potatoherder @hackingforbeer
yeah nah, janitor. copy pasting through your network. floppy saves Joined May 2016-
Tweets6K
-
Followers148
-
Following1K
-
Likes17K
Best Citrix Breakout ever. You can only download .ica files that provide access to certain local applications but breakout out of these applications is not possible? Just modify the .ica file before starting it and remove The InitialProgram= value -> Full Citrix Session! 🤓
It seems Microsoft is getting better and better at shifting the responsibility for their bad code from them to users 😅 "Users shouldn't accept untrusted inputs..." etc etc, seem to be an automatic reply today.
DLL Sideloading for Initial Access – Red Team Operator's Guide 🔥 (new article) print3m.github.io/blog/dll-sidel… - finding software to backdoor - finding DLL and function to backdoor - legit software backdooring - OPSEC considerations #redteam #infosec #malware #security
This blog post about impostor certificates by @SquiblydooBlog is a gem and very relevant right now. Or: How threat actors impersonate companies to obtain authenticode certificates for signing their malware. And why revokation is important. squiblydoo.blog/2024/05/13/imp…
Malicious meeting invites and device linking — #UNC6293 is using these tactics to target prominent academics, critics of Russia, and journalists. Learn more about this group's tactics and how to defend against the threat by reading our blog post. 🔗: bit.ly/4mEjDM6
[1/x] I would love to make NTSleuth a community driven project so the whole research community can profit off it. For that I created ntsleuth.com which can serve as a syscall database across Windows architectures, builds, versions. Not many datasets yet but will…
We're not tripping balls. Quality's been bad They have have been nerfing it. THEY HAVE BEEN NERFING IT. THEY HAVE BEEN FUCKING NERFING IT. THEY FINALLY FUCKING ADMITTED IT. If you use this to ship products to your customers... then you're shipping them inconsistently bad code.
We're not tripping balls. Quality's been bad They have have been nerfing it. THEY HAVE BEEN NERFING IT. THEY HAVE BEEN FUCKING NERFING IT. THEY FINALLY FUCKING ADMITTED IT. If you use this to ship products to your customers... then you're shipping them inconsistently bad code.
A Nightmare on EDR Street: WDAC's Revenge beierle.win/2025-08-28-A-N…
In 3 weeks, @d_tranman and I will be giving our talk, "COM to the Darkside" at @MCTTP_Con in the Offensive Track. The talk will focus on 90's MCP technology and will deep dive into some fun (D)COM topics. See you there!
Old Red Team Story: @_apanonimo created something similar but as APK uploaded to the Android PlayStore spoofing the target company. It read the 2FA from SMS and autofilled it to login in the intranet, but also gave us access. It stayed alive for months 😂
Old Red Team Story: @_apanonimo created something similar but as APK uploaded to the Android PlayStore spoofing the target company. It read the 2FA from SMS and autofilled it to login in the intranet, but also gave us access. It stayed alive for months 😂
I did a writeup on exploiting the ASIO64.sys driver that was fuzzed from @vxunderground's vulnerable driver project. Nothing novel or complex, but I had fun writing the exploit: bad-jubies.github.io/exploiting-asi…
mitmproxy is in the Microsoft Store, just in case you need it for some reason. #LivingOffMicrosoftStore
Reading material: nsa.gov/Press-Room/Pre…
x.com/Laughing_Manti… Several years back I encountered a threat actor that would mimic your local ISP including delivering targeted ads that would display your ISP + numbers to call for support that eventually would result in a physical hardware implant delivery campaign. The…
x.com/Laughing_Manti… Several years back I encountered a threat actor that would mimic your local ISP including delivering targeted ads that would display your ISP + numbers to call for support that eventually would result in a physical hardware implant delivery campaign. The…
While also degrading WhatsApp and Telegram to convince users to switch! (So use Signal!) theguardian.com/world/2025/aug…
While also degrading WhatsApp and Telegram to convince users to switch! (So use Signal!) theguardian.com/world/2025/aug…
Beacon Object File to Dump Azure AD Connect credentials for Azure AD and Active Directory github.com/Paradoxis/ADSy…
Everyone wants AI testing to be automated or similar to AI red teaming. Point and scan. It’s not. So much of it is a blend of web security and prompt injection. The testing is slow and manual a lot of the times. Attacks need to be hyper tailored to work for a specific…
A research framework for AI-driven code security auditing that mirrors how expert auditors actually think, learn, and collaborate. ⭐️ Hound builds flexible cognitive models of a system that accumulate, adapt, and get refined over time github.com/muellerberndt/…
"Teach a hacker to find vulnerabilities, and they might find a couple. Teach a hacker to steal warez from another idiot, and they will feast for eternity" Enjoy our analysis of CrushFTP's CVE-2025-54309, fueled by watchTowr's Attacker Eye labs.watchtowr.com/the-one-where-…
#ESETResearch has discovered the first known AI-powered ransomware, which we named #PromptLock. The PromptLock malware uses the gpt-oss:20b model from OpenAI locally via the Ollama API to generate malicious Lua scripts on the fly, which it then executes 1/6

Casey @_subTee
25 Followers 400 Following I like to read . Founder , Researcher @malwarialabs 🦟⚡️ -=-WIN-=-
Carol @carol_sharrer
316 Followers 3K Following
Kristi @kristi29adams
264 Followers 3K Following
Irebau @Irebau787589
7 Followers 284 Following
Dererwook @Dererwook37436
87 Followers 2K Following
Two Seven One Three @TwoSevenOneT
2K Followers 1K Following Chief Security Officer (CSO) || Security Researcher at https://t.co/YsorB5YEAu || Penetration Tester || Red Teamer || Social Engineering Awareness Trainer
Pauline Jouliee @PaulineClifto12
2K Followers 2K Following We are working to spread smiles to the world.
Darren Webb ☠🕷 @spyd3r
1K Followers 7K Following Computational demonologist. The following tweets are classified SECRET GOLD JULY BOOJUM. 101 824 5150
Carlos Mayorga @Sud0Chul0
600 Followers 6K Following System Administrator | Fortinet | Azure | Entra | #cybersecurity
Dralhee @Dralhee0747
33 Followers 2K Following
EZ @IAMERICAbooted
2K Followers 1K Following Yesterday is history. Tomorrow is a mystery. Cloud Solutions Engineer at Contoso. Hacktive Directory admin. Posts don't represent my employer(s).
J⩜⃝mie Williams @jamieantisocial
10K Followers 7K Following threats && stuff || #UNC1799 forever 🤘|| @DistrictHeather ♥️ + 🍷 **𝚅𝚒𝚎𝚠𝚜 𝚎𝚡𝚙𝚛𝚎𝚜𝚜𝚎𝚍 𝚊𝚛𝚎 𝚖𝚈 օ𝚠𝚗**
Chris Isaias @_call_gate
108 Followers 2K Following Penetration Testing & Reverse Engineering. . . Phd(c), Msc (RHL), ESDC fellow, IEEE snr, FIRST liaison, CISSP, CRTO, PNPT, CRTP
Johan @Syndikalist
402 Followers 722 Following Mostly RT interesting stuff. RT != Endorsement and all that jazz. #WeAreNAFO
Sendarez @SendarezlaSa6q
180 Followers 2K Following
Soumyani1 @reveng007
1K Followers 2K Following Content absorber | CRTO | CRTP | @BlackHatEvents Asia, USA, SecTor, Europe 2024 Arsenal and @WWHackinFest 2024 Presenter
iShowCybersecurity (G... @ishowcybersec
2K Followers 1K Following Cybersecurity Enthusiast | Ethical Hacker | Bug Hunter | Entrepreneur | IG @iShowCybersecurity (49k) | May the Encryption be with you
nyxgeek @nyxgeek
7K Followers 3K Following rebel scum, nerfherder, dogged and relentless. H/P/V/A/C Directory - https://t.co/qn0D9H7IIi
Yossi Sassi @Yossi_Sassi
10K Followers 6K Following H@כk3r | 1nTh35h3ll; The Hacktive Directory guy; Pow3r5h3ll dude; Look | Think | Do; Co-founder #OrphanedLand, #OrientalRockOrchestra, #10Root
Oliver Roeland @OR_Hangjongere
9 Followers 601 Following
🏴☠️ Gardene... @GardenerSantana
3K Followers 5K Following Hacker, Eterno estudiante... Docente Ciberseguridad - ANTI FASCISTA - Hacking, Redes, Servers, Linux! #keephacking #keepLearning & #ShareYourKnowledge
Thiolatoy @ThiolatoydIeaM
19 Followers 277 Following
ChelseaSullivan @angosa1976
14 Followers 223 Following We invite you to come here to find your soulmate. Please click on our blind date club WhatsApp link https://t.co/sYEPqYVdmC
Suhaib @Suhaib_x0
9 Followers 196 Following
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Carlos Fynn @fynn_JourX
81 Followers 2K Following
Balthasar @BalthasarMartin
218 Followers 241 Following Red team lead @ https://t.co/fkrENrHmF5 @[email protected] (he/him)
Simone Margaritelli @evilsocket
47K Followers 2K Following Music, cybersecurity, open source and AI • Author of bettercap, pwnagotchi, opensnitch, bleah, legba and a few other things.
Marci Ujlaki @UjlakiMarci
286 Followers 335 Following M. Sc. | Former Military Officer | Threat Hunter | AI & Detection Engineer | Security Architect | PGP: 2D9C 18DE 5B30 A269
cje @caseyjohnellis
29K Followers 4K Following troublemaker & troubleshooter | founder @bugcrowd @disclose_io, board advisor, investor | pioneer of #bugbounty as-a-service | opinions CC0 1.0 | #hacktheplanet
Bobby Kuzma @BobbyKuzma
455 Followers 2K Following I break things and take pictures of rockets. Offensive security leader. Opinions my own.
William Metcalf @node5
1K Followers 392 Following I have been recruited by the Star League to defend the Frontier against Xur and the Ko-dan Armada
Justin Bollinger @Bandrel
6K Followers 2K Following hacker, finder of EKUwu (CVE-2024-49019) https://t.co/XQuqk8nGG6
Marjorie @pattonmarjorie2
295 Followers 3K Following
Ronald @Roland91930930
45 Followers 2K Following
Peter Winter-Smith @peterwintrsmith
6K Followers 3K Following Security researcher & implant developer @mdseclabs; developing SAST @wsastsupport; malware, code analysis, appsec, cryptography. Trying to follow Christ.
waymon @obnoxious4n6
679 Followers 1K Following Sr. Security Research Manager @Microsoft GHOST || 👻 Threat Hunting 👻 || tryin to navigate this cyber stuff || tweets == my own
Bandit Pingu @FlyingPhishy
287 Followers 1K Following // Professional Bandit // Hacker, Researcher, Tinkerer @ SilverSky // Personal Views
. @13_4rch
94 Followers 1K Following
not relevant @notrele09331326
10 Followers 183 Following
thesle3p @thesl3ep
928 Followers 2K Following I hack physical security and physical security accessories. Is the cousin of death
Casey @_subTee
25 Followers 400 Following I like to read . Founder , Researcher @malwarialabs 🦟⚡️ -=-WIN-=-
ProjectDiscovery @pdiscoveryio
37K Followers 125 Following Detect real, exploitable vulnerabilities. Harness the power of Nuclei for fast and accurate findings without false positives.
Clandestine @akaclandestine
49K Followers 5K Following | Security | Osint | Threat Research | Opsec | Threat Intelligence | Infosec | Threat Hunting | Humint |
Nick VanGilder @nickvangilder
2K Followers 3K Following Red Team Director | Mission Focused Leader | Combat Veteran | Offensive Security Program Builder | Mentor and Coach
The North Korean Comp... @dprkcert
3K Followers 469 Following Defend Tomorrow, Secure Today! Official Computer Emergency Response Team (CERT) for the Democratic People's Republic of Korea #NorthSide #NorthKoreaBestKorea
BSides Pyongyang @BSidesPyongyang
501 Followers 72 Following 🇰🇵 #BSidesPyongyang2025 : Nov 18 2025 (Missile Industry Day) @ Lazarus HQ Pyongyang | 30th anniversary 🎂
Joe Słowik 🌻 @jfslowik
28K Followers 1K Following CTI, OT/ICS, DE&TH, and related infosec content. Oh, and memes. And shitposting. Lots of shitposting.
Kleiton Kurti @kleiton0x7e
2K Followers 69 Following A web security guy, Red Team Enthusiast and wannabe Malware Developer. Opinions and views are my own.
Daax @daaximus
12K Followers 397 Following reverse engineering • secure processor design • system emulation • µarch bugs @the_secret_club
db @whokilleddb
1K Followers 500 Following Maldev @bhinfosecurity | Finding increasingly stupid ways to do simple things
Unhandled0xD @trap_handler
5K Followers 351 Following Vulnerability Researcher - working to be master of #Pwn2Own🦦 - I study the language of the universe, humans and systems
Nick Powers @zyn3rgy
2K Followers 225 Following Adversary Simulation @SpecterOps | Previously @Rapid7 & @Protiviti
Red Canary, a Zscaler... @redcanary
30K Followers 1K Following 24/7/365 threat detection and response across your cloud, identity, endpoints and everything in-between. We got you: https://t.co/pFNwBJN3d5
Tim Becker @tjbecker_
2K Followers 349 Following Security Researcher at @theori_io. Flag capturer at @PlaidCTF. Cryptography enjoyer.
Keanu Nys @RedByte1337
896 Followers 74 Following Offensive Security Lead @ Spotit. Creator of GraphSpy
Michael Weber @BouncyHat
1K Followers 77 Following Security Consultant. Not affiliated with Red Hat. I just like the hat. @[email protected]
Adam Crosser @UNC1739
117 Followers 100 Following Vulnerability Research and Offensive Tooling Development @praetorianlabs #UNC1739
Andy Greenberg (@agre... @a_greenberg
71K Followers 1K Following WIRED writer, author of SANDWORM and now TRACERS IN THE DARK: The Global Hunt for the Crime Lords of Cryptocurrency. Andy.01 on Signal. [email protected]
Soroush Dalili @irsdl
20K Followers 909 Following Hacker (ethical), web appsec specialist, trainer, tools builder & apps breaker, @SecProjectLtd founder 🕸️https://t.co/YipuTcYnWc🥷 🍏A dad-joke maker🍐
hypr @hyprdude
2K Followers 772 Following vuln researcher+exploit dev | pwn2own '24 winner | 0x4141414141 enthusiast | bordeaux enjoyer | friend of all cats | him/he
Uriel Kosayev @MalFuzzer
5K Followers 433 Following Author of MAoS & Antivirus Bypass Techniques | Cybersecurity Researcher | Keynote Speaker | Co-Founder @TrainSec Academy
Steve YARA Synapse Mi... @stvemillertime
17K Followers 1K Following threat intelligence @google writing & sharing on adversary tradecraft, malware, threat detection, AI-nexus intel and all things #yara
Jonny Johnson @JonnyJohnson_
8K Followers 419 Following Principal Windows Security Researcher @HuntressLabs | Windows Internals & Telemetry Research
Andrea Allievi @aall86
5K Followers 375 Following Currently Senior Windows Core OS Engineer, Windows Internals Enthusiast and Book author, tennis lover, currently working for MS. Opinions and tweets are my own.
Khoa Dinh @_l0gg
2K Followers 119 Following
l33tdawg @l33tdawg
7K Followers 2K Following That HITB guy (@hackinthebox @HITBSecConf) and now OOTB guy (@OOTBconf), Music Producer @dhankasounds, & VP of Global Strategy and Growth @verichains
AIfredo 0rtega @ortegaalfredo
8K Followers 1K Following Software Developer - Security researcher - Cybergaucho - @[email protected] AI-related: https://t.co/hhQltrgzKS https://t.co/ibyCcAp6zv
Piotr Bania @PiotrBania
3K Followers 127 Following The world needs bad men. We keep the other bad men from the door.
Nir Ohfeld @nirohfeld
4K Followers 841 Following Head of Vulnerability Research @wiz_io | @Microsoft MVR (2021-2025) | Pwn2Own 2025 | @Forbes 30 Under 30
Stephan Berger @malmoeb
28K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
Kevin2600 @Kevin2600
11K Followers 57 Following
Ali Hadi | B!n@ry @binaryz0ne
33K Followers 565 Following DFIR and Adversary Simulation | DFIR @ ProtonMail
Rich Mirch @0xm1rch
2K Followers 3K Following UNIX/Linux Sysadmin turned Penetration Tester, Red Teamer, Security Researcher
Winnona 💾 @__winn
4K Followers 2K Following @DistrictCon Founder. Harvard-Georgetown MPP/JD, @CyberStatecraft / @BelferCenter researcher, ex-Google RE / threat research. https://t.co/MJHKl7Myic 👩🏻💻
LainKusanagi @unknownseeker99
580 Followers 178 Following Systems, people and ideas, all of them have hidden vulnerabilities | CRTO | CRTP | OSCP | PNPT
RedTeam Pentesting @RedTeamPT
8K Followers 173 Following Official RedTeam Pentesting GmbH account -- Impressum: https://t.co/pS9oK62Lsu