Paul Melson @pmelson
Author/Operator of @ScumBots. Blue Team by day, Blue Team by night. Opinions, typos, and bad grammar do not represent my employer. He/Him ✋👈 Joined February 2008-
Tweets17K
-
Followers14K
-
Following1K
-
Likes29K
I found a what I think novel approach which allowed me to list some of the content of #Lumma #Infostealer Command & Control servers with the help of left behind .DS_Store files. Blog, tool and Lumma files can be found here nexusfuzzy.medium.com/lumma-stealer-…
@SLEUTHCON off to a great start. My lesson learned from @pmelson is: make friends, they probably know something you don’t, and the Intel space is all about not not knowing things #sharingIsScaring #CTI
We're kicked off at #SLEUTHCON with @pmelson discussing the importance of networking in cyber, not for packet routing or job hunting, but disruption opportunities by pooling our collective access. I agree. Collectively, we're actually more powerful than state actors in many ways.
Get ready for this year's Sleuthcon by listening to the episode of THE Microsoft Threat Intelligence podcast all about ScumBots with Paul Melson! thecyberwire.com/podcasts/micro…
Get ready for this year's Sleuthcon by listening to the episode of THE Microsoft Threat Intelligence podcast all about ScumBots with Paul Melson! thecyberwire.com/podcasts/micro…
Today I am thankful for all of the folks working a shift and watching the wires to keep us safe. I see you and I appreciate you.
@censysio Censys has many open positions open right now across the company: sales, marketing, product, engineering, and research. Come join the team building the next generation of Internet scanning technology, the Internet Intelligence Platform. censys.com/careers/
I posted my analysis of a malicious PDF containing a heavily obfuscated PHP payload over on infosec[.]exchange: infosec.exchange/@pmelson/11335…
Given the significant impact of Hurricane Helene, the BSidesAugusta organizers have decided to cancel BSidesAugusta 2024 and our directly associated events during Augusta Cyber Week.
#BruteRatel - #Latrodectus - .pdf > url > .js > .msi > .dll wscript.exe Document-19-51-48.js msiexec.exe /V MSIBA2E.tmp /DontWait rundll32.exe C:\Users\Admin\AppData\Roaming\vierm_soft_x64.dll, GetDeepDVCState (1/3) 👇 IOC's github.com/pr0xylife/Latr…
#BAMFI ALERT - #Chicago: “Abducted 4y/o from Chicago in Arizona or Texas? Riley Batts, 4, was last seen on Sept 23, in the 5500 block of South Lowe Avenue in the Englewood neighborhood. Police say she was abducted by her non-custodial parent. - via JCodenReports.com
#Oakland, #California: 5y/o King Scott has been #missing since yesterday (Tues, Sept 24). He was last seen in the 1000 blk of Eight St in Oakland. Authorities believe King may be with his Mother, Mikalairene King, who is also missing (pictured). Pls SHARE to help us find King.
Shaun may travel to Irvine, #California, he was last seen in September 7, 2024 in San Clemente, California.. He may be in the need of medical attention. bit.ly/4dloVa2
I am excited to share that the #PEAK #ThreatHunting Framework, which I wrote with @iknowuhack and @letswastetime, has been nominated for a SANS Difference Maker award as "Innovation of the Year." Vote here: sans.org/about/awards/d…

Florian Roth ⚡️ @cyb3rops
206K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Andrew Thompson @ImposeCost
39K Followers 1K Following Head of Research and Discovery (RAD) @Google Threat Intelligence Group via @Mandiant acquisition. Posts are attributable to me—not my employer. Former @USMC.
Chris Sanders 🔎 �... @chrissanders88
34K Followers 489 Following Ed.D. | Founder @networkdefense @RuralTechFund | Former @Mandiant, DoD | Author: Intrusion Detection Honeypots, Practical Packet Analysis, Applied NSM
💻 Sherrod DeGrippo... @sherrod_im
36K Followers 7K Following Weird security voyeur. Vibe merchant. CISO of your 🩷 Official USPS fan account. 🎉 Host of THE Microsoft Threat Intelligence Podcast. I like crime actors.
Katie Nickels @likethecoins
55K Followers 3K Following Director of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
Stephan Berger @malmoeb
28K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
Michael Koczwara @MichalKoczwara
23K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
Kostas @Kostastsale
18K Followers 367 Following @TheDFIRReport | No longer active here – find me on Bluesky: https://t.co/qHzDSxCRfG. 🇬🇷🇨🇦
Will @BushidoToken
36K Followers 3K Following Senior Threat Intel Advisor @TeamCymru | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | Co-founder @BSidesBournemth | @darknetdiaries #126: REvil
rootsecdev @rootsecdev
26K Followers 1K Following Senior Security Consultant @TrustedSec | Military grade meme poster, researcher, cloud penetration tester, voider of warranties. My thoughts are my own.
Ali Hadi | B!n@ry @binaryz0ne
33K Followers 565 Following DFIR and Adversary Simulation | DFIR @ ProtonMail
Thomas Roccia 🤘 @fr0gger_
31K Followers 2K Following AI Security x Threat Intel · Sr. Threat Researcher @Microsoft · Creator of #Unprotect & #NOVA · Malware Warlock · Python 🧡 · Prev @McAfee_Labs · Views mine 😈
Joe Słowik 🌻 @jfslowik
28K Followers 1K Following CTI, OT/ICS, DE&TH, and related infosec content. Oh, and memes. And shitposting. Lots of shitposting.
Nicole Beckwith @NicoleBeckwith
42K Followers 7K Following Director, Security Operations @kroger 🍓 Intel, Hunting, IR, Detection Engineering, Insider Risk, Fraud & Forensics 💻 Fmr LE & DFIR for OH & Secret Service TF.
Greg Linares (Laughin... @Laughing_Mantis
37K Followers 2K Following 20+ yrs in Infosec. Malware Influencer. I turn Malware into Art and Music. Art @MalwareArt. 4x Pwnie Nominee. 𝕍𝕏. GameDev. Autistic.
blackorbird @blackorbird
35K Followers 671 Following Peace and Love. Just Analysis/Hunter. #APT #threatIntelligence #Exploit #CTI Need Job
Mike Felch (Stay Read... @ustayready
16K Followers 2K Following Targeted Ops Red Team @ TrustedSec | Hacking since Renegade BBS backdoors | Prior CrowdStrike/BHIS | In Christ's grip | I speak for myself only | K1HAQ
Samir @SBousseaden
25K Followers 1K Following Detection Engineering | Elastic Security Mastodon: @[email protected]
Eric Biller @ericnb52
1 Followers 394 Following
John Doe @JohnDoe2pt0
5 Followers 196 Following
Saad Saeed @saadsaeed1019
36 Followers 2K Following Security researcher in progress | Exploring adversaries & defenses | Aspiring Purple Teamer | Building skills, breaking barriers.
chiru.rs 🦀 @chiru_chintha9
98 Followers 2K Following web3 security researcher | obsessed with rust 🦀| solana
E11ie @P0int3rNu11
204 Followers 5K Following PlayStation 🎮| GT7🏁🏎️💨| The Last of Us💔🫂| God of War🪓💪🧔♂️| Days Gone🏍️🧟 | GTA Online💲🚗🚓...
Dru Banks @c0dex_dang3r
56 Followers 798 Following ◇Veteran◇ 🇺🇸 | Offensive Security ⚔️ | Reverse Engineering 👨🏿💻 | Malware Analysis 🐞
PossumSec @0xPossumSec
45 Followers 1K Following
Brown Jack @BrownJack596114
0 Followers 359 Following
V M @VeeeeeMo
19 Followers 292 Following
Clare Christian @christian_71765
3 Followers 37 Following
07x_v3177.exe @VedGawde
81 Followers 2K Following Trust in His plan | God's love makes even the hardest journeys worthwhile | His love is the compass guiding your life's purpose |
Myc Cellium @MycCelium
64 Followers 1K Following
ZeroSploit @Zero_Sploit
245 Followers 914 Following Hacker tackling tough problems & building cool software. Flipper Sub-GHz DB: https://t.co/N94MxuDX21. #coding #hacking #python
./desktop/krypt skidd... @helpmehackyou
29 Followers 669 Following penetration tester , security+ , network server security professional , systems developer , end-user-computing .
arip petits @AripPetits
5 Followers 1K Following
Qanon @qanonfree
0 Followers 4K Following
Bumblebee @Lolippop23
179 Followers 2K Following Cybersecurity & AI enthusiast | Offensive Security Learner | Building, breaking & understanding systems | Curious mind
George Kaplan @vileraiment
27 Followers 490 Following
Ronald @Roland91930930
45 Followers 2K Following
0xbin4ry @0xbin4ry
8 Followers 452 Following Aspiring red teamer | Reverse engineer & exploit developer | CTF player
Jeff Higgins @Jeffhiggins021
390 Followers 5K Following Home🏠of your favorite Bourbon,Whiskey,Cognac,Tequila,Rum🍸🍷🥃
Pandurang Rajanlawar @PandurangR_30
0 Followers 43 Following
seedkingz @313_network
514 Followers 5K Following
only hacker @sec_learn7
4 Followers 206 Following
ROSE EVANGELINE @HEAVENOFJESUS
945 Followers 7K Following I LOVE JESUS. HE'S ONLY MINE, JUST MINE, EXCLUSIVELY MINE, ALL MINE, MINE, MINE, MINE!!!!!!
[email protected] @Sashasburger
0 Followers 88 Following
Bibek Thapa magar @lets_see_dis
16 Followers 419 Following
toor toor @AmazonToor
0 Followers 42 Following
Ahmed @Ahmed2XX0
135 Followers 4K Following Life is a moment fill it with joy, clothe it with hope, cheer it with laughter, and strip it of sorrow, for nothing is worth the sadness
Norbert @NB1r0
59 Followers 3K Following
ishwor shrestha @ishwor9188
6 Followers 125 Following
Average User @jam__bou
46 Followers 589 Following
RAJASEKHAR P @rajasekharp235
34 Followers 954 Following
learner @learner1001a
5 Followers 28 Following
0x2A Security @0x2asec
43 Followers 965 Following Security: the answer to the ultimate question of life, the universe, and everything.
Crockett @CrockettLabs
66 Followers 2K Following
rassgat @rasgat_
52 Followers 808 Following
Bart Thijssen @nan0x1
784 Followers 7K Following Master of (Keeping/Stealing) your Secrets | Security Advisor & Intel Analyst | Civil Servant @ BE | Klopjacht-speurder | IT Eng. + Pol. Sci. | Tweets my own
Vlad Geagla @7w8xfn9kfs
1 Followers 80 Following
LostNerd @LostN3rd
59 Followers 182 Following Critical Thinker | Investing | Cyber Security | CTI | PenTesting
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Andrew Thompson @ImposeCost
39K Followers 1K Following Head of Research and Discovery (RAD) @Google Threat Intelligence Group via @Mandiant acquisition. Posts are attributable to me—not my employer. Former @USMC.
Chris Sanders 🔎 �... @chrissanders88
34K Followers 489 Following Ed.D. | Founder @networkdefense @RuralTechFund | Former @Mandiant, DoD | Author: Intrusion Detection Honeypots, Practical Packet Analysis, Applied NSM
💻 Sherrod DeGrippo... @sherrod_im
36K Followers 7K Following Weird security voyeur. Vibe merchant. CISO of your 🩷 Official USPS fan account. 🎉 Host of THE Microsoft Threat Intelligence Podcast. I like crime actors.
Mick Douglas 🇺🇦... @bettersafetynet
30K Followers 568 Following Consultant for InfoSec Innovations | @SANSInstitute Principal Instructor | @IANS_Security Faculty | I like information security. How about you?
Katie Nickels @likethecoins
55K Followers 3K Following Director of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
Michael Koczwara @MichalKoczwara
23K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
Kostas @Kostastsale
18K Followers 367 Following @TheDFIRReport | No longer active here – find me on Bluesky: https://t.co/qHzDSxCRfG. 🇬🇷🇨🇦
Will @BushidoToken
36K Followers 3K Following Senior Threat Intel Advisor @TeamCymru | Co-founder @CuratedIntel | Co-author @SANSForensics FOR589 | Co-founder @BSidesBournemth | @darknetdiaries #126: REvil
rootsecdev @rootsecdev
26K Followers 1K Following Senior Security Consultant @TrustedSec | Military grade meme poster, researcher, cloud penetration tester, voider of warranties. My thoughts are my own.
Ali Hadi | B!n@ry @binaryz0ne
33K Followers 565 Following DFIR and Adversary Simulation | DFIR @ ProtonMail
Thomas Roccia 🤘 @fr0gger_
31K Followers 2K Following AI Security x Threat Intel · Sr. Threat Researcher @Microsoft · Creator of #Unprotect & #NOVA · Malware Warlock · Python 🧡 · Prev @McAfee_Labs · Views mine 😈
Joe Słowik 🌻 @jfslowik
28K Followers 1K Following CTI, OT/ICS, DE&TH, and related infosec content. Oh, and memes. And shitposting. Lots of shitposting.
Vincent Yiu @vysecurity
29K Followers 309 Following Director, Red Team, Offensive Security. Help organizations safeguard their businesses from the bad guys.
Unit 42 @Unit42_Intel
63K Followers 82 Following The latest research and news from Unit 42, the Palo Alto Networks (@paloaltontwks) Threat Intelligence and Security Consulting Team covering incident response.
Nicole Beckwith @NicoleBeckwith
42K Followers 7K Following Director, Security Operations @kroger 🍓 Intel, Hunting, IR, Detection Engineering, Insider Risk, Fraud & Forensics 💻 Fmr LE & DFIR for OH & Secret Service TF.
Greg Linares (Laughin... @Laughing_Mantis
37K Followers 2K Following 20+ yrs in Infosec. Malware Influencer. I turn Malware into Art and Music. Art @MalwareArt. 4x Pwnie Nominee. 𝕍𝕏. GameDev. Autistic.
blackorbird @blackorbird
35K Followers 671 Following Peace and Love. Just Analysis/Hunter. #APT #threatIntelligence #Exploit #CTI Need Job
Samir @SBousseaden
25K Followers 1K Following Detection Engineering | Elastic Security Mastodon: @[email protected]
SlickitySloth @0xtomflow
343 Followers 67 Following
Fox_threatintel @banthisguy9349
14K Followers 261 Following Just a person who is against cyber crime and dictators like Putin
Will @will_baxter
70 Followers 796 Following
Gravel Bottom @GBcraftbrewery
331 Followers 142 Following Gravel Bottom Craft Brewery & Supply. Follow us for what's on tap, news, events, and helpful articles to expand your knowledge of beer.
English, Ryan, 1ea @EnglishRyno
364 Followers 399 Following Security researcher at Lumen’s Black Lotus Labs. tweets/opinions are my own
RET2 WarGames @ret2wargames
2K Followers 2K Following Our industry-leading platform is the most effective solution for learning modern binary exploitation through a world-class curriculum developed by @RET2Systems
Lena @LambdaMamba
4K Followers 408 Following CEO of World Cyber Health | Founder of @MalwareVillage | Creator of https://t.co/AKyp6xNeDy | Malware Researcher | Keynote | Banned from JSAC
Ankur @kernelm0de
444 Followers 471 Following
Raghav Rastogi @raghav127001
906 Followers 467 Following Threat Analysis Engineer @gendigitalinc |Hunting Malware with a Passion
Gootloader @Gootloader
1K Followers 333 Following Security researcher dedicated to pissing off the Gootloader Threat Actor. Tox Chat: 5E7FB4CA0D59F48504AEC72907D64D71D22A00C023E584276F91DB26C924ED64C6D7F19348D2
Convera @ConveraHoldings
16K Followers 2K Following Follow us for global market updates, macro insights, and fintech news. For student queries, visit our website. Please note, we don't reply to comments on here.
Costin Raiu @craiu
39K Followers 7K Following Cybersecurity researcher focused on threat intel & APTs. Breaking down attacks, hunting threats, and crafting YARA rules. 🛡️💻 #ThreatIntel #CTI #Crypto #YARA
Jonathan Peters @cod3nym
773 Followers 101 Following Threat Researcher | Detection Engineer @nextronsystems @nextronresearch #Yara enthusiast | C# Developer
itsnetsec @thenecset
72 Followers 214 Following
Frank Duff @FrankDuff
1K Followers 359 Following Co-founder of Tidal Cyber; Former GM ATT&CK Evaluations. Opinions are my own
Traceix @usetraceix
17K Followers 417 Following Correlate binaries by behavior | Demo: https://t.co/elkZk1VrrC | Discord: https://t.co/jcZBvfLOic | Product of Revix Labs LLC
Virus Bulletin @virusbtn
60K Followers 1K Following Security information portal, testing and certification body. Organisers of the annual Virus Bulletin conference. @[email protected]
Erica Peterson @ericalikestech
3K Followers 4K Following Co-Founder @cyberlawcon | J.D. Candidate @duqklinelaw
Alex Delamotte @spiderspiders_
1K Followers 1K Following Threat Researcher @ SentinelLabs. Resident of Las Vegas. Unabashed Futurist. Probably a Shiny Pokémon in human-like form. Opinions are mine.
Allan “Ransomware S... @uuallan
17K Followers 6K Following Back The Press Guardian & The Clock:1942 https://t.co/liXLX2DeQ8
Robert M. Lee @RobertMLee
76K Followers 400 Following Co-Founder & CEO @DragosInc | SANS #FOR578 & #ICS515 course author & Faculty Fellow |@_LittleBobby_ writer | NSA & USAF Veteran
Black Brewers Podcast @blackbrewerspod
185 Followers 136 Following 3 Brothers of like minds who all work in the craft beer industry who came together like Voltron.
☠️🐻Andy Piazza... @klrgrz
6K Followers 3K Following Christian. Killer Grizz, Threat Intel & Thrunter. Hack things w/ @bsides_nova. @DEFCON Contests Dept Lead & Black Badge DC32. GSE #344. (VIEWS ARE MY OWN).
Mohamed Haron @m7mdharon
3K Followers 745 Following Cybersecurity Analyst | Ethical Hacker | Bug Bounty Hunter | Web App Security
wallfacer @simplylurking2
1K Followers 1K Following
Packetriot @packetriot
211 Followers 23 Following Host web and TCP apps from any network or device. Access databases, web apps, SSH and more. Connect to cameras, sensors, point of sale systems without a VPN.
Tom Hegel @TomHegel
7K Followers 750 Following Threat Research Lead @SentinelOne, Advisor with @ValidinLLC
Gaelan Adams @gaelanadams
435 Followers 1K Following #InfoSec | #IncidentResponse | #BlueTeam | #Splunk |#Batman. | Security Architect | Tweets are my own.
Ramin Nafisi @MalwareRE
5K Followers 2K Following Director of MSTIC Malware Intelligence, Research, and Analysis (MSTIC-MIRAGE) team.
Chef Reactions @ChefReactions
491K Followers 427 Following Extra Salty | Side of Sarcasm *BS allergy* that annoying, monotone chef from TikTok — CR x Hedley & Hat for Meals On Wheels 👇
Item105 @item105
392 Followers 16 Following I tweet when companies file 8-Ks with an Item 1.05. My icon is by Vectorstall from the noun project. Last update: 2025-09-07T02:24:16.289317704+00:00
The North Korean Comp... @dprkcert
3K Followers 469 Following Defend Tomorrow, Secure Today! Official Computer Emergency Response Team (CERT) for the Democratic People's Republic of Korea #NorthSide #NorthKoreaBestKorea
Is Now on VT! @Now_on_VT
4K Followers 788 Following Stay ahead of cyber threats. Get real-time alerts on notable APT/FIN/ORB indicators from VirusTotal. A threat intel project by @craiu.
Jai Minton @CyberRaiju
8K Followers 1K Following An Aussie who does cyber things | Threat Hunting Manager @HuntressLabs | Former Principal @CrowdStrike and HuntressLabs
SolidSnake @soolidsnakee
836 Followers 343 Following Malware analysis/Offensive security addict at @Elastic Private account. All opinions expressed here are mine only (not of my employer etc).
Brett Callow @BrettCallow
9K Followers 196 Following Managing Director, Cybersecurity & Data Privacy Communications @FTIConsulting
Crovax @Crovax4
202 Followers 316 Following Lvl 35 meme bandit | Crypto degen | "I'm here to reverse engineer malware and chew bubblegum and I'm all out of bubblegum"
Heather Adkins - Ꜻ ... @argvee
14K Followers 1K Following VP Security @Google, Co-Author "Building Secure and Reliable Systems" @r00t0wns, Medieval Historian
sydney @letswastetime
538 Followers 361 Following `thrunter` | opinions != employers | she/her | search "thrunting soundtrack" | eval link="https://t.co/7EA1367cqG"
Jen Miller Osborn @jadefh
2K Followers 2K Following Head of Intelligence R&D at NetWitness. Co-founder of Unit 42 - Palo Alto Networks and NCIJTF, co-creator of ATT&CK, USAF vet. She/Her.
C4ADS @C4ADS
15K Followers 2K Following C4ADS is a nonprofit organization with a mission to defeat the illicit networks that threaten global peace and security.
Ryan K @meansec
7K Followers 1K Following A cyber hobo. Cycling the earth. Enjoys clicking too fast, long walks in the woods, & advocating. Hates printers. Co-Creator of the BOTS CTF, founder of SURGe
Mar_Pich @Mar_Pich
1K Followers 170 Following Threat Intelligence analyst @CERTCyberdef 🇫🇷 | GCTI | Virtual Routes