mr.d0x @mrd0x
Security researcher | Co-founder https://t.co/QxBlzp9A8w | https://t.co/zqMXQRZjQN | https://t.co/Fq7WSqTBva | https://t.co/eKezFcO6nd mrd0x.com Joined November 2020-
Tweets1K
-
Followers45K
-
Following298
-
Likes4K
Do you ever just look at a login panel and feel the 0day?
Been a long time since I've written something for my blog. Recently got inspired to break down how a very basic evasion attack on a machine learning model might work. Check it out steve-s.gitbook.io/0xtriboulet/ar…
Today marks the 20th update to the Malware Development Course! Huge shout out to @GigelV41464 Updated Syllabus: maldevacademy.com/maldev-course/… This update focuses on credential dumping on Firefox & Chrome. - Dumping Browser Cookies: Firefox - Dumping Saved Logins: Firefox -…
It gets better ;) I totally forgot about this little persistence method, lol
It gets better ;) I totally forgot about this little persistence method, lol https://t.co/dXqax68fD0
My recent writeup on updates in #Rhadamanthys stealer, along with some scripts that may be helpful in analysis. Check it out!
My recent writeup on updates in #Rhadamanthys stealer, along with some scripts that may be helpful in analysis. Check it out!
Check out Titanis, my new C#-based protocol library! It features implementations of SMB and various Windows RPC protocols along with Kerberos and NTLM. github.com/trustedsec/Tit…
Filefix impersonating Belfer Center 185[.132.176.238 share-belfercenter[.info connecting to neutronsparty[.live full cmdline attached in pastebin: pastebin.com/2BJ3xn3D @500mk500
Acronis Threat Research Unit reports a sophisticated FileFix in the wild beyond the original POC with a multi-lingual phishing site, anti-analysis tricks and JPG steganography that hides a second-stage PowerShell script and encrypted executables. acronis.com/en/tru/posts/f…
I've been researching the Microsoft cloud for almost 7 years now. A few months ago that research resulted in the most impactful vulnerability I will probably ever find: a token validation flaw allowing me to get Global Admin in any Entra ID tenant. Blog: dirkjanm.io/obtaining-glob…
Fake Facebook “Security” pages use FileFix to drop StealC. ⚠️ Click a fake “Appeal” button → it secretly copies a PowerShell command. 💥 Paste the “path” in File Explorer & BOOM—StealC malware installs, hidden in images on Bitbucket. One careless paste = instant breach.…
We've just pushed details on our latest #Nighthawk release (Sivako) nighthawkc2.io/sivako/ - including async BOF support, native kerberos and more 🔥 vimeo.com/1115201393?sha…
Not a vulnerability...?
I foresee 2026 as a year of FIDO authentication downgrade attacks. 🪝🐟 I discovered a universal method for downgrading secure MFA methods (passkeys, security keys) to less secure alternatives during phishing attacks. Enjoy the quick demo! 🎬
Microsoft now confirmed that because the vulnerability I reported is important, not critical, and because they’ve now fixed it they won’t issue a CVE. It’s like they actually want to discourage people from reporting.
Microsoft now confirmed that because the vulnerability I reported is important, not critical, and because they’ve now fixed it they won’t issue a CVE. It’s like they actually want to discourage people from reporting.
Microsoft being a CNA is the biggest joke. They decide what gets a CVE. They decide what is a “vulnerability”. They can sweep anything under the rug this way. Fox guarding the hen house.
Microsoft being a CNA is the biggest joke. They decide what gets a CVE. They decide what is a “vulnerability”. They can sweep anything under the rug this way. Fox guarding the hen house.
Someone brought it to my attention that Zscaler is using their 500,000,000,000 daily customer logs to train Artificial Intelligence. ... does this not seem like a problem ... ?
Hey there, fellow phishermen! 👋 Evilginx Pro update 4.2 has been out for a month, and I decided to spend some time documenting the new features and explaining how to use them. Enjoy the write-up and let me know what else you would like to see added in future updates. 🔗👇
New Malware Development course update: maldevacademy.com/syllabus - Dumping The SAM Database - Dumping The SAM Remotely - Dumping The SAM From Disk - Domain Enumeration Using MS-SAMR Huge shoutout to @GigelV41464 for his help with these awesome modules 🔥

vx-underground @vxunderground
380K Followers 294 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Nicolas Krassas @Dinosn
147K Followers 736 Following Head of Threat & Vulnerability Mgmt @ Henkel AG & Co. KGaA https://t.co/NC1orlKrW3
Justin Elze @HackingLZ
66K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
chompie @chompie1337
83K Followers 1K Following hacker, weird machine mechanic, X-Force Offensive Research (XOR)
GuidedHacking @GuidedHacking
54K Followers 393 Following Reverse Engineering & Game Hacking Courses @ https://t.co/Dl5ED4o7YS
Grzegorz Tworek @0gtweet
36K Followers 2K Following My own research, unless stated otherwise. Not necessarily "safe when taken as directed". GIT d- s+: a+ C++++ !U !L !M w++++$ b++++ G-
Adam Chester 🏴�... @_xpn_
37K Followers 506 Following Hacker for Hire at @SpecterOps | Blog at https://t.co/tjfTOllCEu | Insta at https://t.co/PqR6CZPwjl
Stephan Berger @malmoeb
28K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
Dr. Maik Ro ➡️�... @maikroservice
19K Followers 713 Following ☠️ inactive account ☠️ - Training the next generation of Hackers over at bsky / linkedin / youtube 🏴☠️💜
payloadartist @payloadartist
43K Followers 284 Following Yapping about AI, AppSec, Hacking, & Cybersecurity • Helped secure organizations like Google • Opinions are my cat's • Part-time shitposter
Clandestine @akaclandestine
50K Followers 5K Following | Security | Osint | Threat Research | Opsec | Threat Intelligence | Infosec | Threat Hunting | Humint |
Michael Koczwara @MichalKoczwara
23K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
an0n @an0n_r0
13K Followers 727 Following CRT(E|O|L) | OSCP | @RingZer0_CTF 1st (for 2yrs) | HackTheBox Top10 | RPISEC MBE | Flare-On completer | GoogleCTF writeup winner | SSD research | Math MSc |🇭🇺
Kαι @0xUrbanWolf
17K Followers 262 Following I never brag how real I keep it, cuz it's the best secret — Nas, Take It In Blood
Kostas @Kostastsale
18K Followers 367 Following @TheDFIRReport | No longer active here – find me on Bluesky: https://t.co/qHzDSxCRfG. 🇬🇷🇨🇦
ahqg46 @Ahqg46
1 Followers 25 Following
ttchronic @billzfreeband
53 Followers 594 Following
punt4n0 @punt4n0
132 Followers 2K Following
that one ghoul 🎗 @ghoulishundead
461 Followers 1K Following AI art in progress, follow along and get inspired by the art & quotes. 🏴☠️
Xynk @R4dW1ngs
5 Followers 176 Following
michael.scarn.eth @scarn_eth
417 Followers 3K Following cybersec • sysowner • keyboardist • permaculture • doomposter • data
OD @Gh0stB1ad3
0 Followers 73 Following
Benjamin Hays @BenHaysCyber
0 Followers 121 Following NH High School Student | CCNP Security | Security+
dani @kehaappi
90 Followers 373 Following
Pim @0xp1m
1 Followers 130 Following
Taj Singh @TajSinghReal
3 Followers 130 Following
miyauchi shunsei @noperivedivionb
1 Followers 94 Following Blue Team Operations/Incident Response/Threat Intelligence/DFIR
Gaspi 🐪 @G0DL_AR
263 Followers 437 Following Offensive Security Analyst - MBSC CompSci - OSCP - Learning Rust with MalDev - Learning Reversing Engineering and binary exploitation contact: [email protected]
cum hoc ergo propter ... @qwasrdev
4 Followers 131 Following
MignonAly @Ptq4Pl9pQ5YR2P
26 Followers 731 Following
Mahamadou KONATE @MahamadouKONA13
207 Followers 3K Following Citoyen du monde et soucieux de l’avenir de l’espèce humaine.
Nitz @nitzanwe
16 Followers 119 Following
0x_Mr.Anderson @0xmr_anderson
17 Followers 129 Following
liftupthewaves @liftupthewaves
32 Followers 49 Following Psalm 107:25: "For he commandeth, and raiseth the stormy wind, which lifteth up the waves thereof." 0 real world xp
Kompany @Kompany23417918
0 Followers 4 Following
Jens @Jens355115
4 Followers 160 Following Interested in tech and RF/SDR hobbytechnician ESP32 Projects Wardriving
qwe666 @Jayanth9600
0 Followers 238 Following
Danny Kohler @dak9335
37 Followers 214 Following
Oluwatobi @Olulolatobi
128 Followers 94 Following CHILD OF GOD, Film enthusiast, Penetration Tester, Security dude
Simon E @IlovekopiO2468
0 Followers 52 Following
Liawtoo @Liawtoo474245
39 Followers 2K Following
Mark @x096823
0 Followers 17 Following
Hans Landa @HansLanda266798
1 Followers 23 Following
imjustwatching @imjustwatc38185
0 Followers 33 Following
Abiforo Msaki @AbiforoM67319
2 Followers 52 Following
Luke Thomas @bishyabottom
0 Followers 2 Following
Bhargava Shankar @BhargavaSh49892
0 Followers 22 Following
Soebody @Sameforbody
2 Followers 152 Following
0xm0t0k0 @0xm0t0k0
3 Followers 95 Following reverse engineering, malware analysis, i like deconstructing systems, reading on how to smash the stack for fun and profit
Miizix 🔱 @Miizix
8 Followers 10 Following
At0M1C @SeyitogluSerdar
2 Followers 308 Following
Mukesh Lilawat 🧑�... @coder_lilawat
3K Followers 6K Following Traveller 🧳 | Full-Stack Developer 🧑💻
Derek LaBudie @DLaBudiee
1 Followers 42 Following
Octavius Butler @theOctaviusB
0 Followers 60 Following .::Welcome to the Sprawl 🌃👾🕹️::. Tech, thrift shop junkie, with a flare of fashion and a solid slapshot.
vx-underground @vxunderground
380K Followers 294 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Justin Elze @HackingLZ
66K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
chompie @chompie1337
83K Followers 1K Following hacker, weird machine mechanic, X-Force Offensive Research (XOR)
GuidedHacking @GuidedHacking
54K Followers 393 Following Reverse Engineering & Game Hacking Courses @ https://t.co/Dl5ED4o7YS
Grzegorz Tworek @0gtweet
36K Followers 2K Following My own research, unless stated otherwise. Not necessarily "safe when taken as directed". GIT d- s+: a+ C++++ !U !L !M w++++$ b++++ G-
Adam Chester 🏴�... @_xpn_
37K Followers 506 Following Hacker for Hire at @SpecterOps | Blog at https://t.co/tjfTOllCEu | Insta at https://t.co/PqR6CZPwjl
Stephan Berger @malmoeb
28K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
payloadartist @payloadartist
43K Followers 284 Following Yapping about AI, AppSec, Hacking, & Cybersecurity • Helped secure organizations like Google • Opinions are my cat's • Part-time shitposter
Michael Koczwara @MichalKoczwara
23K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
an0n @an0n_r0
13K Followers 727 Following CRT(E|O|L) | OSCP | @RingZer0_CTF 1st (for 2yrs) | HackTheBox Top10 | RPISEC MBE | Flare-On completer | GoogleCTF writeup winner | SSD research | Math MSc |🇭🇺
Kαι @0xUrbanWolf
17K Followers 262 Following I never brag how real I keep it, cuz it's the best secret — Nas, Take It In Blood
Vincent Yiu @vysecurity
29K Followers 256 Following Director, Red Team, Offensive Security. Help organizations safeguard their businesses from the bad guys.
sn🥶vvcr💥sh @snovvcrash
12K Followers 490 Following Sr. Penetration Tester / Red Team Operator @ptswarm :: Author of the Pentester’s Promiscuous Notebook :: He/him :: Tweets’re my pwn 🐣
Thomas Roccia 🤘 @fr0gger_
32K Followers 2K Following AI Security x Threat Intel · Sr. Threat Researcher @Microsoft · Creator of #Unprotect & #NOVA · Malware Warlock · Python 🧡 · Prev @McAfee_Labs · Views mine 😈
Unit 42 @Unit42_Intel
64K Followers 81 Following The latest research and news from Unit 42, the Palo Alto Networks (@paloaltontwks) Threat Intelligence and Security Consulting Team covering incident response.
Forrest Kasler @FKasler
539 Followers 394 Following Climber, Penetration Tester, Code Junkie, Malware Enthusiast @specterops
Marc Smeets @MarcOverIP
5K Followers 461 Following Does a thing or two with red teaming @OutflankNL | part time race and drift car instructor
International Cyber D... @IntCyberDigest
15K Followers 3K Following Your weekly go-to cybersecurity newsletter, curated and commented on by our senior analysts. Got tips? Signal: IntCyberDigest.17
Aurélien Chalot @Defte_
4K Followers 460 Following Hacker, sysadmin and security researcher @OrangeCyberdef 💻 Calisthenic enthousiast 💪 and wannabe philosopher https://t.co/SqDDhIGGGh 📖 🔥 Hide&Sec 🔥
vxdb @vxdb
19K Followers 420 Following Journalist | Cybercrime News | Signal - vxdb.99 | PGP - https://t.co/VWwniNXrEc
Haidar @haider_kabibo
383 Followers 72 Following Wine tester at Kaspersky :) Personal account. Does not reflect my employer
Keanu Nys @RedByte1337
919 Followers 76 Following Offensive Security Lead @ Spotit. Creator of GraphSpy
Michael Weber @BouncyHat
1K Followers 78 Following Security Consultant. Not affiliated with Red Hat. I just like the hat. @[email protected]
skull @brutecat
3K Followers 238 Following hacker, security researcher. i run a blog @ https://t.co/cBW6gzTpV2
hasherezade @hasherezade
89K Followers 911 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)
exploits.club @exploitsclub
2K Followers 112 Following A VR, RE, and Exploit Dev weekly newsletter | Join the club Contact: [email protected]
Dirk-jan @_dirkjan
29K Followers 206 Following Hacker at @OutsiderSec. Researches AD and Azure (AD) security. Likes to play around with Python and write tools that make work easier.
Dodge This Security @shotgunner101
7K Followers 5K Following Computer Security Professional. Tweets are my own. Rooster Teeth Archive Project: https://t.co/gawoj5ZZyG
Kyle Avery @kyleavery_
4K Followers 432 Following
Grant Smith📡 @S1n1st3rSecuri1
725 Followers 866 Following Founder of @PhantomCyberSec | DEF CON Speaker | Red Team Lead @ a bank | Hacker of scammers, the DOE, DOD, and more
Phantom Security Grou... @phantomcybersec
287 Followers 102 Following Automating the hard parts of Offensive Security. Creators of EvadeX and ApeX
Graham Helton (too mu... @GrahamHelton3
11K Followers 602 Following senior red team engineer @snowflake | former grocery store bagger He/him :wq!
Wietze @Wietze
7K Followers 392 Following Threat Detection & Response. Views are my own, unless retweeted. Maintainer of https://t.co/000t7J0NBR & https://t.co/thv6PP5C48 Co-maintainer of https://t.co/rXIxOggXs2
EZ @IAMERICAbooted
2K Followers 1K Following Yesterday is history. Tomorrow is a mystery. Cloud Solutions Engineer at Contoso. Hacktive Directory admin. Posts don't represent my employer(s).
Traceix @usetraceix
17K Followers 416 Following Look up AI file classifications and ML training data by hash | Discord: https://t.co/jcZBvfLgsE | Product of Revix Labs LLC
Jamie Shaw @1nPr0c
5K Followers 564 Following Principal Security Consultant / Red Team Lead @mdseclabs
PCEF @PerkinsFund
1K Followers 6 Following 501(c)(3) providing free cybersecurity education and tooling | SOL CIA Team | https://t.co/Tu1yraZuZ9 | https://t.co/PF5Plp5ZhH
The Bingus Man @NotNordgaren
1K Followers 617 Following Is this how I send a tweet? My opinions are yours. Orange cat crashouts from time to time... @hackercatprod
Gameel Ali 🤘 @MalGamy12
6K Followers 961 Following Threat Researcher @nextronsystems and volunteer at @vxunderground.
Atsika @_atsika
621 Followers 496 Following Red Team enthusiast | Malware development enjoyer | Adversary Simulation at @quarkslab
Smukx.E @5mukx
16K Followers 230 Following Adversary Simulation | Malware Researcher & Red Teamer | 0x15 Y/o
SinSinology @SinSinology
11K Followers 689 Following Pwn2Own 20{22,23,24,24.5,25,25.5}, i look for 0-Days but i find N-Days & i chase oranges 🍊
Chris Duggan @TLP_R3D
7K Followers 3K Following Author - The Intent Model (Kindle Books) | Malware Geek | Curated Intel Member | Threat Intelligence Expert Extraordinaire
Udayveer Singh @m4lici0u5
2K Followers 4K Following Offensive Security | Red Teamer | Writing Malware | CARTP | CRTL | OSEP | OSWP | CRTO | CARTP | CRTE | CRTP | CESP-ADCS | eJPT
Steve Borosh @rvrsh3ll
1K Followers 645 Following The future is not set. There is no fate, but what we make for ourselves. - John Connor
Sublime Security @sublime_sec
2K Followers 21 Following Sublime Security is the adaptive, AI-powered cloud email security platform that combines best-in-class effectiveness with unprecedented visibility and control.
Antonio Cocomazzi @splinter_code
9K Followers 325 Following offensive security - windows internals | BlueSky: https://t.co/ytvJCoaF2c | Mastodon: https://t.co/hNIHa6L14d
Csaba Fitzl @theevilbit
8K Followers 1K Following macOS Security -- Trail running 🏃 -- Mountains ⛰ -- Tolkien fan For mountain pictures, go to: https://t.co/Xf7KDW5fKu