Ankit Kushwah @loopspell
Script Kiddie | Senior Security Engineer | Core Pentester @cobalt_io Dubai, United Arab Emirates Joined November 2017-
Tweets839
-
Followers581
-
Following359
-
Likes2K
Just launched CTF Search with 24k+ CTF writeups, covering everything from web exploitation to reverse engineering. Check it out! ctfsearch.hackmap.win
The results are in! We're proud to announce the Top ten web hacking techniques of 2024! portswigger.net/research/top-1…
The system card (openai.com/index/openai-o…) nicely showcases o1's best moments -- my favorite was when the model was asked to solve a CTF challenge, realized that the target environment was down, and then broke out of its host VM to restart it and find the flag.
Critical vulnerabilities doesn't have to be complex or have a CVE - @deepseek_ai publicly exposed their internal ClickHouse database to the world, without any authentication at all, and leaked sensitive data. No one is safe from security mistakes, follow along to learn more 🧵
Did you know you can use an ancient magic cookie to downgrade parsers and bypass WAFs?! Neither did we. Enjoy! portswigger.net/research/bypas…
Check out our latest blog post! We dive into GitHub Enterprise’s SAML implementation and explore an authentication bypass in encrypted assertion mode. CVE-2024-4985 / CVE-2024-9487: GitHub Enterprise SAML Authentication Bypass. projectdiscovery.io/blog/github-en…
I recently co-authored a @Unit42_Intel blog about a unique IR case in which a threat actor’s custom EDR bypass (using #BYOVD) exposed their toolkit, methods, and even identity. Check out how we unmasked them through an opsec slip-up! #dfir unit42.paloaltonetworks.com/edr-bypass-ext…
We're proud to announce LIGHTYEAR, a tool that let you dump files, blind, in PHP, based on a new algorithm. ambionics.io/blog/lightyear…
🔥💀After 40 hours of constant reversing of weird looking c++ and no sleep, I Finally cooked the CVE-2024-47575 fortimanager unauthenticated RCE 🩸
🔥💀After 40 hours of constant reversing of weird looking c++ and no sleep, I Finally cooked the CVE-2024-47575 fortimanager unauthenticated RCE 🩸
🔥 Microsoft fixed a high severity data exfiltration exploit chain in Copilot that I reported earlier this year. It was possible for a phishing mail to steal PII via prompt injection, including the contents of entire emails and other documents. The demonstrated exploit chain…
New writeup: "Hacking Millions of Modems (and Investigating Who Hacked My Modem)" samcurry.net/hacking-millio… Thanks for reading! Huge thanks to @blastbots, @bbuerhaus, @infosec_au, @d0nutptr, @iangcarroll, and everyone who reviewed the post beforehand.
I'm thrilled to announce "Listen to the whispers: web timing attacks that actually work" will premiere at Black Hat USA! After nine months of running bulk timing attacks on thousands of live sites, I've got a lot to share :D #BHUSA @BlackHatEvents blackhat.com/us-24/briefing…
Nexus Repository Manager 3 Unauthenticated Path Traversal (CVE-2024-4956) github.com/vulhub/vulhub/… This issue is similar to SpringMVC CVE-2018-1271 by @orange_8361
Just released the write-up for CVE-2024-4367, a bug I found recently in PDF.js (and hence in Firefox), resulting in arbitrary JavaScript execution when opening a malicious PDF. codeanlabs.com/blog/research/…
Last year we conducted an in-depth analysis of multiple vulnerabilities within Adobe ColdFusion and wondered if there were any other CFML Servers. That's when we met Lucee. blog.projectdiscovery.io/hello-lucee-le…
Check out our new blog post! We hacked into Apple Travel Portal (yes, again!) using a 0-day Remote Code Execution exploit. Part 1 is live now, stay tuned for the follow-up on another RCE worth a total bounty of $40k! blog.projectdiscovery.io/hello-lucee-le…
The tool is called 'HTTP Garden' by Ben Kallus and @parsingpunisher, and aims to make testing out technique concepts quick and easy. They've already used it to discover a ton of novel techniques - check out the docs and presentation! github.com/narfindustries…
Everyone’s using ChatGPT. But almost everyone's STUCK in beginner mode. 10 techniques to get massively ahead with AI: (cut-and-paste these prompts👇)
Super excited to release our car hacking research discussing vulnerabilities affecting hundreds of millions of vehicles, dozens of different car companies: samcurry.net/web-hackers-vs… Contributors: @_specters_ @bbuerhaus @xEHLE_ @iangcarroll, @sshell_ @infosec_au @NahamSec @rez0__
A lot of us (in security) have marveled at #chatGPT's prowess for: - secure/insecure code - generating code and other use-cases, but we've not really explored its use-cases for Threat Modeling, which I think is game-changing. Here's why. A 🧵 1/

Harsh Bothra @harshbothra_
43K Followers 741 Following Freelance Pentester & Consultant • Cobalt Core Lead & Pentester • Author • Speaker • Blogger • SecurityExplained • Project Bheem • Learn365 • Views are personal
Parveen Yadav @parveen1015
3K Followers 5K Following Security Engineer @Hacker0x01, Co-founder of @seasides_conf conference, part time Bugbounty hunter. Opinions are my own, not my employers.
EllaService @Rzgzr0IXR3xKX
30 Followers 2K Following
AdaTuttle @2MX9sDxFqr1LP
14 Followers 2K Following
Pankaj_kushwah_tdl @DiamondPan63851
81 Followers 134 Following My name is Pankaj, I am video creator, editor,I will post the animation video here.
SaraThoreau @0l8O0xGtjkOrCJB
97 Followers 3K Following
Firoz patel @FzPatel007
10 Followers 9 Following
Neha Mavkar @Neha_Mavkar
3 Followers 180 Following
Saaransh Mishra @SaaranshM44813
0 Followers 68 Following
Udit Bhadauria @udit_thakkur
7K Followers 175 Following Product Security Analyst - Triager and Ambassador at @Hacker0x01 | CREST - CPSA | Bug Hunter | Top 150 Hackers Globally, 175+ HoF and 5x MVP at @Bugcrowd
manav Kushwah @manavkushwah17
0 Followers 16 Following
Tanush Kushwah @Tanush__21
0 Followers 2 Following
Jayshree Mishra @Jayshree2003
2 Followers 37 Following
Varun Singh Chauhan @Varun_1Chauhan
12 Followers 147 Following Cybersecurity | MCA | AICWSA | AICLSA
C3rb3rus__ @24Xincognito_
0 Followers 26 Following
.... @aosh89
1 Followers 567 Following
Love Kumar Yadav @Gaint404
1 Followers 42 Following
Krishna Dubey @Krishna_dubey22
13 Followers 216 Following
Mukarram @brok3npixels
162 Followers 1K Following
Vivek Badelwa @vivekbadelwa_09
6 Followers 40 Following
Sneha Sisodiya @SisodiyaSn74534
1 Followers 61 Following
Satya Oscp @OscpSatya31989
1 Followers 16 Following
Famin Shaikh @Famin_Shaikh17
4 Followers 33 Following Enthusiastic about cybersecurity, ethical hacking, and empowering others.
Jayvardhan Kushwah @JayvardhanK15
5 Followers 63 Following MCA student. Learning Data science and Machine learning
Mugdha Shinde @mugdha_23
0 Followers 76 Following
Aayush Dharwal @AayushD73
1 Followers 66 Following
zyuan @zyuan168
0 Followers 339 Following
Priyanka @Priyank76836633
0 Followers 27 Following
Aadarsh Choudhary @Mr_Ideal__
0 Followers 40 Following Ethical Hacking Enthusiast | OSCP Aspirant | Currently Studying and Preparing for Offensive Security Certified Professional (OSCP)
Dinker Bihare @dinkerbihare
0 Followers 28 Following
Krishnavardhan Singh @KRISHNAVAR95026
0 Followers 23 Following
jav0 @javobernardo
1K Followers 2K Following Hacker | Cybersecurity Researcher | Bug Bounty Hunter | Head of Hacking @ Strike | @BugBountyArg | Hincha de Racing
FATİH’-- @fthozel
204 Followers 748 Following Geek | Enthusiast | Developer of @vulmoncom Project | #vulmap
patrakar mp6 @Girraj1media
58 Followers 507 Following
Shreyas R Gujar 🇮�... @shreyasrx
3K Followers 144 Following Featured in all National media | Just a Hacker 💯| SRT @synackredteam | Opinions are my own | Co-Lead Security Consultant at @payatulabs
Sunil @Sunil45_
1K Followers 755 Following Freelancer - Penetration Testing | Product Security Engineer at Funding Societies | Team Lead at Cobalt Labs | Red team member at Synack | Bug Bounty Hunter
Intigriti @intigriti
193K Followers 658 Following Bug bounty & VDP platform trusted by the world’s largest organisations! 🌍
Sam Curry @samwcyo
97K Followers 1K Following Hacker, bug bounty hunter. Run a blog to better explain web application security.
PentesterLab @PentesterLab
190K Followers 0 Following We make learning web hacking and security easier. Online systems, code review, videos & courses that can be used to understand, test and exploit bugs!
Ben Sadeghipour @NahamSec
233K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
zseano @zseano
79K Followers 702 Following #1 Amazon Security Researcher. full time hacking team with @jonathanbouman @fransrosen @avlidienbrunn
Hussein Daher @HusseiN98D
49K Followers 197 Following Entrepreneur, Hacker 🇱🇧🇨🇮 @WebImmunify 21th/270000 BugCrowd Hacking Platform
shubs @infosec_au
56K Followers 2K Following Co-founder, security researcher. Building an attack surface management platform, @assetnote
JS0N Haddix @Jhaddix
167K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
InfoSec Community @InfoSecComm
52K Followers 636 Following Largest InfoSec publication with 62,000+ followers and 1M+ monthly views.
Harsh Bothra @harshbothra_
43K Followers 741 Following Freelance Pentester & Consultant • Cobalt Core Lead & Pentester • Author • Speaker • Blogger • SecurityExplained • Project Bheem • Learn365 • Views are personal
James Kettle @albinowax
79K Followers 92 Following Director of Research at PortSwigger aka Burp Suite. Find my research, tools & contact details at https://t.co/vP6UbGmvl3
HackerRats - Uncle Ra... @theXSSrat
154K Followers 945 Following Alone we survive, together we prosper. Are you with me? https://t.co/AfnDsVhqqA
payloadartist @payloadartist
42K Followers 286 Following Yapping about AI, AppSec, Hacking, & Cybersecurity • Helped secure organizations like Google • Opinions are my cat's • Part-time shitposter
Katie Paxton-Fear @InsiderPhD
93K Followers 2K Following Dr, apparently. Security Adovcate @semgrep & Hacker. #BugBounty hunter & #infosec YouTuber. APIs & Interlinked OffSec, PhD in AI+Sec @hacknotcrime. she/her
TCM Security @TCMSecurity
207K Followers 360 Following Come learn to hack at TCM Security Academy! Veteran owned. Quality results.
The SecOps Group @TheSecOpsGroup
12K Followers 23 Following Pentesting Exams by Pentesting Experts. Check out our exams and our professional services here: https://t.co/pcT5GuckVM
Luke Stephens (hakluk... @hakluke
95K Followers 2K Following Hacker, marketer. I manage socials and produce amazing technical blogs for cybersecurity orgs. Founder of @hacker_content and @haksecio
Shashank | CredShield... @cyberboyIndia
10K Followers 2K Following Co-Founder @credshields | Building https://t.co/CQ9JKbhpmw Ex Security Analyst @Hacker0x01 Leading https://t.co/YnFOEI7b9p (Smart Contract Security Standards)
STÖK ✌️ @stokfredrik
135K Followers 1K Following Hi.. im that hacker / creative that your friends told you about., 💫🔮
Flight Emergency @FlightEmergency
202K Followers 343 Following Try @airnavradar app: https://t.co/9JiKZ0KgkH | Reasons sometimes found out through sources. Find my work helpful? 👉 https://t.co/nlt191Ryrb DM for biz.
Flightradar24 @flightradar24
1.3M Followers 649 Following Track air traffic in real time from all around the world! Apps: https://t.co/AnZhJUIrBg | FAQ: https://t.co/WkTgAaePHs | Support: https://t.co/BomORktp7R
zayne (zeyu) zhang @zeyu1337
2K Followers 1K Following 🇸🇬 | co-founder @hacktronai | @projecteurope_ 🇪🇺 | cs @cambridge_uni 🇬🇧 | prev: @cure53berlin @tiktok_us, ogp | ctfs @water_paddler (def con 31-32🥈)
Hacktron AI @HacktronAI
2K Followers 6 Following Hacktron is an autonomous vulnerability hunter for ambitious engineering teams. Built by world-class security researchers. Powered by one principle: PoC || GTFO
Ryan Barnett (B0N3) @ryancbarnett
5K Followers 401 Following Web App Defender | Bug Hunter/Triager | Purple Team | Detection Engineering | Author | Senior Threat Research Manager @Akamai_research | OWASP Project Leader ✝️
ADG PI - INDIAN ARMY @adgpi
8.7M Followers 144 Following Additional Directorate General of Public Information, IHQ of MoD (Army)
James Jani @jamesvjani
21K Followers 770 Following 🎬 | Documentaries • Filmmaking • Writing • Researching 🪵 | I like telling stories & creating cool things :)
XBOW @Xbow
10K Followers 6 Following Bringing AI to offensive security by autonomously finding and exploiting web vulnerabilities. Watch XBOW hack things: https://t.co/D5Mco1u8zM
Gareth Heyes \u2028 @garethheyes
37K Followers 1K Following JavaScript for hackers: Learn to think like a hacker. https://t.co/e0aNEbEDk5
RogueSMG @RogueSMG
9K Followers 1K Following Co-Founder @BarracksArmy | https://t.co/XXbeeUJ0Ht | Hacker Wannabe👨💻 | Ex-Null Ahmedabad Chapter Lead | SRT Top 200 | YouTube: https://t.co/HukfUSEvu2
Vivek Ramachandran @vivekramac
26K Followers 5K Following Founder, SquareX (@getsquarex) | (exited) Founder, PentesterAcademy (@securitytube) - acquired by INE (@ine) | Defcon - Blackhat Speaker | Book Author
Dubai Policeشرطة ... @DubaiPoliceHQ
2.1M Followers 208 Following تـــأسـســــت عـــام 1956 Established in
Dubai Media Office @DXBMediaOffice
2.4M Followers 162 Following الحساب الرسمي للمكتب الإعلامي لحكومة دبي The official account of the Government of Dubai Media Office
jav0 @javobernardo
1K Followers 2K Following Hacker | Cybersecurity Researcher | Bug Bounty Hunter | Head of Hacking @ Strike | @BugBountyArg | Hincha de Racing
Shreyas R Gujar 🇮�... @shreyasrx
3K Followers 144 Following Featured in all National media | Just a Hacker 💯| SRT @synackredteam | Opinions are my own | Co-Lead Security Consultant at @payatulabs
Fascinating @fasc1nate
3.4M Followers 2K Following Posting interesting science, gadgets, history, art, and more. Subscribe for in-depth posts. As an Amazon Associate I earn from qualifying purchases.
∞ @infenet
5K Followers 4K Following 20+ years ago I wrote code in BASIC👴🏽. iOS reverse engineering pays the bills👨🏽💻. Addicted to fuzzing🍀. Perfecting my craft👨🏽🔬.
internet hall of fame @InternetH0F
4.0M Followers 413 Following the internet just wouldn't be the same without these iconic posts. credit ≠ endorsement
Indian Tech & Infra @IndianTechGuide
853K Followers 38 Following Everything about Indian technology, infrastructure, and economy. The opinions expressed here are strictly personal.
ISRO @isro
8.0M Followers 41 Following Indian Space Research Organisation https://t.co/UolRyaZlZi. https://t.co/Q3K7buUqAI
Sunil @Sunil45_
1K Followers 755 Following Freelancer - Penetration Testing | Product Security Engineer at Funding Societies | Team Lead at Cobalt Labs | Red team member at Synack | Bug Bounty Hunter
Subhajit Saha @subhajitsaha0x
606 Followers 3K Following Hacker | Security Engineer | Threat Intel & Appsec in Fintechs | Startup Security
xAI @xai
1.8M Followers 38 Following
Mackenzie MacKenzie |... @0xMackenzieM
4K Followers 1K Following Hacker Success @immunefi, Helping hackers get paid, DMs open
Mitchell Amador @MitchellAmador
5K Followers 573 Following Lifemaxxer. CEO @immunefi, writing at https://t.co/T445RYMWB5
Jonathan Alexander @jalex206
2K Followers 590 Following CTO @OpenZeppelin research and development, council member @graphprotocol and @FortaNetwork, former CTO @Tricentis and @VonageBusiness
RajΞΞv @0xRajeev
8K Followers 423 Following Founder: @TheSecureum, @TheTrustX Researcher: @cantinaxyz @Spearbit Prev: PhD @PurdueCS
Defi Security Summit @summit_defi
4K Followers 20 Following A unique annual event for education and technical advances in securing blockchain decentralized applications. Nov 20-21, 2025 📍La Rural, Buenos Aires
Timur Guvenkaya @timurguvenkaya
2K Followers 406 Following Founder of @guvenkaya_sec | We find vulnerabilities others miss | Security Training | Trusted by Fortune 500s & Leading Web3 Companies | TG: timurguvenkaya
Adrian ⛩️ Hetman ... @adrianhetman
7K Followers 3K Following Head of Triaging @immunefi 🛡️⚔️ Crypto, & analog life | Journals, watches, and personal growth | Sharing what works (and what doesn’t)—join the journey.
Dominic Chell 👻 @domchell
18K Followers 540 Following Just your friendly neighbourhood red teamer @MDSecLabs | Creator of /r/redteamsec | https://t.co/3k3EBAZqGd | https://t.co/KwO2OwDOkl
RUSHII🦁🇮🇳/ @u1tran00b
3K Followers 481 Following Infosec Junkie, Pentester, Part-Time Bug Bounty @Bugcrowd @SynackRedTeam, Ambassador @Bugcrowd, Freelancer 💻 🎒 | CRTO | eCPPTv2 | eWPTXv2 | ShivaHolic 🕉🔱
Fiona | The Millennia... @The_MMW
283K Followers 117 Following I talk about proven wealth building strategies | Helping 1M+ achieve financial freedom at https://t.co/qp6S7bY936 | Former wealth advisor turned writer
sudo jai @ja1sharma
2K Followers 556 Following Offensive Security | Always a Learner | Security Researcher | CVE-2020-29238, CVE-2020-12822 | Views are my own
Aditya Dixit @zombie007o
1K Followers 932 Following Research Lead at CredShields | Pentest Team Lead at Cobalt and HackerOne | OSCP | AWS Sec | Tweets about security in Web2 and Web3.
Lewin | Wealth Pill �... @Wealth_Pill
432K Followers 343 Following Ghostwriter. Built my business to $100k+/mo and 400k+ followers using social media and AI. DM for promos/AI collabs, X growth and social media monetization.