Views are my own. Tweets are not only about tech.
FuzzingLabs @FuzzingLabs
8K Followers 4K Following Research-oriented Cybersecurity startup specializing in #fuzzing, Vulnerability Research & Offensive security on Mobile, Browser, AI/LLM, Network & Blockchain.
Harrison Green @hgarrereyn
2K Followers 275 Following PhD student @S3DatCMU @CyLab | Reverse Engineer @DiceGangCTF | Senior Otter @osec_io | prev. @Margin_Research, @MayhemSec, @LabDurrant
Andy Nguyen @theflow0
61K Followers 446 Following The opinions stated here are my own, not those of my company.
Mihai Maruseac @mihaimaruseac
2K Followers 2K Following Supply chain security @ Google OSS Security Team. Previously TensorFlow Security & OSS (@ Google); Haskell+differential privacy+ML @ LeapYear. Views my own
Crispin Cowan 🇺�... @CrispinCowan0
2K Followers 3K Following Will secure your architecture for food *NIX: StackGuard, LSM, AppArmor. Win: UAC, AppContainer 25 years #infosec, 45 years in tech. Erdős 3. Pronoun: "Doctor"
KT @koczkatamas
4K Followers 927 Following Security Engineer @ Google (personal account, opinions are my own!). ex-Tresorit. Ex-captain of @SpamAndHex CTF team.
Thuan Pham @thuanpv_
2K Followers 900 Following Senior Lecturer in Cyber Secutity at @UniMelb & ARC DECRA Fellow. Prev @MonashInfotech & @NUSComputing. (Fuzz) Testing enthusiast. Tweets are my own.
haroon meer @haroonmeer
16K Followers 3K Following Security Geek at Thinkst. We build https://t.co/Sv6Gp3sG6b
Dianna @diannanicolas40
217 Followers 3K Following
Ytawpa @Ytawpa8860
15 Followers 1K Following
Mohamed Nashaat @MOHAMEDNASHAAT_
474 Followers 580 Following
Piper @piperchester
336 Followers 3K Following Continually learning and undergoing maintenance. If not in codes, probably out doors. he/him
Parsa @sighpaaa
3 Followers 4K Following
Harish Kumaran K R @_HarishKumaran_
0 Followers 20 Following
甲斐下英一 @kaishitaeiichi
419 Followers 2K Following 男。1975/10/01生まれ。フリーのITエンジニア。もう10年以上データ分析やデータ基盤などのシステムの開発、運用にたずさわっています。統計検定1級。
KYZRTXP @kyzrtxp
4 Followers 466 Following
Tiago Nascimento @vilard
23 Followers 148 Following
eymeteymet77 @eymet1
69 Followers 2K Following Digital creators, marketer and publishing end to end encrypted data and privacy policy keeper.
JackSidewinder @JackSidewinder
111 Followers 2K Following
dainel @dainel7906771
0 Followers 27 Following
Ahmet Hasircioglu @roxaxis
215 Followers 1K Following software developer, blockchain enthusiast, sci-fi lover, nintendo addict, big supporter of beer industry, husband, owned by two cats
Velda Ruecker @RueckerVel9512
97 Followers 3K Following
Emmy Achi @achimlejit
44 Followers 1K Following I am a scout for Start Engine and I help get innovators, CEO'S and founder's onboard StartEngine's investor roundtable to acquire funding
Shoresh Archer @ShoreshArcher
9 Followers 542 Following Former lamb-shepherd(aka Berxvan) in Elegez/Ararat. SW Developer in the field of NFC, RFID, IoT, PROFINET, TSN.
Iteractively @iteractively
26 Followers 2K Following
Daniel Moghimi @flowyroll
3K Followers 343 Following Senior Scientist @Google. Computer and Hardware Security. Tweets are mine and not my employer's. #downfall Previously: @UCSD @Qualcomm @WPI @TalosSecurity
比个心 @vbigthing
90 Followers 4K Following
hikalium @hikalium
13K Followers 1K Following Fully-stuck Operating System Software Engineer at Google ( ChromeOS ) / 早大情報理工←学芸大附高 / WasabiOS / https://t.co/2C4XlSy922 / Opinions are my own
Benson Liu @bliutech
296 Followers 639 Following security engineer @meta // cs @ucla // ctf @pbrucla
boyz @indahoodboyz
4 Followers 387 Following
Sajjad “JJ” Arsha... @sajjadium
1K Followers 247 Following Gmail/Web Security @Google, #GoogleCTF Organizer, @DEFCON Instructor
Newrash @NewrashxDC_x
45 Followers 5K Following
Madhav Kumar @mkumar_ish
30 Followers 799 Following finance, software/C++, casualpolitik, LLMposting
Hawk @nullcoder_xd
286 Followers 5K Following 20| Here to explore; no business deals. Shit(re)poster
Smurshurl @SmurshurlAVLFL
50 Followers 5K Following
Alone_girl @Diomid49577
0 Followers 22 Following
horu @KAPHDl
2 Followers 189 Following
Sausidarsh @SausidarshSQ0
105 Followers 2K Following
Bastien Gares @bastiengares
3K Followers 7K Following ML Engineer | Data Scientist @ Orange | Student @ Mines Paris PSL Executive Education & DataScientest | alumni MSc Computer Science @ Supinfo | math python rust
Ynshimself @ynshimself
22 Followers 132 Following
c with classes @cwithclasses
1 Followers 47 Following
TRCV/7/ @andreitrcv
47 Followers 3K Following
Brendan Dolan-Gavitt @moyix
30K Followers 6K Following Building offsec agents: https://t.co/G9EtnC2Gl3 PGP https://t.co/3WXr0RfRkv
Marcel Böhme👨�... @mboehme_
6K Followers 1K Following Software Security @maxplanckpress (#MPI_SP), PhD @NUSComputing, Dipl.-Inf. @TUDresden_de Research Group: https://t.co/BRnFNNgynB
Oliver Chang @halbecaf
2K Followers 144 Following https://t.co/bmyDmTlFKv Senior Staff Eng @ Google Open Source Security. Founder of https://t.co/K575lba4tt, lead/co-founder for OSS-Fuzz.
cts🌸 @gf_256
61K Followers 820 Following Co-founder and hacker @zellic_io & @pb_ctf | https://t.co/nlNai6iiMP | 24 Intern @egirl_capital slow to reply to DMs
chompie @chompie1337
83K Followers 1K Following hacker, weird machine mechanic, X-Force Offensive Research (XOR)
David Korczynski @Davkorcz
1K Followers 251 Following researcher @ADALogics | Software security, fuzzing, vulnerability analysis, AI, open source. | CS PhD from @CompSciOxford
lcamtuf @lcamtuf
38K Followers 498 Following Substack: https://t.co/yFvmNisGW3 Homepage: https://t.co/iFAXZxCO5H
Dmitry Vyukov @dvyukov
9K Followers 381 Following I tweet about fuzzing, bugs, sanitizers, security, hardening, kernels, syzkaller, Go, performance, concurrency, lock-free algorithms.
chrisrohlf @chrisrohlf
11K Followers 878 Following 🇺🇸 Waging algorithmic warfare since 2003. Software & Security Engineer at a big tech co. Non-Resident Research Fellow @CSETGeorgetown CyberAI
Julien Vanegue @jvanegue
6K Followers 958 Following CTO Office / Head of Infra & Security Research @Bloomberg. Interested in mathematical techniques for software, systems, and network analysis at world scale.
Halvar Flake @halvarflake
44K Followers 3K Following Choose disfavour where obedience does not bring honour. I do math. And was once asked by R. Morris Sr. : "For whom?" @[email protected]
Andrea Fioraldi @andreafioraldi
3K Followers 587 Following Cyber Response Italian Supercazzola Technology Officer at @mhackeroni Inc. Writing your favourite fuzz testing tools with @aflplusplus. Security researcher.
Maddie Stone @maddiestone
61K Followers 804 Following Security Researcher. Previously Google Project Zero and TAG | 0days all day. Love all things bytes, assembly, and glitter. she/her.
Mathias Payer @gannimo
8K Followers 388 Following Securitatis inquisitor and professor at @EPFL_en leading the #HexHive 🐝 group, focusing on system/software security. @[email protected] (he/him)
nedwill @NedWilliamson
16K Followers 551 Following Tesla {Autopilot, Dojo}; Previously Google Security; PPP for life; SockPuppet, Soundhax, Speedcubing
Ange @angealbertini
25K Followers 908 Following Reverse engineer, file formats expert. Corkami, CPS2Shock, PoC||GTFO, Sha1tered, Magika... Security engineer @ Google. He/him.
Khaled Yakdan @KhaledYakdan
544 Followers 190 Following Co-founder @CI_FUZZ. Fuzzing/Vulnerability Research, Reverse Engineering, Malware Analysis.
dmnk.bsky.social @domenuk
5K Followers 512 Following 【DΞCOMPILΞ NΣVΞR】 Android Red Team @google Fuzzing @aflplusplus CTF @enoflag (opinions my own)
David Weston (DWIZZZL... @dwizzzleMSFT
25K Followers 2K Following Corporate Vice President, OS Security and Enterprise @Microsoft
Sajjad “JJ” Arsha... @sajjadium
1K Followers 247 Following Gmail/Web Security @Google, #GoogleCTF Organizer, @DEFCON Instructor
David Roche @MountainRoche
24K Followers 2K Following Coach of runners on the trails, roads & track 🦖 Leadville 100 Mile course record holder 🧡 Check out the Some Work All Play podcast!
Xion @0x10n
4K Followers 123 Following CMU CSD PhD student / 2024 Top#0 Chrome Researcher / P2O Vancouver '24, TyphoonPWN '24/'25, DEFCON CTF 31-33, ... / PPP, KAIST GoN '18, @zer0pts
alyssa mastromonaco @AlyssaMastro44
135K Followers 3K Following jam maker. rescue cat mom. some days Nancy Drew, others Ramona Quimby. books, #hysteria, producer.
Cristina Cifuentes @criscifuentes
2K Followers 287 Following Latina, migrant, mother and wife, researcher, teacher, mentor, leader. Mother of decompilation
Ben L. Titzer @TitzerBL
2K Followers 349 Following Director of the WebAssembly Research Center at Carnegie Mellon University. Principal Researcher. Wasm co-founder. Former V8 engineer. Compilers!
Carl Smith @cffsmith
1K Followers 706 Following Security @Google; @FluxFingers/@Sauercl0ud; previously V8 Security, Intern {Project Zero, @XI_Research}. Personal account. https://t.co/w9zosKSHdh on Bluesky.
Calle Svensson @ DEFC... @ZetaTwo
7K Followers 711 Following Security Engineer @ XTX. MSc in eng. physics & CompSci, dev & gamer. ❤️ music & long distance running. Wanna do a PhD sometime. Same U/N on all other sites
Will Harris @parityzero
4K Followers 802 Following Chrome Security gnome. I work on the sandbox and local data protection on Windows. @parityzero.99 on signal. Opinions here are my own!
Rep. Summer Lee @RepSummerLee
52K Followers 2K Following Representing Pennsylvania's 12th Congressional District. Member of @OversightDems and @EdWorkforceDems.
Jeff Geerling @geerlingguy
78K Followers 5K Following Father, author, developer, maker. Sometimes called "an inflammatory enigma". #stl #ansible #k8s #raspberrypi #crohns #ostomy
polict @polict_
1K Followers 270 Following The opinions stated here are my own, not those of my company.
Joseph Cox @josephfcox
93K Followers 3K Following Hacking/crime/privacy journalist. Author of DARK WIRE. Co-founder of @404mediaco. Signal: joseph.404 Email: [email protected]
Lukas Weichselbaum @we1x
2K Followers 505 Following Leading @Google's web security team. Opinions are my own. Bluesky: @webappsec.dev
Argha 🏏 📚 💻 @StringsVsAtoms
453 Followers 7K Following 🌏 वसुधैव कुटुम्बकम् - 'the world is one family' 🌍
Mark Griffin @seeinglogic
366 Followers 104 Following Dev/hacker | Improving human understanding of code | A picture's worth 1KLOC
Kinuko Yasuda @kinu
7K Followers 689 Following Software Engineer working on safety, C++, Rust (← Chrome ← YouTube) @Google 🇩🇪 / Opinions are my own @kinuko.bsky.soc https://t.co/6rTECc5OSx
b33f | 🇺🇦✊ @FuzzySec
33K Followers 1K Following 意志 / Antiquarian @ IBM X-Force / t501 / Ex-TORE ⚔️🦅 / I rewrite pointers and read memory / AI Psychoanalyst / Teaching @CalypsoLabs
Jenessa Petersen @JPinTech
2K Followers 4K Following Privacy and housing are rights. BLM. Operations at @AuthZed, ex- @letsencrypt, ex- @coreos. All tweets are my own. MINE ALL MINE. she/her
Joshua J. Drake @jduck
28K Followers 2K Following Securing the future through modern technology. Founder and Software Security Specialist at @magnetitesec
Forrest Brazeal @forrestbrazeal
38K Followers 208 Following Purveyor of good tech things. prev. @google
Pete Buttigieg @PeteButtigieg
3.7M Followers 3K Following Husband, dad, veteran, writer, and proud Midwesterner. 19th US Secretary of Transportation and former Mayor of South Bend.
nolen royalty @itseieio
24K Followers 568 Following the internet can still be fun! https://t.co/mjpr5uCSdY • https://t.co/PAOcAATGnX • https://t.co/rXQU7beqam • https://t.co/e4X1aTyU9N alum recurse, jane street
TracketPacer @TracketPacer
58K Followers 396 Following 🚀 rockit network engineer 👩🏼💻🛜 weird use cases & silly tech | find me on a platform not run by a nazi 👋🏼
Will Crichton @tonofcrates
7K Followers 159 Following Cognitive engineer, assistant professor @BrownUniversity.
Tom 7 @tom7
8K Followers 362 Following lexicographic NES AIs, alphabetical star wars, video games, fonts, album-a-day, expert mode running, chiptune, programming languages, etc.
Sophia d’Antoine @Calaquendi44
3K Followers 124 Following Founder @Margin_Research, Hacker in Residence @ NYU, @RPISEC
Dr. Claire Le Goues @clegoues
3K Followers 1K Following Prof@SCS@CMU. https://t.co/fcjhKkZzHd Posting intermittently and guiltily.
Matt Lehman @obsecurus
760 Followers 1K Following Principal Investigator & AI Strategist | AIxCC Lead Architect
DARPA @DARPA
270K Followers 394 Following Official account of the Defense Advanced Research Projects Agency. Follows/retweets/links do not = endorsement. Breakthrough technologies for national security.
Joshua Saxe @joshua_saxe
3K Followers 1K Following AI+cybersecurity at Meta; past lives in academic history, labor / community organizing, classical/jazz piano, hacking scene
Tristan Brindle @tristanbrindle
1K Followers 204 Following Computer guy. Recovering mathematician. Likes C++, for some reason.
Oege de Moor @oegerikus
6K Followers 602 Following CEO and founder of XBOW. Previously: Founder of GitHub Next, founder of GitHub Copilot, CEO and founder of Semmle (GitHub Advanced Security), prof at Oxford.
XBOW @Xbow
10K Followers 6 Following Bringing AI to offensive security by autonomously finding and exploiting web vulnerabilities. Watch XBOW hack things: https://t.co/D5Mco1u8zM
Know Your Meme @knowyourmeme
629K Followers 392 Following Documenting all of internet culture. Trying to understand a meme? Tag us and we'll give you the scoop Check out our new shop! https://t.co/fp4sdT5bGG
Dmitri Alperovitch @DAlperovitch
197K Followers 2K Following Geopolitics/NatSec, Russia, China, Cyber. Chairman @SilveradoPolicy; Author WorldOnTheBrink; Host @GeopolDecanted; Founder @alperovitch; Co-Founder @CrowdStrike
itszn @itszn13
9K Followers 697 Following Amy | Security researcher | https://t.co/W1SE7NmCx8 | bsky: https://t.co/JBmOGE4YKO | LLM ART: https://t.co/7FtQ8O8nAW
Pierre H. 🔥🌸 @pedantcoder
4K Followers 179 Following present: security (zalloc, kalloc_type, IPC, VM, …) | past: GCD, synchro, objc_direct, perf… | timeless: 🇫🇷 snark | @[email protected]
Ed Zitron @edzitron
95K Followers 5K Following Newsletter https://t.co/D5qDgUKaNR - Better Offline Podcast - https://t.co/pUoGsuaQTw - Column Business Insider - CEO at https://t.co/5idt8AyPqr - Award-Winning Tech PR
ChainLight @ChainLight_io
4K Followers 234 Following smart contract audit & token regulation and compliance | 8-time winner @defcon | winner @paradigm_ctf 23 | member @_SEAL_Org | est. 2016
Max Roser @MaxCRoser
277K Followers 1K Following Data to understand global problems and research to make progress against them. Founder of @OurWorldInData / Professor at @UniofOxford's @BlavatnikSchool
Ezequiel Pereira @epereiralopez
4K Followers 56 Following 🇺🇾 Security engineer at Google 💻 *Opinions stated here are my own, not those of my company*
Anthony Weems @amlweems
3K Followers 270 Following Cloud Vulnerability Research • The opinions stated here are my own, not those of my company.