@[email protected] @emanuelduss
IT security. Linux & network protocols. Pentesting web applications, networks & AD infrastructures. Mostly technical stuff here. @[email protected] emanuelduss.ch Switzerland Joined September 2009-
Tweets2K
-
Followers861
-
Following1K
-
Likes8K
Collision – Compass Security was able to execute their stack overflow attack against the Synology BC500. However, the exploit they used was previously known. They still earn $3,750 and 0.75 Master of Pwn points. #Pwn2Own
SecAnalyst Sylvain Heiniger (@sploutchy) loves NTLM relay. Dive into his latest blog post to learn how it can be used against Microsoft SQL servers. Discover misconfigurations in your infrastructure and fortify your defenses today. 🛡️ #MSSQL #NTLMrelay blog.compass-security.com/2023/10/relayi…
📡 Discover MQTT Fundamentals & Security in IoT in @MischaBachmann ’s blog post! Explore CVE-2023-28366, a memory leak in Eclipse Mosquitto. #MQTT #IoTSecurity #CVE2023 blog.compass-security.com/2023/09/from-m…
Security analyst @emanuelduss refreshed our hacking tools #cheatsheet for our security trainings, and it's now packed with info on Active Directory: github.com/CompassSecurit… 🔒 #security #pentest #tools
Discover how a strange workstation behavior exposed alarming vulnerabilities! We uncovered 2 privilege escalation bugs in Lenovo update functionality. Read the blog post for a fascinating journey down the rabbit hole. 🔐 #Cybersecurity #PrivilegeEscalation blog.compass-security.com/2023/07/lenovo…
Compass Security identified a #vulnerability in ThinkPad Hybrid USB-C with USB-A Dock Firmware Update Tool. compass-security.com/en/news/detail…
🔒Enhance #remotedesktop security with practical tips from Security Analyst Felix Aeppli. Learn about features like Remote Credential Guard and Restricted Admin Mode to protect against credentials theft and impersonation. blog.compass-security.com/2023/06/securi…
Today we're publishing new techniques for recovering NTLM hashes from encrypted credentials protected by Windows Defender Credential Guard. These techniques also work on victims logged on before the server was compromised. research.ifcr.dk/pass-the-chall…
Now adding external docs links to The Hacker Tools tools.thehacker.recipes Major tools that aren't documented will be on THT. Mimikatz is mostly over with. Impacket is now next in line. But docs that already exist will be linked. Feel free to contribute 🤗
Are you also tired of "This setting is managed by your administrator or organization" messages, preventing you from altering settings, although you are admin? Fear no more, I got you covered - well at least partially: AV FW DeviceGuard Edge FF gist.github.com/LuemmelSec/20e…
HACKvent2022 awaits! At Dec. 1st 2022, 00:00 CET the first challenge will be released. Ready for sleep-deprivation? 😉 Enter the free competition here: competition.hacking-lab.com Leaderboard: ranking.hackvent.hacking-lab.com #HV22 #ctf
At @BlackAlpsConf, our analyst Sylvain Heiniger @sploutchy presented a new attack path to AD CS. Read his blog post for details and tools updates. #adcs #esc11 #ntlmrelay #rpc #msrpc blog.compass-security.com/2022/11/relayi…
Today, we share the analysis of a very rare piece of quantum military-grade #ransomware. All your data are belong to us !!! blog.compass-security.com/2022/11/a-symm…
I found a vulnerability that allowed me to unlock any @Google Pixel phone without knowing the passcode. This may be my most impactful bug so far. Google fixed the issue in the November 5, 2022 security patch. Update your devices! bugs.xdavidhu.me/google/2022/11…
Execute commands as another user w/t dumping LSASS or touching the ADCS server ? Thanks to @Defte_ a new module has been added to CrackMapExec 🚀 The module will impersonate any logged on user to exec command as "this" user (system, domain user etc) 🔥
In der ARD am 13. Dezember (Nacht von Mo auf Di) um 0:20 Uhr: Dokumentarfilm „Alles ist Eins. Außer der 0.“, eine Geschichte digitaler Subversion über das Wirken von Wau Holland programm.ard.de/TV/Programm/Su…
We worked together with @_zblurx to pull this new feature on CME ! CrackMapExec can now authenticate using kerberos with login/pass/nthash/aeskey without the need of a KRB5CCNAME ticket env 🚀 But wait there is more! by adding this feature we can now mimic kerbrute features 🔥🫡
mitmproxy 9 is out! 🎉 mitmproxy.org/posts/releases… Three highlights:
Anyone knows how to obtain a #bitlocker recovery key with #dislocker? I can decrypt the drive with another protector. Windows somehow can do this. Looking for a way to "convert" respectively use a VMK or FVEK to obtain/decrypt the recovery key passphrase. RT is highly appreciated

Compass Security @compasssecurity
3K Followers 111 Following Penetration Testing, Red Teaming, Incident Response, Bug Bounty, Security Training, Cyber Range
Thomas Roethlisberger @troethli
408 Followers 445 Following curious infosec guy, red teamer, incident responder, pentester, appsec consultant, former software engineer, troubleshooter | I do not speak for my employer
Daniel Stocker | stö... @stoege
721 Followers 1K Following Team #IPv6 #BSD #BGP #Coder #Security #Nörd #beliveingod work for #iway
Marc Ruef 𖢥 @mruef
5K Followers 279 Following infosec researcher @scipag · lead architect @vuldb · lecturer @eth @fhhwz @hslu @ikf_lucerne · keynote speaker · book author 🐘 https://t.co/ilVrKNH5Jc
Dylan „srsly WTF“... @voodoogeek
1K Followers 2K Following {flamboyant} cybersecurity :: there goes your resilience /// the light inside has broken, but I still work blue-ish: voodoogeek, threading: voodoogeek23
Pascal Gujer @pascal_gujer
1K Followers 379 Following security researcher | speaker | trainer | lockpicking | evil maid attacks | maker | https://t.co/kkOosn7aaR | https://t.co/RqmtvBUNxN
Charlie Bromberg « ... @_nwodtuhs
15K Followers 653 Following Trying to hack the way we hack things 🏴☠️
Thomas Hug @tomdawon
1K Followers 281 Following MSc El.-Ing. ETH, Solarinstallateur NIV14, Solarblog https://t.co/lBS3Tr60XC, 18.8kWp (S/N), 19.32kWh, Founder & CEO of https://t.co/x3ITpCN2zS (@nine_ch)
AISecHub @AISecHub
4K Followers 4K Following 🚀 AISecHub | AI & Cybersecurity | Discussing AI-driven threats, securing AI systems, and sharing insights on emerging challenges 💡
dusaharish @215harish
16 Followers 47 Following
Ircrapu @Ircrapu3580683
23 Followers 968 Following
Foqau @Foqau7729
57 Followers 1K Following
dexter @dexter79331247
0 Followers 2K Following
tarantularifat @tarantularifat
2 Followers 817 Following
Gaarod @Gaarod1193129
86 Followers 3K Following
Majus Hesir @flog527
0 Followers 20 Following
Lakshmi Barathi @Barathi73668
1 Followers 133 Following
Sahadot Mithun @sahadotmithun
30 Followers 511 Following Talks about #cybersecurity , #Penetration_Testing, #Vulnerability_Assessment, #Web_Security_Testing, #Malware_Removal
Look at my homepage @cole_meyer43343
25 Followers 3K Following Virtual currency game platform, deposit and get 50% bonus, recruit agents to earn 100,000 USDT per month, contact us https://t.co/j3jdAz4niL
Maxi Soler @MaxiSoler
6K Followers 5K Following CTO @ArtsSEC | Podcasting @securepodcast from Argentina
Unfilterable @Unfilterable1
6 Followers 249 Following
Juan Pablo Perata @cxzero
289 Followers 5K Following OSCP | Pentester | Bug Hunter | CTF player | Developer | Community
Dilip kumar @L364CY_R00T
7 Followers 627 Following
Lou Scicchitano @LouScicchitano
433 Followers 1K Following Senior Security Consultant at @TrustedSec
Rodrigo doble cero R0... @DSTNAT
2K Followers 6K Following Pensando en binario,tl (mk3b77), #TeamHDP. Por VENEZUELA, Por COLOMBIA, pentester.
C @bratherings
1 Followers 103 Following
Vect0r @Vect0r_SEC
36 Followers 73 Following IT-Security + scientific psychedelic studies + music creator https://t.co/JlmE9NKUd3
XploitNation @0xSwayamm
107 Followers 1K Following 18 | Learning | Security Researcher 👨💻 | Bug Hunter | CyberSecurity Enthusiast
ice @ice98079542
95 Followers 3K Following
covertshell @covertshell
291 Followers 1K Following Black Hat - Cyber Security - Digital Forensics - BlueTeam Tweets are my Own!
classic @classic225703
43 Followers 579 Following
@tawanan90000 @tawanan90000
129 Followers 2K Following
EzV01D @EzV01d
30 Followers 383 Following
Jérémy MIRRE @ifollownogod
454 Followers 5K Following French West Indies | Offensive Security @Verizon | Red Team, Purple & DevSecOps | Proud Staff @defcon11333
Victoria @victoria_hynes1
259 Followers 3K Following
sam @samerine213
19 Followers 332 Following
plekl1 @tell1skivi
83 Followers 311 Following Security engineering things. Wearing many hats. I like pianos.
Manish karn @Manishk55269548
9 Followers 260 Following my name is Manish karn iam students iam 18 year old I read in class 10
Aun_rizvi @aunm41601
3 Followers 91 Following
Bunkerity @bunkerity
144 Followers 125 Following Open source Cybersecurity solutions. Let's fool attackers. 🛡️
wolololol @hive137
9 Followers 174 Following
Jaber Hasan @Jaber333hasan
22 Followers 657 Following I am a learner, I am ready and eager to learn anything🎉 I believe Nothing can be more fun than learning something new
Claudia Duss-Küng @KungDuss
0 Followers 5 Following
Marius Zindel @zindable
10 Followers 19 Following
so long and thanks fo... @ant0inet
3K Followers 0 Following
Compass Security @compasssecurity
3K Followers 111 Following Penetration Testing, Red Teaming, Incident Response, Bug Bounty, Security Training, Cyber Range
Christian Folini @ChrFolini
3K Followers 999 Following Author of the #ModSecurity Handbook 2ed, forme OWASP @CoreRuleSet project co-lead and trainer. Program chair @SwissCyberStorm and board National Cyber Strategy
Thomas Roethlisberger @troethli
408 Followers 445 Following curious infosec guy, red teamer, incident responder, pentester, appsec consultant, former software engineer, troubleshooter | I do not speak for my employer
linuzifer @Linuzifer
52K Followers 3K Following @[email protected] https://t.co/EFBsT1HXsW https://t.co/Dl6yL2aVsW https://t.co/C0bofaQQC2
mpgn @mpgn_x64
18K Followers 230 Following Flibustier du net ̿ ̿̿'̿'\̵͇̿̿\=(•̪●)=/̵͇̿̿/'̿̿ ̿ ̿ ̿ Podcast Hack'n Speak @hacknspeak / https://t.co/GyACSFg9mw
Daniel Stocker | stö... @stoege
721 Followers 1K Following Team #IPv6 #BSD #BGP #Coder #Security #Nörd #beliveingod work for #iway
Marc Ruef 𖢥 @mruef
5K Followers 279 Following infosec researcher @scipag · lead architect @vuldb · lecturer @eth @fhhwz @hslu @ikf_lucerne · keynote speaker · book author 🐘 https://t.co/ilVrKNH5Jc
Adam Chester 🏴�... @_xpn_
36K Followers 498 Following Hacker for Hire at @SpecterOps | Blog at https://t.co/tjfTOllCEu | Insta at https://t.co/PqR6CZPwjl
Dylan „srsly WTF“... @voodoogeek
1K Followers 2K Following {flamboyant} cybersecurity :: there goes your resilience /// the light inside has broken, but I still work blue-ish: voodoogeek, threading: voodoogeek23
Gareth Heyes \u2028 @garethheyes
37K Followers 1K Following JavaScript for hackers: Learn to think like a hacker. https://t.co/e0aNEbEDk5
LuemmelSec @theluemmel
8K Followers 552 Following I speak BloodHound. Husband, Father, IT-Guy, Security-Noob Blog: https://t.co/PXB35KEqs6 GitHub: https://t.co/Unp9jZOpBn
Melvin langvik @Flangvik
11K Followers 513 Following Red Team @TrustedSec , terrible creator of InfoSec content 📹Opinions are my own and not the views of my employer.
Pascal Gujer @pascal_gujer
1K Followers 379 Following security researcher | speaker | trainer | lockpicking | evil maid attacks | maker | https://t.co/kkOosn7aaR | https://t.co/RqmtvBUNxN
candid wueest 🇨�... @mylaocoon
2K Followers 412 Following Im a security geek. My tweets are my own. Orga of #Area41 #DC4131 - I break stuff, I have fun, I have fun breaking stuff ;
Sam Curry @samwcyo
97K Followers 1K Following Hacker, bug bounty hunter. Run a blog to better explain web application security.
Lilith Wittmann @LilithWittmann
45K Followers 533 Following Krawallinfluencerin, “der Schwarze Block der Verwaltungsdigitalisierung”; politisch hier. 👩💻 @zerforschung & @bund_dev ✉️ [email protected].
Lou Scicchitano @LouScicchitano
433 Followers 1K Following Senior Security Consultant at @TrustedSec
scot berner @slobtresix0
1K Followers 582 Following Christian, Husband, Father, InfoSec Guy, Wakeboarder, Marksmen. https://t.co/HtU5O4lDC3 - open to mentor, answer questions or review CFPs -
OSINT Switzerland @OsintSwiss
309 Followers 0 Following An association for experts, practitioners, and learners with the shared goal of developing and expanding their knowledge of open-source intelligence techniques.
BSides Bern @BSides_Bern
143 Followers 63 Following Brought to you by BSides Switzerland (@BSidesHelvetia) We are @BSidesZurich cousin. Register to our newsletter at https://t.co/OUzUEoutQd #BSidesBE #StayTuned
Andrea P @decoder_it
8K Followers 290 Following Security Consultant @semperistech . Independent Security Researcher. Cyclist & Scubadiver. MSRC MVR 2022. "So di non sapere"
PotluckCTF @PotluckCTF
247 Followers 5 Following Potluck CTF - A CTF competition where the participants bring the challenges: https://t.co/yVjd8PvsfB
BlackWasp @BlWasp_
2K Followers 248 Following Pentester and Red Team technical leader at Advens | Microsoft MVP
Tom Shelton-Lefley @TomLefley
418 Followers 160 Following Software engineer working on @Burp_Suite. Ramblings, anecdotes, and cynical views are my own.
mgeeky | Mariusz Bana... @mariuszbit
14K Followers 813 Following 🔴 Operator, Initial Access afficionado, Researcher, ex-AV engine developer, ex-Malware analyst 🦋 @mgeeky.bsky.social 🫖 green tea lover
wolololol @hive137
9 Followers 174 Following
VULNRΞPO @vulnrepo
65 Followers 14 Following VULNRΞPO is a FREE Open Source project designed to speed up the creation of IT Security vulnerability reports and Security Reports Repository.
Peter Šufliarsky @PeterSufliarsky
9 Followers 151 Following
Mor Davidovich @dec0ne
2K Followers 362 Following Security Researcher | Red Teamer | Malware Developer
ShorSec Cyber Securit... @ShorSecLtd
242 Followers 2 Following Penetration Testing, Purple Team, Red Team & Adversary Emulation. Tested by hackers Trusted by clients
Shlomi Nechama @Shlom1N
5 Followers 26 Following
Claudio Salazar @_csal
802 Followers 602 Following @elixirlang lover - security @shine_tools - https://t.co/imcRjHMXh7
Stephen Fewer @stephenfewer
9K Followers 245 Following Senior Principal Security Researcher @rapid7. Decompiler @relyze. Core @metasploit dev 2009 - 2013. MSRC Top 100 2015. Pwn2Own 2011, 2021, 2024.
icyguider @icyguider
2K Followers 152 Following
Alain M. @plopz0r
448 Followers 249 Following
Spiros Fraganastasis @m3g9tr0n
14K Followers 1K Following Team @hashcat! Eternal n00b and knowledge seeker! Age is just a number and motivation is the fuel! Whatever you do in your life, do not forget to be humble.
Duncan Ogilvie 🍍 @mrexodia
9K Followers 335 Following Reverse engineer, creator of @x64dbg and 100+ other projects. Love binary analysis and Windows internals. Dreaming about doing open source full time...
Aapo Oksman @AapoOksman
790 Followers 78 Following I do cybersecurity focusing on devices, networks, appsec and the community!
Maximilian Hils @maximilianhils
4K Followers 411 Following @mitmproxy developer, making cloud more secure at @google. Mostly active on https://t.co/oQYW6YsbwO and https://t.co/3TjzXTVFMO.
Marius Zindel @zindable
10 Followers 19 Following
Samuel Bétrisey | sa... @samuelbetrisey
569 Followers 1K Following Security researcher @osec_io | CTF player @0rganizers @polygl0ts | AS62256 @[email protected]
Gian @coderion_
35 Followers 189 Following
Tony Gore @nullg0re
631 Followers 1K Following Security Researcher, US Marine Corps Veteran, Microsoft Most Valuable Researcher 2023 & 2024
CCob🏴�... @_EthicalChaos_
9K Followers 438 Following Ceri Coburn: Hacker | R̷u̷n̷n̷e̷r̷ DIYer| Vizsla Fanboy and a Little Welsh Bull apparently 🏴 Author of poorly coded tools: https://t.co/P6tT2qQksC
Nevada @nevadaromsdahl
696 Followers 518 Following Professional hacker. Amateur father, husband, hunter, musician, gamer. (he/him) All views and comments are my own opinion.
Roman Schneider @it_sleethers
6 Followers 44 Following
HaxRob @haxrob
15K Followers 452 Following I enjoy breaking things. Telco / mobile and IoT security. Surfing the information super highway one keystroke at a time.
BallisKit @BallisKit
3K Followers 33 Following BallisKit provides tooling and services to professional Pentesters & Red Teams. We develop MacroPack, ShellcodePack, and DarwinOps. #redteam #infosec
Dr. Nestori Syynimaa @DrAzureAD
20K Followers 2K Following Principal Identity Security Researcher at Microsoft. Ex-Secureworks. (MSc, MEng, PhD, CITP, CCSK). And yes, opinions are my own ;)
Timo Lo(n)gin @timolongin
385 Followers 33 Following Currently pwning elderly Internet protocols Mastodon: @[email protected]
Antonio Cocomazzi @splinter_code
9K Followers 327 Following offensive security - windows internals | BlueSky: https://t.co/ytvJCoaF2c | Mastodon: https://t.co/hNIHa6L14d
KITCTF @KITCTF
2K Followers 95 Following We like to hack things, all the things. Tweets and typos by @NearBeteigeuze and @intrigus_
Fuck Musk & Trump @CoreyD97
2K Followers 563 Following Elon Musk and Donald Trump can get fucked. Find me on other apps ☁️
SysReptor @SysReptor
489 Followers 99 Following #Pentest #Reporting made easy: Design in HTML, Write in Markdown, Render to PDF. Self-hosted or Cloud. For Pentesters. By Pentesters. ❤