ᅟ @_harleo
tl;dr hacker / infosec analyst & researcher. mostly lurking. harleo.me 0.0.0.0/0 Joined October 2017-
Tweets821
-
Followers333
-
Following628
-
Likes5K
I've been researching the Microsoft cloud for almost 7 years now. A few months ago that research resulted in the most impactful vulnerability I will probably ever find: a token validation flaw allowing me to get Global Admin in any Entra ID tenant. Blog: dirkjanm.io/obtaining-glob…
When Backups Open Backdoors: Accessing Sensitive Cloud Data via "Synology Active Backup for Microsoft 365 - @mod0 / @_harleo modzero.com/en/blog/when-b…
you're in her dms i'm in her military grade encrypted messaging app group chat
Wake up and immediately look at small screen before clocking 8 hours behind medium screen. Take a few breaks to check in on small screen. Go home and spend a few hours staring at big screen to wind down before getting into bed and looking at small screen. Living the dream.
Saw a senior pentester once report a high sev vuln that the aws iam policy was outdated, from 2012. Client got so pissed, asked to redo the entire engagement with different testers.
How not to do multi-tenant apps. Nice find by @_harleo from modzero, compromising Synology Active Backup client secrets (from the Synology tenant) during installation 🤦 modzero.com/en/blog/when-b…
Taking a screenshot of the desktop, deleting all icons, then replacing the background image with the screenshot
Taking a screenshot of the desktop, deleting all icons, then replacing the background image with the screenshot
when my parents turned off the internet at night to stop me from playing WoW, i installed kali linux and used aircrack-ng to get my neighbors wifi password. that's where it all went downhill
Recruiters: "Do you have AWS experience?" Me: "/?file=http://169.254.169.254/latest/meta-data/iam/security-credentials" 👀
Shout out to our Blue Team who contacted me when they saw Microsoft Teams execute on my machine "He would never willingly run that"
a pentester, security analyst, developer and sysadmin walk into a zoom call. and somehow every one of them has audio issues
PARENTS: please check your kid's candy this halloween - i just found an unexpected AWS bill in a snickers bar
so there are two kinds of artists in this world
You are just one illegal business away from generational wealth.

THS @__ths__
3K Followers 413 Following Optimismus-Skeptiker. Hacker. Co-Founder & CEO at @mod0 and @mod1sec find me on https://t.co/3njSloxQ1K and https://t.co/MI4ONA40dS
Fat @fattselimi
16K Followers 9K Following Chasing Positive vibes only & Ethical Hacking for fun and profit🧑🍳
Tiffany @a_tiffany47
278 Followers 3K Following
Sambam4mba @he31707900
9 Followers 1K Following Bor3d hacker of iot devices, security researcher? Security Breacher!
Dark@Joker:~$ @ExploitNest
95 Followers 2K Following CRTA | CAP | OSCP (Aspirant) - Pentration Tester & Bug Hunter - Red Teamer 🤡
helloworld/ @hellodebug8
255 Followers 6K Following
Troy @Troy_shi
345 Followers 2K Following Cyber Security Threat Hunter|Security Analyst |Security Product Manager|Focus on REDTEAM and BLUETEAM
`Ivan @Ivanlef0u
11K Followers 4K Following
_____ @H_ng_an
186 Followers 2K Following
notonlybytes @notonlybytes
0 Followers 319 Following
JasonR @jraaschou
68 Followers 332 Following
Clément @Clementeubreux
65 Followers 330 Following
Chris Beckett @cbecks_2
803 Followers 2K Following Infosec and the Green Bay Packers. Interested in all things DFIR, Detection Engineering, Purple, and CTI. Opinions are mine, certainly not those of my employer.
Nighty @jr_dipi
2K Followers 1K Following
Hugow @hugow_vincent
914 Followers 979 Following Red Team and research @synacktiv @rustyphasm.bsky.social
Pwnr @pwnx0
460 Followers 2K Following Pentester | BBH | CPTS, eWPTx, eCPPT, eMAPT, CAPen, CAPenX, C-APIPen, CMPen-A
nuyo4h @nuyo4h
0 Followers 3K Following
Swissky @pentest_swissky
20K Followers 1K Following RedTeam | Pentest Author of PayloadsAllTheThings & SSRFmap https://t.co/w1ZLRqoafG
Andy T @_andy_tea
447 Followers 5K Following Not the ideal twitter handle (I prefer coffee) but glad to find one to use. Drat my generically common first and last names.
Fabian Bader @fabian_bader
9K Followers 820 Following #Security #Azure #AAD #MDE #M365 #AD #PKI Microsoft MVP Tweets and opinions are my own @[email protected]
knwldgd1gger @knwldgd1gger
8 Followers 457 Following Pentester @ CVBB, part-time BBH, passionate about WAF bypassing
kbx @kbx_sec
29 Followers 587 Following
Farhan @mdfarhan06
107 Followers 816 Following
cyt0k @cyt0k
17 Followers 1K Following
RL @avdmax
0 Followers 3K Following
Sebastian Vasquez S. @sebasvasquezs
409 Followers 3K Following Father, Fulbright/NYU, CISO, InfoSec Community Builder, Pentester, GFSInfosec CEO, CISSP, CARTP
Devansh (⚡, 🥷) @0xAsm0d3us
16K Followers 3K Following Pwn, Security Research & Math ⚡ Views are personal
Ohm-I (Oh My) @mcohmi
7K Followers 2K Following Nerdcore rapper (@npccollective) | Hacker (https://t.co/a9EOmRd8cC) | Senior Sec Consultant @bishopfox | PhD candidate @DakotaState | 🏳️🌈
Amol 🇮🇳 @codewithamol
1K Followers 5K Following My name is Amol from India.I am dad,husband and Hacker C|EH | eWPTX | CC | CSSLP | CISSP | CDP DevSecOps |Security Consultant |B.E Computer | MBA IT
Chirag Savla @chiragsavla94
3K Followers 5K Following With Knowledge We Know the Words.. But... With experience We Know their Meaning ! #HOF #Microsoft #BigBasket
LuckY @L_uckyY
198 Followers 2K Following Generally interested in computers (DFIR/pentesting/networking) and likes to play wargames/CTF. Deleting tweets regularly. Likes are my way of bookmarking.
maeru @m8r1us
257 Followers 639 Following Offensive & Defensive Security Consultant | @scipag #RedTeam | @m8r1us on most other platforms
michael.slook @mikimaos4
18 Followers 1K Following
soff @evisneffos
129 Followers 866 Following
AngelaChapman @05oC6o69w8B59j7
77 Followers 1K Following
おのぎみつえ @onogimitsu93780
77 Followers 1K Following
Eileen @robertson_eilee
1K Followers 3K Following
Karen @h_karen43
182 Followers 3K Following
Shoslare @ShoslareAqhP
116 Followers 7K Following
Fealoason @Fealoason5bfE5
5 Followers 177 Following
Georgije Vukov @vuk0v
165 Followers 2K Following
Su @sudantzler95
265 Followers 3K Following
Shoslor @ShosloriQBBVk
45 Followers 1K Following
Anshuman Singh(VRITRA... @thakur_ans70796
34 Followers 185 Following
Chere Heıdrıch @ChereC97520
3 Followers 163 Following A bolsa brasileira subiu 300% em três dias Tutores profissionais, cadastre-se e aprenda de graça. WS: https://t.co/9h2CHcVIew
Nathaniel @nnwakelam
41K Followers 919 Following
Patrik Fehrenbach @ITSecurityguard
31K Followers 286 Following rɪsˈpɒnsəbl dɪsˈkləʊʒə https://t.co/UKFhw5EBwf https://t.co/uCOkOOoNnP
Yassine Aboukir 🐐 @Yassineaboukir
31K Followers 373 Following HackerOne Top 50, Elite, Pentest Lead, Ambassador, MVH Title and (former) Hacker Advisory Board • Digital Nomad • (Un)pro Athlete
Gareth Heyes \u2028 @garethheyes
37K Followers 1K Following JavaScript for hackers: Learn to think like a hacker. https://t.co/e0aNEbEDk5
linuzifer @Linuzifer
52K Followers 3K Following @[email protected] https://t.co/EFBsT1HXsW https://t.co/Dl6yL2aVsW https://t.co/C0bofaQQC2
Lilith Wittmann @LilithWittmann
45K Followers 530 Following Krawallinfluencerin, “der Schwarze Block der Verwaltungsdigitalisierung”; politisch hier. 👩💻 @zerforschung & @bund_dev ✉️ [email protected].
vx-underground @vxunderground
377K Followers 294 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Ayoub FATHI 阿尤布 @_ayoubfathi_
8K Followers 385 Following Group VP of Information Security, CISO | Engineer & Hacker by heart | Entrepreneur | I enjoy building and breaking stuff 🇲🇦/🇦🇪
pyn3rd @pyn3rd
14K Followers 608 Following Security Researcher&Red Team&Cloud Security. BlackHat&HITB&CanSecWest Speaker.
so long and thanks fo... @ant0inet
3K Followers 0 Following
CCC Updates @chaosupdates
208K Followers 195 Following Der Chaos Computer Club ist eine galaktische Gemeinschaft von Lebewesen für Informationsfreiheit und Technikfolgenabschätzung. @[email protected]
cts🌸 @gf_256
61K Followers 838 Following Co-founder and hacker @zellic_io & @pb_ctf | https://t.co/nlNai6iiMP | 24 Intern @egirl_capital slow to reply to DMs
THS @__ths__
3K Followers 413 Following Optimismus-Skeptiker. Hacker. Co-Founder & CEO at @mod0 and @mod1sec find me on https://t.co/3njSloxQ1K and https://t.co/MI4ONA40dS
ものЛЕさん .✧... @monolesan
2K Followers 390 Following artist // creative technologist // AI witch making magic with AI :ȯ: ✧ . -- .✧*☽ creating NFTs #OpenDesign at @turtles_pink_
Damian Strobel @damian_89_
7K Followers 744 Following Penetration tester/Ethical Hacker; Sold my eASM to a NASDAQ company; Founder of an IT security company; Building a Legal Tech AI startup in my spare time :P
Sam 🐈 @SweatersJPG
8K Followers 710 Following Game Designer | he | currently solo developing Easy Delivery Co. wishlist on steam!
imput @imputnet
6K Followers 4 Following internet doesn't have to be scary. two guys behind @heliuminternet, @justusecobalt, and https://t.co/VZCx27vJk0
Alex @AlexBurlis
2K Followers 368 Following Code faster with your voice - https://t.co/q6w2JVulLX (prev co-founder https://t.co/3kQZKUkVc0 / @_buildspace sf1 / investor in https://t.co/SWFhEnAlRY and a few others)
Sebastien Pahl @sebp
4K Followers 2K Following Senior Principal Systems Engineer @cloudfare ETI prev. @opstrace (co-founder/CEO, acq. by @gitlab), @redhat, @mesosphere, @cloudflare. @docker (co-founder)
Daniel Kuntz @dankuntz
17K Followers 2K Following The compiler is unable to type-check this expression in reasonable time
stephen bliss @iamstephenbliss
9K Followers 368 Following Artist. Ex-Senior Artist at Rockstar Games 2001-2016. Now: Creator of @LoobyonSol and Senator representing Fear City @fearcitynft
eversinc33 🤍🔪�... @eversinc33
6K Followers 1K Following computers be computin | https://t.co/Eiur8iOJQ4
. @7N7
2K Followers 117 Following
Francisco Neves @fneves97
395 Followers 516 Following Software engineer, interested in bug bounty. Building https://t.co/dyLc78uDiB
MOR DAVID @m0rd4vid
244 Followers 440 Following Cyber Security Expert & Red Teamer with 5+ Years of Experience.
Aditi Singh @aditi_singghh
13K Followers 757 Following Bug Bounty Hunter | Cyber security Researcher
J⩜⃝mie Williams @jamieantisocial
10K Followers 7K Following threats && stuff || #UNC1799 forever 🤘|| @DistrictHeather ♥️ + 🍷 **𝚅𝚒𝚎𝚠𝚜 𝚎𝚡𝚙𝚛𝚎𝚜𝚜𝚎𝚍 𝚊𝚛𝚎 𝚖𝚈 օ𝚠𝚗**
Ido Veltzman @Idov31
4K Followers 33 Following I'm a security researcher who uses this platform to share my projects and research. Opinions are my own. https://t.co/UiWgKq40sV
Prime Intellect @PrimeIntellect
48K Followers 28 Following find compute. train models. contribute to open superintelligence. https://t.co/ZRZOsRRbwr
Faav @efaav
777 Followers 177 Following Developer @ https://t.co/qiMEJOTD1H (& NameMC Extras), Web developer, Bug hunter.
tuckner @tuckner
2K Followers 821 Following Finding bad software extensions at https://t.co/dhLUjMRP1I
Dominic Chell 👻 @domchell
18K Followers 541 Following Just your friendly neighbourhood red teamer @MDSecLabs | Creator of /r/redteamsec | https://t.co/3k3EBAZqGd | https://t.co/KwO2OwDOkl
Jack Fields @OrdinaryInds
22K Followers 92 Following Former Apple engineer running Ordinary Industries // Head writer at @kernelext // Polymath // I use Vim btw
Merill Fernando @merill
19K Followers 4K Following Product Manager @microsoft | Tweets my own Built → https://t.co/ujxKqxXjf2 • https://t.co/QbUp63ffXf • Graph XRay • https://t.co/tSWrIw8Ajh 📰 Newsletter→ https://t.co/tPzAEl0Zuq 🎙️ Podcast→ https://t.co/TBlNKTzn8t
Ohm-I (Oh My) @mcohmi
7K Followers 2K Following Nerdcore rapper (@npccollective) | Hacker (https://t.co/a9EOmRd8cC) | Senior Sec Consultant @bishopfox | PhD candidate @DakotaState | 🏳️🌈
Chirag Savla @chiragsavla94
3K Followers 5K Following With Knowledge We Know the Words.. But... With experience We Know their Meaning ! #HOF #Microsoft #BigBasket
usrnk1 @usrnk1
8K Followers 207 Following ✦ 🐦 tweets about design bits and WIP work ✦ 📷 curating @saasshots — ✧ 💯 first designer @oneleet ex. @reflagcom @stellate @recruitee & few more
LuckY @L_uckyY
198 Followers 2K Following Generally interested in computers (DFIR/pentesting/networking) and likes to play wargames/CTF. Deleting tweets regularly. Likes are my way of bookmarking.
maeru @m8r1us
257 Followers 639 Following Offensive & Defensive Security Consultant | @scipag #RedTeam | @m8r1us on most other platforms
Dirk-jan @_dirkjan
29K Followers 206 Following Hacker at @OutsiderSec. Researches AD and Azure (AD) security. Likes to play around with Python and write tools that make work easier.
Outsider Security @OutsiderSec
2K Followers 1 Following Security company focusing on Microsoft Entra and Active Directory security. Need an expert view or pentest on your cloud/AD? [email protected]
HotCakeX ✡︎ סג�... @CyberCakeX
2K Followers 278 Following XX | Microsoft MVP | AppControl Manager Author & Harden Windows Security maintainer Check GitHub for info👇 https://t.co/0CY05HyAtH
Olivia Gallucci ✨ @OliviaGalluccii
5K Followers 1K Following Security @ Datadog | MacOS Internals | #FOSS Advocate | Opinions ≠ Employer | @intelligentCTF @oghealthfitness | RIT | Prev. Apple, SECUINFRA, US Govt
4n6lady @4n6lady
62K Followers 669 Following #DFIR & #BlueTeam | IR & Threat Detection | #OSINT enthusiast | waiting for HL3 | AWS CIRT - my views are my own
Devansh (⚡, 🥷) @0xAsm0d3us
16K Followers 3K Following Pwn, Security Research & Math ⚡ Views are personal
Synacktiv @Synacktiv
20K Followers 271 Following Offensive security company. Dojo of many ninjas. Red teaming, reverse engineering, vuln research, dev of security tools and incident response.
Ethan Evans @EthanEvansVP
33K Followers 21 Following Former Amazon VP (70+ patents; 1,000+ hires; led global teams of 800+). Now Training Leaders to become True Executives.
Adnan Khan @adnanthekhan
3K Followers 208 Following Security Engineer | Part Time Security Researcher | Build Pipeline Menace | All thoughts and opinions are my own | 🍉
s1r1us @S1r1u5_
11K Followers 2K Following aham nityaṃ śiṣyaḥ, jagat mama guruḥ. {~hacker~} {founder @ElectrovoltSec, @HacktronAI}
Rob T. Lee @robtlee
26K Followers 1K Following Chief AI Officer, Chief of Research, @SANSInstitute | Cybersecurity Expert & Threat Hunter | Godfather of DFIR | Technical Advisor to US Govt
kat21 👻 @datkat22
1K Followers 114 Following he/him | development & design | boo & mii fan | call me kat | pfp art by @objecty_twitt