ORION @ORION_Hunts
I don't always have opinions, but when I do I express views that are mine alone and not necessarily those of my employer. Joined August 2016-
Tweets27
-
Followers39
-
Following837
-
Likes331
The 2024 Threat Detection Report is out! Featuring actionable insights for the most prevalent cyber threats and ATT&CK techniques your security team is likely to encounter. Read the full report now: redcanary.com/threat-detecti…
1995: MGM releases Hackers 2023: Hackers ransom MGM 2051: ??? 🍿
I started a company! 🥳 With the advancements in AI and the need for fresh solutions to cybersecurity challenges, I've started Apollo AI (@goapolloai). 🧵 Our goal is to make users more effective and efficient without learning new complex systems and processes.
Make threat research and testing on Macs easier with Red Canary Mac Monitor. Now everyone can have a research test-bed that provides EDR-like monitoring and system event analysis for free. redcanary.com/blog/mac-monit…
The 2023 Threat Detection Report is out! Here are the top 10 threats we observed across our customer environments last year. How does this compare with what you observed? redcanary.com/resources/guid…
The Red Canary 2021 Threat Detection Report is now available. Use this in-depth look at the most prevalent ATT&CK® techniques to help you and your team focus on what matters most. bit.ly/3m825JW
Red Canary's @likethecoins and @ForensicITGuy will be discussing our recent Silver Sparrow research, including what we've learned since publishing. Tune in at 2pm EST today!
Considering the spate of recent ransomware incidents affecting hospitals, we decided to share the ten detection analytics that helped us stop one earlier this month. redcanary.com/blog/how-one-h… #Ryuk
We're monitoring a threat we've dubbed "Blue Mockingbird" that is deploying Monero cryptocurrency-mining payloads on Windows machines at multiple organizations. bit.ly/2WyXJz3
We detected an adversary deleting VSS files on a handful of endpoints as part of a recent #ransomware scheme. This detection kept a bad situation from getting worse and scored our customer a win from the midst of a losing situation. hubs.ly/H0knxKb0
Researchers @SubTee and @rw_access demonstrated how to threat hunt for the unknown—and disclosed a new attack technique in the process—at #BHUSA this afternoon. hubs.ly/H0k9XDD0
Adversaries commonly host attack infrastructure on Pastebin. Most of it's mundane, but sometimes—if you’re willing to examine a long and convoluted sequence of scripts—you can find a persistent Linux backdoor concealing itself with steganography. hubs.ly/H0h-_1r0
Just published a tool that I hope will be useful for Red/Blue/Purple teams that are interested in automating MITRE ATT&CK methods. The script will convert @redcanaryco Atomic Red Team YAML files to @MITREcorp Caldera Stockpile ability YML files. Enjoy! github.com/xenoscr/Atomic…
Any security team that's working to adopt @MITREattack should consider these four free and compatible tools: hubs.ly/H0hvPwS0
I've posted a small blog post titled Keeping an eye out for detection content here medium.com/@olafhartong/k… #DFIR #ThreatHunting #BlueTeam #SIEM accompanied by a git repo github.com/olafhartong/de…
This is awesome.
Awesomeness! If you work in a SOC, map all of your use cases to ATT&CK, run the Atomic Tests to validate existing logic and reveal gaps in coverage where you don't have detection. Wash, rinse, repeat.
Late at night and feeling like you can't get an upper hand on attackers/red teamers? Here's four great resources to reflect on medium.com/starting-up-se… linkedin.com/pulse/socless-… medium.com/palantir/alert… redcanary.com/blog/detection…

Cinthya Taisha @KellseyTob30570
1 Followers 99 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/iQVPS3JhJ5
SystemTek - Technolog... @SystemTek_UK
2K Followers 5K Following Welcome to SystemTek - Est 1999, find the latest tech news and information at https://t.co/I9t1QXbRbr
yrae8398yvsu @ely57kcsmyw
16 Followers 379 Following Tiktokshop conducts recruitment for part-time partners! Salary $100-$300 per day, please contact us https://t.co/Y8sYlOj1Vx
barnyewest cards @barnyewestcards
947 Followers 1K Following new to this PWE (1-4 cards) $1.25 (at your own risk) BMWT (5+) $4.50
zero-shot security @zeroshotsec
60 Followers 65 Following Cybersecurity analysts are already stretched thin for time. Let AI handle MITRE ATT&CK mappings.
wwp96 @wwp96
1K Followers 4K Following
zach diehl @zachmand00
29 Followers 2K Following
Hanshan @wilyhanshan
62 Followers 264 Following Detection Engineer, ostensibly. Irony Engineer, passionately. People love me @redcanary, probably. (but they don’t endorse my ramblings, surely)
AA..Ron @AA_ron____
4 Followers 153 Following
J⩜⃝mie Williams @jamieantisocial
10K Followers 7K Following threats && stuff || #UNC1799 forever 🤘|| @DistrictHeather ♥️ + 🍷 **𝚅𝚒𝚎𝚠𝚜 𝚎𝚡𝚙𝚛𝚎𝚜𝚜𝚎𝚍 𝚊𝚛𝚎 𝚖𝚈 օ𝚠𝚗**
Harrison Van Riper @pseudohvr
571 Followers 437 Following ▶️ Director of AI (@TidalCyber) ⏮ Founder, Zero-Shot Security (@zeroshotsec) ⏮ @RedCanary ⏮ @MITREattack ⏮ @DigitalShadows ~ Robo wants an Oreo
Jeremy Brown @AlteredBytes
326 Followers 654 Following Coffee Lover. Nerd. Does wild stuff in network sessions. VP of Analysis @TrinityCyber
Justin Brown @spridel11
4K Followers 5K Following Husband, father, Hacker, Security Leader, Rower, BBQer, #HackersForCharity booth guy, & Baylor Grad. Views expressed are my own and may change. CISSP
Lauren Leigh @LaurenLeigh522
280 Followers 545 Following Intelligence Analyst. (Former) dancer. Not good at tweeting but love reading and liking tweets from others! Views are mine not my employer’s.
Erika Noerenberg gutt... @gutterchurl
3K Followers 3K Following malware and kittens, basically. she/her
Curt Wilson, human @curtw
3K Followers 5K Following Exploring systems security since 1985. Malware+{cybercrime/espionage} analysis, threat intelligence + full-spectrum tech security research. Personal account.
Ofir Almkias @0FiR0S_
56 Followers 148 Following Incident Response Engineer • Security Researcher • Threat Hunter • Mobile Security Expert
Joep Gommers @joepgommers
1K Followers 2K Following CxO Leader | Creative Technologist & Builder | GenAI, Cybersec, Visual Arts & Music
Katie Nickels @likethecoins
55K Followers 3K Following Director of Intel at @redcanary. SANS Certified Instructor for FOR578: CTI. Senior Fellow at @CyberStatecraft. She/her. Mastodon: @[email protected]
Atomic Threat Coverag... @atc_project
2K Followers 1K Following Actionable analytics designed to combat threats
papiesolo @papiesolo1
60 Followers 1K Following
Jason Ortiz @Rafiki1337
273 Followers 1K Following Husband, Dad, #Infosec, #Edtech & #IoT pro, #Maker, space enthusiast 🖖, optimist, urbanist, cartographer 🗺️, sports fan, outdoorsman, 100% #Unvalley ❤️ #Indy
Matias Madou @mmadou
2K Followers 4K Following Ph.D., CTO and co-founder Secure Code Warrior. Helping companies getting software security right by offering a scalable solution to empower and help developers.
ColeRemus @RemusCole
136 Followers 709 Following Fortnite Console Pro. Fast Builder and Editor. DM to play
[email protected]... @eugeneteo
2K Followers 2K Following My views are my own and not those of my employers, past and present.
w1mp1 @w1mp1k1ng
754 Followers 976 Following Applied Intelligence and Threat Research #Vet #DataAddict #Truth #WildDreams #NoTrustPress Don't touch my drums Opinions are always my own
${jndi:ldap://glennba... @theglennbarrett
967 Followers 3K Following Threat Hunter and Incident Responder by day, occasional adjunct by night. () { :;} ; Yay #DerbyCon
Steven Weaver @InfoSweaver
16 Followers 390 Following
Steve Ragan ⚠️ @SteveD3
15K Followers 3K Following Father. Grandpa. Geek. Hacker. Former journalist. Security researcher. CMO @BSidesLV. Member: @CuratedIntel | BOD @CircleCityCon (RIP). | Tweets are my own.
Conor Richard @xenosCR
1K Followers 646 Following Cyber, OSCE, OSWE, OSCP Certified, Knowledge Seeker, and my opinions are my own.
Security Advice @secureadvice
104 Followers 185 Following IT Security Professional sharing News and Updates
Lontz @lontze7
1K Followers 423 Following Threat Intel Researcher. Opinions are mine. Special thanks to @censysio , @ValidinLLC & @ReversingLabs for making my research easier.
Zscaler ThreatLabz @Threatlabz
7K Followers 46 Following Threat intelligence and security research from @zscaler
Andrew Northern 𓅓 @ex_raritas
5K Followers 1K Following 🔮 Principal Researcher at Censys 🔮 | formerly Proofpoint | Knowledge Piñata 🪅 | Attack Chain Connoisseur | Epicurean
Kseniia \n @naumovax
3K Followers 121 Following pt malicious network traffic researcher, speaker / this blog about new malware & interesting С2 communication & my work life
Tanner @wbmmfq
625 Followers 415 Following Senior Security Operations Analyst @HuntressLabs | @[email protected] | Views my own, obv.
Morgan Demboski @MorganDemboski
1K Followers 701 Following Cyber Threat Intel Analyst 🏹 @Sophos | A self-proclaimed expert in cyber & geopolitics (opinions = my own)
Scorigami @NFL_Scorigami
514K Followers 0 Following Tracking the chances that NFL games finish with a score that's never happened before. Built by @dpmattingly. Based on an original idea by @jon_bois.
Joosua Santasalo @SantasaloJoosua
3K Followers 733 Following DadOf2,Security researcher@Secureworks, Azure MVP,MSRC Top100 MVR23,Node.js Certified (JSNSD),Azure Security enthusiast,blogs @(https://t.co/QYYm1988cA)
Sarah Young @_sarahyo
10K Followers 1K Following Security & AI stuff @microsoft | Co-host of @AzureSecPod | Mother of shibes | Mostly dogs, carbs & security posts | Opinions mine
Cyber Ops Peasant @CyberOpsPeasant
14 Followers 48 Following Cyber peasant toils in digital fields, mining bytes and coding scripts. Earns just enough for food and a small room. Dreams of wealth and freedom.
Amitai Cohen 🎗️�... @AmitaiCo
2K Followers 634 Following ✦ researching threats @wiz_io 🐞 maintaining vulns @cloudvulndb 🎙️ casting pods @ https://t.co/9Jsah9BjbO
Cyber Team @Cyberteam008
3K Followers 61 Following Threat Hunting | APT Tracking | Malware Analysis | Darkweb Monitoring "Unity is Strength"
VMRay @vmray
4K Followers 2K Following Sandboxing reinvented for the threats of today - and tomorrow. | Imprint: https://t.co/yZtPfo2ySF
Alexander Hatala @AlexanderHatala
407 Followers 621 Following I write about marketing operations, martech, eCommerce, #OSINT, #infosec. Director of digital strategy firm @InnovateCDP. [email protected]
Jonathan Peters @cod3nym
777 Followers 102 Following Threat Researcher | Detection Engineer @nextronsystems @nextronresearch #Yara enthusiast | C# Developer
Permiso Security @permisosecurity
993 Followers 370 Following Detection for all of your clouds - identity providers, Iaas, Saas, Paas and more.
1aN0rmus @TekDefense
4K Followers 1K Following CTO at @permisosecurity Alum: @Mandiant, https://t.co/kqlvYwe86k, USMC
L @x86rax
2K Followers 480 Following Senior SOC Analyst // GIAC Defending (against) Advanced Adversaries // MSc Cyber Sec
Casey Knerr @casey_knerr
456 Followers 7 Following
TI Research @tiresearch1
709 Followers 102 Following Threat Intelligence Feeds, Automatically generated list of IOCs
Intel-Ops @Intel_Ops_io
2K Followers 4 Following Adversary Infrastructure Hunting & Training Curated Threat Intelligence Feed (Coming Soon) https://t.co/N9OKrTrvV0 https://t.co/3YFZfEbgpI
Gootloader @Gootloader
1K Followers 333 Following Security researcher dedicated to pissing off the Gootloader Threat Actor. Tox Chat: 5E7FB4CA0D59F48504AEC72907D64D71D22A00C023E584276F91DB26C924ED64C6D7F19348D2
CRIL (Cyble Research ... @CybleInsights
235 Followers 25 Following Exploring the ever-evolving world of cybersecurity and digital threats. Stay informed, stay secure. Subscribe to CRIL
Randy McEoin @rmceoin
72 Followers 239 Following Hacker of code Moved to Mastodon @[email protected]
[email protected]... @rpargman
4K Followers 5K Following Слава Україні! Most important job: being Dad; I also love to help people deny attackers the opportunity to break and steal all the things. Pronouns: He/him
JaffaCakes118 @JaffaCakes118
758 Followers 118 Following https://t.co/D6SgdT6Wyn https://t.co/C1riUE7TtI
C2IntelFeedsBot @drb_ra
5K Followers 0 Following Mostly here for posting C2s. Thank you to @censysio for the raw data. Censys Search 2.0 extended our results massively.
Nasreddine Benchercha... @nas_bench
11K Followers 1K Following Detection @Splunk & @cisco | previously @nextronsystems | @sigma_hq & @magicswordio maintainer | Eternal Learner
Silent Push @silentpush
2K Followers 378 Following Preemptive cyber defense with Indicators of Future Attack™. Know First.
Aleks @iiamaleks
708 Followers 116 Following Lifelong Student of Information Security | Contributor to @TheDFIRReport
Mattie Schuch @MittenSec
464 Followers 1K Following Cybersecurity fanatic! 💾 DFIR 👾 Malware Reversing 🔎 Threat Hunting @TheDFIRReport member
Miixxedup @Miixxedup
402 Followers 547 Following CTI at @Mandiant | Analyst at @TheDFIRReport | Security Intelligence, Automation and Innovation | Sourdough baker noob but a connoisseur anyway.
Matt Johansen @mattjay
44K Followers 2K Following Helping Secure the Internet | Long Island elder emo surviving in ATX | Expect: infosec current events, DFIR, appsec & cloudsec - and me!
ulזra @lordx64
7K Followers 5K Following 🇺🇸rust/solana dev + AI + 20 years cyber security veteran https://t.co/TjaioUQX2Q
Who said what? @g0njxa
5K Followers 99 Following ChatGPT says I'm a cyber researcher :) | donate 💸 to g0njxa.eth 💖 | Bad student, enthusiast, defo not an expert DMs are open, feel free to reach! 😼☂️🟣
Brett Callow @BrettCallow
9K Followers 196 Following Managing Director, Cybersecurity & Data Privacy Communications @FTIConsulting
zach diehl @zachmand00
29 Followers 2K Following
Germán Fernández @1ZRR4H
35K Followers 461 Following 🏴☠️ OFFENSIVE-INTEL 🏴☠️ Cyber Threat Intelligence by Hackers | Security Researcher en https://t.co/rDrSxZASB3 | @CuratedIntel Member | 🥷🧠🇨🇱
OsCardSales @OsCardSales
2K Followers 791 Following (Jim)Sales of Orioles cards. See my giveaway page @oscardgiveaways for contests or just purchase here. Sales only no haggle/trade. Ship to continental US only.
O’s Card Giveaways @OsCardGiveAways
11K Followers 1K Following (Jim/Jimmy)Giving away Os cards after every win. 24 hours to send your info or you forfeit card. US Shipping only. Wanna support? @oscardsales
rivitna @rivitna2
5K Followers 2K Following Chief #malware analyst, reverse engineer, #APT and #ransomware researcher, programmer. Tweets represent my personal views.