Vidya Bhaskar @zer0crypt
tweets are my own unless compromised. Earth Joined December 2010-
Tweets780
-
Followers209
-
Following2K
-
Likes1K
Just got a new OffSec credential via @Accredible for scq.io/uWyWXeT #OSEP via @offsectraining
Here's the official release of Chisel-Strike: A .NET XOR encrypted Cobalt Strike Aggressor implementation for chisel to utilize faster proxy and advanced socks5 capabilities. github.com/m3rcer/Chisel-… #RedTeaming #CobaltStrike #Pentesting
Introducing DOM Invader: DOM XSS just got a whole lot easier to find portswigger.net/blog/introduci…
"Adversaries have been using LDAP to perform recon, so if we want to understand the techniques of the attackers. We have to do the same thing, as they do" excellent work by @DebugPrivilege detailing how to hunt for LDAP recon: m365internals.com/2021/05/22/how… #malware #cybersecurity
#checkra1n 0.12.3 released with support for iOS 14.5 and various bug fixes, including M1 support! Grab it at: checkra.in/releases/0.12.…
Looking for injectable DTD files *inside* JAR archives may easily be overlooked. A good read from @iamnoooob 👍 #XXE blog.noob.ninja/spilling-local…
Yesterday we published our Public Report on the VPN by Google One system, assessing the product's technical security properties and its associated privacy claims: research.nccgroup.com/2021/04/08/pub…
Part two of my article about how I hacked Facebook. Total bounty: $54,800 Two account takeover and Internal SSRF. alaa0x2.medium.com/how-i-hacked-f… #bugbountyTip #infosec #facebookbugbounty #CyberSec #bugbounty #bugbountyTips
CVE-2021-26857 is a Exchange Binary Formatter Deserialization RCE triggered in the Microsoft.Exchange.UM.UMCore.PipelineContext class within the FromHeaderFile method via the contactInfo type. Second order deserialization which requires unified messaging enabled (common config)
Just when you thought JSON was the one thing you could trust. My latest research on JSON interoperability vulnerabilities highlights the risks of inconsistent parser behavior (40+ parsers) and attacks to bypass business logic in microservice architectures. labs.bishopfox.com/tech-blog/an-e…
Dependency Confusion: How I Hacked Into Apple, Microsoft and Dozens of Other Companies 👇Check the thread after reading for a few bonus facts👇 medium.com/@alex.birsan/d…
If you are tired of googling for #BugBounty writeups, I made a little tool that lets you search writeups easily. You can also pull the search data in JSON format if you need it. BugBountyHunting.com #cybersecurity #BugBountytips #infosec #100DaysOfCode
I and @rootxharsh found and exploited a 0Day RCE in Apple's Travel Portal and were rewarded with $50K. Here's the write-up for that: github.com/httpvoid/write…
What do you do once you have found a blind SSRF? Check out our blind SSRF glossary which contains a number of handy attack chains: blog.assetnote.io/2021/01/13/bli…. The post also briefly touches on SSRF canaries, using existing DNS data and side channel attacks.
#learn365 Day-2: Regular Expression Denial of Service (ReDoS) Due to weakly implemented RegEx Sometimes it is possible to perform a DoS attack by making this expression to evaluate an expression which will make the application work relatively slow. (1/n) #bugbountytips
Created a detailed Mind-Map including How to Test (quick steps) on 2FA Bypass Techniques. (Added few more techniques). MindMap: mm.tt/1736437018?t=S… I hope it will be helpful. #bugbountytips #appsec #infosec
Created a detailed Mind-Map including How to Test (quick steps) on 2FA Bypass Techniques. (Added few more techniques). MindMap: mm.tt/1736437018?t=S… I hope it will be helpful. #bugbountytips #appsec #infosec
#learn365 Day-1: 2FA Bypass Techniques 1. Response Manipulation - In response if "success":false, change it to "success":true 2. Status Code Manipulation - If Status Code is 4xx, try to change it to 200 OK and see if it bypass restrictions. (1/n) #bugbountytips
iOS 14.3 GM Jailbreak Successful.. 🔥🔥 #checkra1n #jailbreak #iOS143 #GM

Paul Seekamp @nullenc0de
17K Followers 608 Following I spend a significant amount of time reading security stuff. Co-Founder/Partner @CoastlineCyber https://t.co/ZQT5L8q2RO
いけがやようこ @ikegayayou20655
94 Followers 4K Following
Sherrie Ellison @SEllison87727
6 Followers 162 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/jwaaDqQyq0
Yannick Boog @YannickBoog
77 Followers 5K Following
Ashif Iqubal @Ashif1337
83 Followers 761 Following Cyber Security Enthusiast | OSEP | CRTO | OSCP | OSWP | CTF Learner | YouTube “Security Journey With Ashif”
Brittany @brittanymaurer1
309 Followers 3K Following
Prayas_Prayas @prayas_prayas
205 Followers 3K Following
Valentín Martín @valenmarman
902 Followers 936 Following La seguridad es parte de mí. Coautor libro: Hacking Windows. OSCP certification
Amin @0x_Amin
19 Followers 647 Following
Martha Aldridge @AldridMartha
32 Followers 1K Following Lured the best beauties from all US states 😻 They are ready to meet See nude photos before a date! Watching this https://t.co/6Ka7TOZJ2n
Kaveri Paglu @RvddyGaru
36 Followers 2K Following
Luis 🇺🇸🇩🇴 @bteCyberPaladin
42 Followers 942 Following ✞Christ is King | 💻Application Security Engineer | 💻Secure Code Review / 🕸️Web Exploitation
Jeremy Chisamore @Chazb0t
2K Followers 1K Following I accidentally the whole thing. https://t.co/xQ62IkJwgK
Harpreet Singh @TheCyb3rAlpha
120 Followers 271 Following Deloitte Red Team | Pen Tester | Author | Otaku
Vasim @vasim_infosec
2K Followers 4K Following
Kevin Carli @CarliKevin
4 Followers 856 Following Security engineer at Orange Cyberdefense Switzerland
ժгε (InfoSec Babys... @AOnung
2K Followers 5K Following #InfoSec #GRC #GDPR It's the mark of an educated mind to be able to entertain a thought without accepting it. #oneGod #oneArsenal Tweets are mine.💉
elhadadx @0Xelhadadx
512 Followers 1K Following NOOB |Bughunter wanna be |Pentester |Machines breaker |ctf player|
zOmfg0rz @_Omfg0rz
311 Followers 3K Following
IoT Security Trust Ma... @iot_trust_mark
1K Followers 5K Following Cyber Trust Mark™ delivers IoT Security Trust Mark™ certification & labelling scheme, global approach to assessing OT & IoT consumer smart devices #IoTsecurity
e2 Security Adria @e2_adria
11 Followers 712 Following
Egons Bušs @EgonsBuss
399 Followers 990 Following The views and opinions expressed here are my own and do not necessarily reflect the official policy or position of anyone else.
Georgije Vukov @vuk0v
165 Followers 2K Following
Ngoc Hieu @NgocHie82163279
5 Followers 23 Following
Degu on caffeine @media_handling
41 Followers 869 Following Not so much to see here ... just a random Information Security guy
mohammadaassif @mohammadaassif
19 Followers 901 Following
Axel Kramer @AxelKramer1
24 Followers 1K Following
EL OMARI OMAR @ELOMARIOMAR5
8 Followers 373 Following
Syed Modassir Ali @gr33nm0nk2802
332 Followers 559 Following Red Team Security Engineer @Solarwinds OWASP Student Chapter Lead: @Owaspjgec
Ayoub ELMOKHTAR @aessadek
1K Followers 434 Following I strive to impress myself - senior offsec engineering / redteam at @Noon - opinions are my own
lonervamp @lonervamp
1K Followers 1K Following geek, video/tabletop gaming, security, insecurity, hacking, sysadmin, netadmin, oscp, iowa
joselima @joselima
8 Followers 42 Following
Relaxed Ricky @relaxedricky
174 Followers 993 Following How much trouble could I really get into? Father and hacker.
Javier Olmedo @JJavierOlmedo
1K Followers 1K Following 👨💻 OSCP - OSWE | Pentester - Author https://t.co/LS398UfRID blog
FuzzingLabs @FuzzingLabs
8K Followers 4K Following Research-oriented Cybersecurity startup specializing in #fuzzing, Vulnerability Research & Offensive security on Mobile, Browser, AI/LLM, Network & Blockchain.
Lesley Carhart @hacks4pancakes
157K Followers 7K Following ICS DFIR @dragosinc, martial artist, marksman, humanist, Lvl14 Neutral Good rogue, USAF Ret. Tweet *very serious* things about infosec. Thoughts mine. They/them
TCM Security @TCMSecurity
207K Followers 360 Following Come learn to hack at TCM Security Academy! Veteran owned. Quality results.
publiclyDisclosed @disclosedh1
65K Followers 2 Following This is an unofficial HackerOne public disclosure watcher who keeps you up to date about the recently disclosed bugs. By @NOBBD
John Hammond @_JohnHammond
298K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
PentesterLab @PentesterLab
190K Followers 0 Following We make learning web hacking and security easier. Online systems, code review, videos & courses that can be used to understand, test and exploit bugs!
Clint Gibler @clintgibler
22K Followers 563 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
Ben Sadeghipour @NahamSec
233K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
James Kettle @albinowax
79K Followers 92 Following Director of Research at PortSwigger aka Burp Suite. Find my research, tools & contact details at https://t.co/vP6UbGmvl3
cje @caseyjohnellis
29K Followers 4K Following troublemaker & troubleshooter | founder @bugcrowd @disclose_io, board advisor, investor | pioneer of #bugbounty as-a-service | opinions CC0 1.0 | #hacktheplanet
bugcrowd @Bugcrowd
187K Followers 6K Following The leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuity™
Katie🌻Moussouris (... @k8em0
110K Followers 10K Following @LutaSecurity CEO @payequitynow MIT&Harvard visiting scholar, @MasonNatSec fellow, 1/2 Chamoru, hacker @k8em0.bsky.social Legacy blue check
Andy Robbins @_wald0
36K Followers 2K Following Co-founder of SpecterOps. Co-creator of BloodHound. https://t.co/rub1i3Fs9g
Paul Seekamp @nullenc0de
17K Followers 608 Following I spend a significant amount of time reading security stuff. Co-Founder/Partner @CoastlineCyber https://t.co/ZQT5L8q2RO
ippsec @ippsec
119K Followers 353 Following
Dave Kennedy @HackingDave
223K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
Vivek Ramachandran @vivekramac
26K Followers 5K Following Founder, SquareX (@getsquarex) | (exited) Founder, PentesterAcademy (@securitytube) - acquired by INE (@ine) | Defcon - Blackhat Speaker | Book Author
OWASP Hyderabad @OWASPHyderabad
484 Followers 152 Following
s1r1us @S1r1u5_
11K Followers 2K Following aham nityaṃ śiṣyaḥ, jagat mama guruḥ. {~hacker~} {founder @ElectrovoltSec, @HacktronAI}
ENKI WhiteHat @ENKI_official_X
238 Followers 30 Following White-hat Cybersecurity Experts | 🌐 Hack Every Bit For a Better Planet | 🛡️ Ethical Hacking & Defense | 🚀 Protect Innovation with Expert Insight
Fabian Bader @fabian_bader
9K Followers 813 Following #Security #Azure #AAD #MDE #M365 #AD #PKI Microsoft MVP Tweets and opinions are my own @[email protected]
nedwill @NedWilliamson
16K Followers 551 Following Tesla {Autopilot, Dojo}; Previously Google Security; PPP for life; SockPuppet, Soundhax, Speedcubing
Andrea P @decoder_it
8K Followers 290 Following Security Consultant @semperistech . Independent Security Researcher. Cyclist & Scubadiver. MSRC MVR 2022. "So di non sapere"
Neeraj Pal @_neerajpal
234 Followers 1K Following product security @Qualcomm. previously @sony_india, @iiscbangalore. Opinions are mine only. 0x74C8853A777E0EAB
SEKTOR7 Institute @SEKTOR7net
15K Followers 346 Following Homo Aptus. Vincit qui se vincit - Publilius Syrus. Consulting, Training, Technology, Cyber domain, and more... @x33fcon founder.
an0n @an0n_r0
13K Followers 726 Following CRT(E|O|L) | OSCP | @RingZer0_CTF 1st (for 2yrs) | HackTheBox Top10 | RPISEC MBE | Flare-On completer | GoogleCTF writeup winner | SSD research | Math MSc |🇭🇺
Rich Harang @rharang
3K Followers 709 Following Security of AI, AI for Security AI Red Team @ NVIDIA Using bad guys to catch math since 2010 `from standard_disclaimers import *`
Joubin @joubinj
350 Followers 468 Following Dad, Husband, Computer Scientists, @OWASP Board, #OWASP Sacramento, Principal Security Architect | Previously: @SizeyApp @NAVSEA @Apple @[email protected]
Hossam @safe_buffer
1K Followers 292 Following Principal Security Engineer @halbornsecurity focusing on R&D/digital assets security “opinions/shitpost are solely my own” ex @cyberstruggle SCO made in 🇪🇬
xssdoctor @xssdoctor
4K Followers 372 Following hacker and cardiologist… not necessarily in that order
0xor0ne @0xor0ne
81K Followers 514 Following | CyberSecurity | Reverse Engineering | C and Rust | Exploit | Linux kernel | PhD | My Tweets, My Opinions :) |
klez @KlezVirus
8K Followers 706 Following Independent Cyber Security Researcher - Opinions are my own
h0mbre @h0mbre_
15K Followers 641 Following # Exploit Reliability Engineer # Developing a full-system snapshot fuzzer: https://t.co/mfVXhwoGYD # Avi: https://t.co/3fsQfVprCf
x86matthew @x86matthew
21K Followers 189 Following C / asm / system emulation / reverse engineering. @the_secret_club
Godfather Orwa 🇯�... @GodfatherOrwa
24K Followers 2K Following Hacker | Bug Hunter | Cooker | Top 5 P1 Warrior On https://t.co/dzFQH75OWj | LevelUpX Champion | 10+ 0Days/CVEs
Muthu D @_anonysm
2K Followers 322 Following Security Analyst | Bug Bounty Hunter | Investor | Book Enthusiast 📚
Youssef (s3c) @s3c_krd
10K Followers 513 Following Security researcher & ambassador at Hackerone #bugbounty #hacker #bugbounytips
LLM Security @llm_sec
10K Followers 294 Following Research, papers, jobs, and news on large language model security. Got something relevant? DM / tag @llm_sec
Cas van Cooten @chvancooten
10K Followers 673 Following Benevolently malicious offensive security enthusiast || OffSec Developer & Malware Linguist || NimPlant & NimPackt author || @ABNAMRO Red Team
Altered Security @AlteredSecurity
7K Followers 2K Following Global leader in hands-on learning for enterprise and cloud security education. Join 40000+ infosec professionals from 130+ countries
Aaron Grattafiori @dyn___
6K Followers 2K Following Offensive Security / AI Red Teaming @ NVIDIA. Ex-GenAI and OffSec Red Teaming Lead at Meta. Ex-Principal Consultant and Researcher @ NCC Group.
Alex Levinson @alexlevinson
31K Followers 2K Following Head of Security @Scale_AI. Former Red Team @Uber, @Lares_, @Zynga. Keeper of Keys @CCDCRedTeam and @nationalCPTC. Author of GSCRIPT. #InfoSec #RedTeam #Golang
mgeeky | Mariusz Bana... @mariuszbit
14K Followers 812 Following 🔴 Operator, Initial Access afficionado, Researcher, ex-AV engine developer, ex-Malware analyst 🦋 @mgeeky.bsky.social 🫖 green tea lover
Chromium Disclosed Se... @BugsChromium
8K Followers 0 Following Tweets publicly disclosed bugs in Chromium. Not an official Google product. Run by @SecurityMB. Mastodon: @[email protected]
Nasreddine Benchercha... @nas_bench
11K Followers 1K Following Detection @Splunk & @cisco | previously @nextronsystems | @sigma_hq & @magicswordio maintainer | Eternal Learner
Akamai Security Intel... @akamai_research
26K Followers 109 Following All security research, all the time. Bringing you the latest insights from @Akamai’s research teams across the globe.
Filip Dragovic @filip_dragovic
7K Followers 1K Following My research unless stated otherwise. My opinions are my own and do not represent the views of my employer.
Justin Gardner @Rhynorater
35K Followers 2K Following Christian | Full-time Bug Bounty Hunter | Host of @ctbbpodcast | Advisor @CaidoIO | 4x LHE MVH | 🗣️ English, 日本語 | ♥️ @mariahchan_ ♥️
palera1n @palera1n
25K Followers 22 Following palera1n is a semi-tethered checkm8 jailbreak for iOS 15.0+
Hackmanit @hackmanit
314 Followers 79 Following IT security company specialized in the security of Web applications, Web services, Single Sign-On, SSL/TLS and applied cryptography.
Layoffs.fyi @Layoffsfyi
12K Followers 0 Following https://t.co/pgHaA37SmV tracks tech startup layoffs and lists of employees laid off to give them exposure to companies still hiring. By @roger_lee
R3dF09 @R3dF09
2K Followers 323 Following Pwn2Own2017 Edge Winner, MSRC MVR 2020. Member of @XuanwuLab EcoSec team. Windows/macOS/iOS. Tweets are my own.