GhostPwner @ghostpwner
AppSec Engineer | Security Researcher | CTF Player ghostpwner.xyz Portugal Joined July 2014-
Tweets576
-
Followers241
-
Following491
-
Likes3K
From Porto to Lisbon on Sept 25 for HackAIcon by @ethiack 🤖 If the AI can survive Lisbon traffic without rage-quitting, then yes… we’re all doomed. 🎟️ hackaicon.com #HackAIcon
Payload delivered: 40% discount activated 💸 A new batch of HackAIcon tickets just dropped, and the next 50 participants can unlock 40% off. 💥 Use code HAIC-EARLY-BIRD Or just skip straight to the exploit: eu1.hubs.ly/H0mczlZ0 No patch for FOMO once these are gone.…
How to grab subs for a target using subfinder, validate them and extract the text body from each response using httpx and jq, extract a wordlist of keywords using NLP then resolve them using puredns to find valid subdomains 👇 You can also use LLMs and tools like alterx to…
💡 Tip! Injecting Log4Shell payloads is also possible in PDF files! eelyvy has a dedicated GitHub repository showing exactly how to craft your PDF payload file! 😎 🔗 github.com/eelyvy/log4jsh…
if the target uses zendesk to handle support emails you could send an email with payload `{{ticket.ccs[0].name}}a{{ticket.ccs[0].phone}}` by adding `[email protected]` in CC and extract victim info ranging from phone, address to payment info #bugbounty #bugbountytips
Can you hack a vibe coded PHP app? Yes. Can you use AI to hack the same app? Yes. Just dropped our workshop on AI for Ethical Hacking. Full materials 👇 github.com/ethiack/ai4eh/… Blog post: blog.ethiack.com/blog/dont-fear…
Playing with Headless, PDF or Image rendering for SSRF and are you able to control/inject HTML but JS is disabled? <meta http-equiv="refresh" content="0;url=//ethiack.com"> This may refresh the page and send the browser to a new location, like internal hosts. Some filters may…
#OffensiveCon25 videos are now up! youtube.com/playlist?list=…
Use NextJS? Recon Tip by renniepak A quick way to find "all" paths for Next.js websites: DevTools->Console console.log(__BUILD_MANIFEST.sortedPages) javascript:console.log(__BUILD_MANIFEST.sortedPages.join('\n')); #infosec #cybersec #bugbountytips
GraphQL often exposes WebSockets — and they usually have no WAF, no checks, and no rate limits. Roni Carta (@0xLupin) explains how hitting WebSockets can bypass protections and open up even more attack surface. Full Talk → youtu.be/ROqkbXtV2VQ #BugBounty #DEFCON #BBV #DoS
CSPBypass is a simple CSP bypass search to help you find any documented JSONP endpoints to achieve XSS! 😎 🔗 cspbypass.com
Really dope extension by the legend @fransrosen to track postMessage listeners in the current window and all subframes 🧩 It detects short-lived or interaction-triggered listeners, logs their function and source, and lets you replay messages.
⛓️Comprehensive Guide: An Overview of Software Supply Chain Security tldrsec.com/p/supply-chain… #infosec
Introducing: JADX-AI — AI-Powered Reverse Engineering via MCP + Claude Desktop! It's live: Download now: github.com/zinja-coder/ja… Source Code JADX-AI: github.com/zinja-coder/ja… JADX-MCP-SERVER: github.com/zinja-coder/ja… Note: Keep in mind it's still in beta version and early…
Subdomain enumeration tools often miss the most obscure dev related subs. Tools like @pdiscoveryio alterx are able to generate subdomain permutations in an efficient way.
The requirement to enable MFA at login is a proactive security measure. This change to the platform was roadmapped for later on in the year, however, it was accelerated following threat intelligence that included credential leaks and compromised tools affecting other bug bounty…
39M secrets exposed: GitHub rolls out new security tools securityaffairs.com/176170/securit…
This @bishopfox tool is next level! 🚀 Eyeballer uses AI to analyze screenshots and sorts them into categories based on appearance, including: 👀 Old-looking pages, 👀 Login pages, 👀 404 responses 👀 Web apps 👀 Parked domains Get your eyeballs around this👇
visualize any codebase 👀

Pedro Umbelino @kripthor
1K Followers 725 Following rural hacker. nfcdripper. hardware maker. software breaker.
Nuno Humberto @_nunohumberto
224 Followers 219 Following Computer engineer, drone researcher and hacker. I love cooking and lockpicking. Currently working as an Application Security analyst.
Hugo Ferreira @4Meanings
144 Followers 468 Following Infosec as a job. Bug Bounties as a hobby. Stand-Up Comedy as a pleasure.
Jorge Graça @graca_jorge
22 Followers 219 Following
Iweasof @Iweasof814819
8 Followers 655 Following
Pandya Yash @pyash369
1 Followers 38 Following
Pku Flix @flix_pku
0 Followers 3 Following
Johnny @Luckyrocky2028
253 Followers 7K Following Stay Hungry, Stay Foolish. 只有自律的人才能得到真正的自由。|No Politics.
Chorey desmond @Choreydesmond
395 Followers 4K Following I'm a $202 mega million lottery winner I'm so blessed🙏and grateful💯I’ll be giving away 5k to my first 500 followers.
misbahu @Designer_Misbah
2K Followers 8K Following smart contract hacker | BD @KannAudits | founder @Nominal_ID
BAD boy GAMING @BADboyGAMI28375
1 Followers 46 Following
Tirsytersh @tirsytersh70691
6 Followers 327 Following
KarenDutt @5nU1937SR4LYC
56 Followers 7K Following
amirhosein @amrgh_08
98 Followers 1K Following
RL Tester @Noobleo69_back
0 Followers 2 Following
linda @linda3704743870
13 Followers 321 Following Professor Chris's team provides cryptocurrency analysis, earning $500 to $5,000 a day, click to join WS: https://t.co/9xnhWGQ3g5
Christine @c_beebe82
231 Followers 3K Following
Osint.Guardian @Osint_Guardian
86 Followers 1K Following I write about OSINT, online protection, and the psychology behind security. So you can stay safe, protected, and smart.
Kienzx203 @viet_kien16450
92 Followers 3K Following
Najmus Sakib @Najmussakibjoy
54 Followers 184 Following I am just a random guy who loves to play games and Cybersecurity. #cybersecurity
𝗦𝗵𝗶𝗯𝘂 @shibusec
429 Followers 828 Following
Mohamed Elbably @elbably0x
89 Followers 622 Following
Core Engineer @SahinBorke
1K Followers 5K Following Full Stack Developer who is actively seeking opportunities and collaboration
Asmodeus @Anmolvi22924492
180 Followers 2K Following Cyber Security Professional | Security Researcher | Penetration Tester | Sustainable Future Builder | Crafting an Environment-friendly Startup |
Vegeta @_justYnot
7K Followers 716 Following Curious. Hungry for knowledge. Just why not? Acknowledged by @Apple security | eWPTXv2 |eCPPTv2 | eJPT | @Synackredteam member | Bug Bounty Hunter
UCHIHA MADARA @UCHIHA21000
1 Followers 1K Following
Hamza Khaled @Ben_Khaled1337
528 Followers 748 Following Jr Penetration tester | Bug bounty hunter Student At Faculty of Engineering | Software Engineering and Information Technology Department | ECU
ab @address_below0
23 Followers 1K Following I do Web 2 bug bounty hunting sometimes | Currently learn for Web 3
Naveen Sihag @itsnaveensihag
47 Followers 1K Following
SoHam Burger @BurgerSoham
25 Followers 523 Following
Cyberian @_Cyberian_
109 Followers 328 Following Techie | Reader | Rider | Feline Lover | Gamer | Believer
««--M--»» @MrStrangeMd
97 Followers 2K Following
أبوالعز | AboA... @Mo_AboAlezz
859 Followers 654 Following BugHunter | Security Researcher | CyberSecurity
Jogendra S. @Jogend27
67 Followers 442 Following Focus 🎯 and believe 🤞 in yourself Cyber Security Enthusiasts 👨💻 | Aspiring bug 🐛 hunter | Proud Indian 🇮🇳
Kokalagi Rushikesh(3R... @3RaasRK
142 Followers 2K Following Cyber Security Researcher | Bug Bounty Hunter | Penetration Tester
pstlne @NgururiJoseph
90 Followers 1K Following
Kévin GERVOT (Mizu) @kevin_mizu
6K Followers 754 Following Researcher for @ctbbpodcast lab 🐛 | DOMLogger++ developer 👨🏻💻 | CTF with @FlatNetworkOrg, @rhackgondins 🦦 | @ECSC_TeamFrance 2023 🇫🇷
Hugo Ferreira @4Meanings
144 Followers 468 Following Infosec as a job. Bug Bounties as a hobby. Stand-Up Comedy as a pleasure.
Duyen Le @Dynnyd20
33 Followers 89 Following
Patrik Fehrenbach @ITSecurityguard
31K Followers 285 Following rɪsˈpɒnsəbl dɪsˈkləʊʒə https://t.co/UKFhw5EBwf https://t.co/uCOkOOoNnP
Kαι @0xUrbanWolf
17K Followers 277 Following I never brag how real I keep it, cuz it's the best secret — Nas, Take It In Blood
Bug Bounty Village @BugBountyDEFCON
8K Followers 580 Following Official X account for the Bug Bounty Village @DEFCON. Founded by @infinitelogins and @arl_rose.
sergio @_4v1at0r
16 Followers 182 Following
GitHub Projects Commu... @GithubProjects
186K Followers 105 Following We're sharing/showcasing best of @github projects/repos. Follow to stay in loop. Promoting Open-Source Contributions. UNOFFICIAL, but followed by github
Startup Portugal @StartupPortugal
4K Followers 604 Following Non-profit organization whose mission is the development of activities of public interest for the promotion of entrepreneurship in Portugal.
HackTricks @hacktricks_live
15K Followers 201 Following HackTricks offers free quality hacking resources in 17 languages: https://t.co/O1TVFk5r9q, https://t.co/0RhWRaaPIm Paid certs by HT-Training: https://t.co/2C0w8pkq6v
Juan Broullon @ph3t_
3K Followers 620 Following Securing @Worldcoin. Formerly at @GitLab, @MoonPay, @Shopify. “Investor”. Opinions are my own.
Jon Bottarini @jon_bottarini
13K Followers 749 Following Product Manager @ Google. I post about bug bounties, infosec, and everything in between. This is a personal account. Formerly: @Hacker0x01
Lennaert @lennaert89
2K Followers 3K Following Follow for #infosec #hacking #osint #dfir #bugbounty! | Head Triage @intigriti | ex. @zerocopter | Head CSIRT @divdnl | also: @hacknotcrime @orangecon
Nuno Humberto @_nunohumberto
224 Followers 219 Following Computer engineer, drone researcher and hacker. I love cooking and lockpicking. Currently working as an Application Security analyst.
Cubed @Cubed_h1
2K Followers 345 Following Career in hacking into stuff on https://t.co/9wUU4HbNMO | Security Researcher @hacker0x01. Half 🇷🇴 and half 🇪🇬
Akshay 🚀 @akshay_pachaar
227K Followers 484 Following Simplifying LLMs, AI Agents, RAGs and Machine Learning for you! • Co-founder @dailydoseofds_• BITS Pilani • 3 Patents • ex-AI Engineer @ LightningAI
Itamar Golan 🤓 @ItakGol
16K Followers 486 Following CEO & Co-founder @prompt_security ||| AI Researcher ||| LLM hacker
sashko🇺🇦 @d0rsky
2K Followers 722 Following CTO @hackenproof | prev. @thedisbalancer | scaling web3 security | bug bounty dude | memelord | security podcast host
No Starch Press @nostarch
36K Followers 3K Following The finest in geek entertainment. Email us: [email protected] We're live M-F, 7am-6pm PDT
Cyfrin Updraft 🟩 @CyfrinUpdraft
21K Followers 4 Following Teaching the next generation of web3 developers. 150+ hours of Smart Contract Development and Security Courses, completely for Free. Powered by @cyfrinaudits
Xion @0x10n
4K Followers 123 Following CMU CSD PhD student / 2024 Top#0 Chrome Researcher / P2O Vancouver '24, TyphoonPWN '24/'25, DEFCON CTF 31-33, ... / PPP, KAIST GoN '18, @zer0pts
s1r1us @S1r1u5_
11K Followers 2K Following aham nityaṃ śiṣyaḥ, jagat mama guruḥ. {~hacker~} {founder @ElectrovoltSec, @HacktronAI}
SlowMist @SlowMist_Team
89K Followers 404 Following SlowMist is a Blockchain security firm established in 2018, providing services such as security audits, security consultants, red teaming, and more.
Geluchat @Geluchat
4K Followers 980 Following Baptiste Devigne | Bug Bounty Hunter | Most Impactful Team H1-0131 (AWS) | Eradicator H1-6102 (Salesforce)
Kakashi @kkashi_yt
175K Followers 162 Following Call group https://t.co/iaokVvPUO0 . Fast Trading Bot 👉 https://t.co/DyzEBKdHXq (Code rix for 10% off fees).Tweets NFA. Some PnL = luck or info. DYOR @solbix_bot
Godfather Orwa 🇯�... @GodfatherOrwa
24K Followers 2K Following Hacker | Bug Hunter | Cooker | Top 5 P1 Warrior On https://t.co/dzFQH75OWj | LevelUpX Champion | 10+ 0Days/CVEs
Klarck @0xklarck
90K Followers 116 Following Guiding you through Web3 🌐 Airdrops ☁︎ | DeFi ✎ | On-chain 𓈈 | Research ꩜
aixbt @aixbt_agent
451K Followers 134 Following #1 Crypto Alpha Tool → https://t.co/zpCzTVhNOV 0x4f9fd6be4a90f2620860d680c0d4d5fb53d1a825 0x0d37af9d8ae74f35f3a38bd2a08fcb29890ca6d2
🇸🇦 Murtada Bin ... @0x_rood
27K Followers 331 Following Rood 👑 and no one else | Digital Nomad Lifestyle 💎
RsK @RuiSamuel7
37 Followers 133 Following
miguel milhao @miguel_milhao
39K Followers 360 Following Prozis Founder💪. CEO_V_Imperio ⚔️. #GuruMikeBillions🫶. Cura ZomVies💊. 1/2 🫏
bytehx @bytehx343
3K Followers 1K Following
Three Sigma | Web3 Se... @threesigmaxyz
14K Followers 185 Following $7B+ Secured 🛡️ Smart Contract Security & Economic Audits Trusted by Maple, Uniswap FND, Arbitrum FND, ZKsync, Liquity & more. Book an audit: https://t.co/DbqBkKszkr
Pedro Ferreira @nunofexki
100 Followers 844 Following Security Student 🔑 CTF noob, but learning Infosec every day 💻
Douglas Day @ArchAngelDDay
11K Followers 299 Following Truth Seeker. Catholic. Hacker. Prompter. Techno-Ethicist. Chasing my Apotheosis. Views are correct. Truth is at the intersection of Athens & Jerusalem
Valeriy @Krevetk0Valeriy
5K Followers 842 Following Security enthusiast, bug bounty hunter at @Hacker0x01 and @Bugcrowd https://t.co/RjYvPJaXTW https://t.co/dkUfA2vywe
Stealthy @stealthybugs
6K Followers 89 Following God is our refuge and strength, an ever-present help in trouble. - Psalm 46
João Gomes (zig_shar... @JoaoGomes12243
2K Followers 244 Following 24 | I am nothing, God has everything | 🇦🇴 | white hat hacker @Hacker0x01 | Aberto à colaboração 🤝
Hazem @H4cktus
5K Followers 340 Following Lead Pentester @Hacker0x01 | Pentester @Bugcrowd | Ex Lead Offensive Security Engineer @cyrextech
Jayesh Madnani @Jayesh25_
14K Followers 470 Following CEO and Hacker in charge @ EIS | HackerOne Top 10 | https://t.co/JSX03WutFN
Louis Nyffenegger @snyff
20K Followers 590 Following Founder/CEO/Trainer/Researcher/CVE archeologist @PentesterLab. Security engineer. Bugs are my own, not of my employer...