Shmuel Cohen @_BinWalker_
Former Security researcher @SafeBreach | Former malware researcher @_CPResearch_ | 3x BlackHat speaker | DEFCON speaker | SecTor speaker Joined September 2018-
Tweets81
-
Followers249
-
Following243
-
Likes299
Our research on BitLocker got nominated for not one but TWO Pwnie Awards - “Best Desktop Bug” and “Most Innovative Research”! Happy for the 3rd Pwnie Award nomination in two consecutive years @PwnieAwards !
Windows Downdate : Downgrade Attacks Using Windows Updates : safebreach.com/blog/downgrade… Slides : i.blackhat.com/BH-US-24/Prese…
My DEF CON 32 talk “Windows Downdate: Downgrade Attacks Using Windows Updates” is live on YouTube! youtu.be/HHmxuxQ7bE8?si…
If you're into researching Google's Quick Share, don't forget to check out QuickShell! It implements the RCE chain we found and tools allowing to sniff, receive and send the protocol's packets, fuzz the protocol, exploit vulnerabilities we found and more! github.com/SafeBreach-Lab…
It looks like we finally got POC for CVE-2024-38063 Check it out, looks good github.com/ynwarcs/CVE-20…
Had the best time presenting Windows Downdate at @BlackHatEvents USA and @defcon 32, thank you all for joining. Windows Downdate is now live! Blog - safebreach.com/blog/downgrade… GitHub repo - github.com/SafeBreach-Lab… #BHUSA #DEFCON32
I had the best time presenting QuickShell with @_BinWalker_ at @defcon !! 👨💻🥷 True enthusiasts in this conference you just can't ask for a better audience as a speaker Blogpost is live - safebreach.com/blog/rce-attac… And don't forget to check out the tool - github.com/SafeBreach-Lab…
Reminder: tomorrow at @BlackHatEvents 10:20 AM in Oceanside A - I will be sharing my journey of researching downgrade attacks on Windows and their severe implications on Windows’s platform security. Join my talk “Windows Downdate: Downgrade Attacks Using Windows Updates” #BHUSA
ProcessHacker is now called SystemInformer, and it looks just amazing with lots of new features. Make sure you check it out if you use the old ProcessHacker: github.com/winsiderss/sys…
The MagicDot concepts won't disappear from Windows soon. In addition to reading MagicDot's blogpost, if you aim to find vulns based on the known unfixed issue, don't miss @tiraniddo 's blogpost about Windows path types and their convertion to NT paths - googleprojectzero.blogspot.com/2016/02/the-de…
⚠️Windows users, watch out! Researchers detail a #vulnerability in the Windows DOS-to-NT path conversion process which can be exploited by threat actors to gain rootkit-like capabilities, hiding files and processes without admin permissions. thehackernews.com/2024/04/resear… #hacking
Make sure you read this cool article about my recent research "The dark side of EDR: repurpose EDR as an offensive tool"
Make sure you read this cool article about my recent research "The dark side of EDR: repurpose EDR as an offensive tool"
Make sure you check out this amazing research made by @oryair1999
Make sure you check out this amazing research made by @oryair1999
#BHASIA Briefing "The Dark Side of EDR: Repurpose EDR as an Offensive Tool" will dive into the implications of this novel attack vector, shedding light on the intricate relationship between attackers and XDR. Learn more about the talk and register here>> bit.ly/3x2dB3d
EDRaser. powerful tool for remotely deleting access logs, Windows event logs, databases, and other files on remote machines github.com/SafeBreach-Lab…
I am thrilled to share some exciting news with you all! I have been accepted to present not just one, but TWO of my research projects at Black Hat Asia 2024 (@BlackHatEvents)! 🚀 Check out all briefings: blackhat.com/asia-24/briefi… #BHAsia #BlackHat #CyberSecurity
Had a great time presenting my research about the creation of the PoolParty tool at Black Hat EU 2023 @BlackHatEvents 🎩 Thank you all for joining! PoolParty is now live at - github.com/SafeBreach-Lab… PoolParty research blogpost is now live at - safebreach.com/blog/process-i… #BHEU
Learn how I proved I can undetectably run a crypto miner for free using Azure Automation service: safebreach.com/blog/cryptocur… Github: github.com/safebreach-lab… Microsoft said it's "By design" meaning it is still exploitable. ⚠️Azure's terms of use do not permit crypto mining

Jayden Rubin @rubi73641
34 Followers 433 Following Cybersecurity Engineer | Analyst | Problem-solver. Design secure networks, respond to breaches, train teams. Obsessed with beating emerging threatsa
0x2e3635 @XLPMSFT65
126 Followers 4K Following Dad | Husband | Gen X | Msft Windows AD Support | Azure Administrator | Programmer | Cybersecurity | 🇪🇸
arip petits @AripPetits
6 Followers 1K Following
o-sec @osec403
9 Followers 121 Following
Madhukar Waghmare @MadhukarWa29819
2 Followers 139 Following
GCU Tense Correction @tensecorrection
1K Followers 495 Following 🗡️🇨🇦🔪 I am a student of the language of the people of the land of the sun, the moon, and the stars.
adamm @adamsimuntis
448 Followers 579 Following Occasionally CTFs with @justCatTheFish & @AIgenerated1
nuyo4h @nuyo4h
0 Followers 3K Following
Andrew Fox @AndrewF75815113
8 Followers 275 Following
Karma 🌐 @Im_Karmaa
108 Followers 517 Following
yperry @YishayPerry
5 Followers 39 Following
Adan @AdanRosler
16 Followers 274 Following
404 @403BAC
7 Followers 352 Following
infosecStudent @infosecstudent
176 Followers 1K Following Lifelong security learning, helping others make the world a more secure place.
Zolpidem Zoidberg @ZlpdmZdbrg
144 Followers 1K Following
Dhanush @Dhanush40257016
2 Followers 54 Following
imjxy @imjxy6
2 Followers 98 Following
hasherezade @hasherezade
89K Followers 910 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)
Pablo Lecavalier-Ruiz... @RuizLecavalier
147 Followers 43 Following Entrepreneur| MLOps |Compositeur québécois
Hamza Ayub @ayub614404
6 Followers 226 Following
Perez @AdriCSsss
3 Followers 276 Following
zoharbuber @zoharbuber
36 Followers 2K Following
^.Übermensch @_foobarr
30 Followers 2K Following
Venkatesh Konar @VenkateshKonar9
43 Followers 492 Following
Meruem @Meruem49839142
177 Followers 8K Following
Haluk YAMANER (Хал... @halukyamaner
145 Followers 2K Following 🇹🇷 Founder of Future Software UAE 🇦🇪 ☆ https://t.co/sYHfEXQwsX ☆ https://t.co/fYB77sI7gm
Smadj @elismadja
64 Followers 187 Following
🦉🦉🦉 Nina Ngo... @pink_girl_0x0
342 Followers 4K Following Prompt engineering | Cybersecurity Enthusiatic Rug pull survivor turned scamcoin detective. https://t.co/pPGBZtgGzv https://t.co/auXQPTFfnN
Alexandr Sh @shuraGlyph
78 Followers 864 Following programming, reversing. c, asm, python. x86, arm, pic. BSUIR ... NeroElectronics ... CheckPoint
S @sahsaifi
38 Followers 2K Following
Lebowski @cr4ckerwhite
10 Followers 151 Following #cybersecurity #threathunting #phishfisher @infosec catch #phish, eat #malware, chup #scammers
土星 天王 @inner_net
5 Followers 207 Following
ɘɿuɔɐɿɈ @tiersigma
665 Followers 7K Following defenders think in lists.attackers think in graphs. as long as this is true, attackers win. ---sanity through retrowave™--- ---wannabe schwachstellenjaeger---
VoidTea @its_void_tea
27 Followers 730 Following
Joshua J. Drake @jduck
27K Followers 2K Following Securing the future through modern technology. Founder and Software Security Specialist at @magnetitesec
bluerust @bluerust
202 Followers 1K Following
Quang Nguyen @sovietw0rm
804 Followers 6K Following
Gili Raanan // Cybers... @giliraanan
5K Followers 328 Following Cyberstarter. ex-partner @sequoia. Investor @wiz_io @cyera_io @island_io @fireblockshq @armissecurity
Trend Zero Day Initia... @thezdi
83K Followers 16 Following Trend Zero Day Initiative™ (ZDI) is a program designed to reward security researchers for responsibly disclosing vulnerabilities.
Binary Gecko @Binary_Gecko
1K Followers 1 Following Binary Gecko GmbH. Custom Security Research Solutions. Organisers of @offensive_con.
b33f | 🇺🇦✊ @FuzzySec
33K Followers 1K Following 意志 / Antiquarian @ IBM X-Force / Team 501 / Ex-TORE ⚔️🦅 / I rewrite pointers and read memory / AI Psychoanalyst / Teaching @CalypsoLabs
Yuki Chen @guhe120
10K Followers 281 Following 古河, Indepent security researcher, Bug bounty, ACG Otaku, Pwn2Own 15/16/17, PwnFest16,TianfuCup 18/19/20, 5 times MSRC MVR yearly Top 1. Got two pwnie awards.
Wisdom @Wisdom_HQ
983K Followers 9 Following Philosophy, Psychology, Motivation. Learn From The Wisest & Smartest Men Who Ever Lived On Earth
Mitja Kolsek @mkolsek
4K Followers 704 Following CEO of ACROS Security; Co-founder of 0patch (https://t.co/XQ9EYMnQYX) Bluesky: https://t.co/HhsFBafHK0 Mastodon: @[email protected]
ptr-yudai @ptrYudai
6K Followers 349 Following 🍣🍣🍣 https://t.co/5OmzwCTPea 🍣🥺🍣 @zer0pts の猫 🐯 🍣🍣🍣 https://t.co/5OmzwCTPea
עמית סגל @amit_segal
859K Followers 41 Following Follow in ENGLISH - @amitsegal פרשן פוליטי | חדשות 12 וישראל היום | אבא של עברי, ענר ואליענה | ירושלים הבירה 🇮🇱
Tips For Men - Fashio... @tipsformenx
635K Followers 32 Following Lifestyle | Inspiration | Outfit Ideas | Grooming
UpSkillYourLife @UpSkillYourLife
1.0M Followers 83 Following Create yourself and stop living on autopilot.
James Forshaw @tiraniddo
49K Followers 339 Following Security researcher in Google Project Zero. Author of Attacking Network Protocols. Tweets are my own etc. Mastodon: @[email protected]
Reverse Engineering a... @re_and_more
15K Followers 521 Following RE and More by Alexey Kleymenov (https://t.co/s1pWjL46AW). Private classes and group workshops in malware analysis and reverse engineering. #infosec #malware
Mark Ermolov @_markel___
12K Followers 130 Following I research security of Intel platforms. I don't work for Intel
Alisa Esage Шевч�... @alisaesage
38K Followers 101 Following Independent Hacker, Sovereign Builder, Solo Business Owner • @zerodaytraining • Pronounced ‘is edge’
CVE @CVEnew
56K Followers 3 Following Official account maintained by the CVE™ Program to notify the community of new CVE IDs. Posts contain abbreviated details. Full CVE Records on https://t.co/ALn4YvUtom
albina @enjojoyy
10K Followers 4K Following lead devrel @MasumiNetwork | prev @Trezor | @EthGlobal finalist | bci/acc
RussianPanda 🐼 �... @RussianPanda9xx
16K Followers 533 Following Меня ищет МВД 🚔 | Threat Hunter @HuntressLabs | TRACLabs https://t.co/QNvr2yUuJM | Malware Addict | DFIR
Hollie Hennessy @HollieHennessy
4K Followers 737 Following Lead Analyst covering IoT and OT Cybersecurity. London. Foodie. Classicist. Views are my own.
Tal Be'ery @TalBeerySec
10K Followers 2K Following Security Research Manager. Co-Founder, CTO @ZenGo. Advisor @ZeroNetworks. x-VP Research Aorato, acq by @Microsoft. 9 times @BlackHatEvents speaker.
ohad bar-eli @ohadbareli
29 Followers 51 Following
Piotr Bazydło @chudyPB
4K Followers 310 Following Principal Vulnerability Researcher at watchTowr | Previously: Zero Day Initiative | @[email protected]
sakura @eternalsakura13
8K Followers 190 Following Lead Security Researcher @zellic_io. 2022-2024 Top 3 Chrome VRP. 2023 Top 2 Facebook Whitehat. 2025 MSRC MVRs 9th. BlackHat Asia/USA & Zer0Con speaker.
ic3qu33n @nikaroxanne
2K Followers 207 Following reverse engineer | hacker | vx artist | malware witch | my artistic process is a daemon process. @[email protected]
David Kaplan @depletionmode
3K Followers 529 Following Security Research. Opinions and private research are my own Lover of all things JSR $F7D7 💪🇮🇱 עם ישראל חי
Boaz Maoz @boazmaoz
1K Followers 1K Following Managing Director, Google Cloud Israel. Tweets are my own
1377 High-yield Nukes @buptsb
2K Followers 1K Following
DirectoryRanger @DirectoryRanger
35K Followers 96 Following This account assembles and disseminates information related to Active Directory and Windows security.
x86matthew @x86matthew
21K Followers 189 Following C / asm / system emulation / reverse engineering. @the_secret_club
j00ru//vx @j00ru
37K Followers 826 Following (Mostly) Windows hacker & vulnerability researcher. Google Project Zero. @DragonSectorCTF