fromheroto... @_mzer1221
Joined March 2016-
Tweets28
-
Followers40
-
Following198
-
Likes142
💎🔨 Exploiting Hardened .NET Deserialization: New Exploitation Ideas and Abuse of Insecure Serialization, by Piotr Bazydło (@chudyPB)
Riding the inforail to exploit #Ivanti Avalanche: @chudyPB provides details on several bugs he found in the popular MDM tool. He goes in-depth on root cause, including a video of one of the bugs in action. Read all about it at zerodayinitiative.com/blog/2022/7/19…
Our research on @IBM Password Sync Plugin for Windows AD was recognized in their Security Bulletin ibm.com/support/pages/… PoCs for our findings: LDAP Injection/account takeover blog.stmcyber.com/vulns/cve-2021… Memory corruption - stack/heap blog.stmcyber.com/vulns/cve-2021… blog.stmcyber.com/vulns/cve-2021…
Intel finally fixed the CPU bug our XAAS challenge from #confidence2020 was based on 😀. You can find our writeup and exploit at github.com/p4-team/ctf/tr… and Intel's advisory at intel.com/content/www/us…. We originally got the idea from @trav_downs' research: travisdowns.github.io/blog/2020/05/1…
Recently I have created new xss challange (xss_2). For brave enough here's the link: elusivefox.net/challenges/xss…
Returning root to userland - quick journey for the weekend - FYI - code610.blogspot.com/2021/04/return…
For all those who want to start their #cybersecurity career path and become a professional #pentester.
Escaping VirtualBox 6.1 (Part 1) : secret.club/2021/01/14/vbo… credits @jonasLyk VirtualBox VM Escape 0day : Most Difficult Way To Launch a Calculator : youtu.be/mjKxafMbpS0
I've released NAT Slipstreaming, a spooky new technique that allows an attacker to remotely access any TCP/UDP service bound to a victim machine, bypassing the victim’s NAT/firewall, just by the victim visiting a website. samy.pl/slipstream/ Happy Halloween!
CVE-2020-16938 - aka bits please! So...recent update changed the permissions on partitions and volume device objects, granting everybody read access. This means that by opening the device directly you can read the raw data without any privs. 7zip parses NTFS so super for POC
Three more #CVEs from @chudyPB to the collection! CVE-2020-13169 Multiple Stored XSS in #SolarWinds Orion Platform, CVE-2020-6370 XSS vuln. in #SAP #NetWeaver, CVE-2020-6371 #Information disclosure in SAP #NetWeaver AS ABAP via the #POWL Test Feeder endpoint. Congratulation!
Found a new .NET deserialization gadget in System[dot]Drawing[dot]Design[dot]dll. Maybe I'll try a pull to ysoserial[dot]NET in the next few days...
I found an interesting #LOLBIN using Windows Update Client (wuauclt.exe) as a loader - blog, pull request to LOLBAS and in the wild sample here dtm.uk/wuauclt/ - I am hoping to finalise some of my work on the methodology I used soon @MDSecLabs so keep your eyes posted.

Riskoo @Riskoo1
391 Followers 2K Following
Sp3x @Sp3x11
7 Followers 188 Following
test domain @User2Micro
719 Followers 4K Following
Marta Chiara S. @MartaChiaraS
12 Followers 236 Following Dziennikarz poVIAUniversityCollege i UWr,którym obecnie nie jestem.Moim motorem jest muzyka,taniec,gotowanie, film i kryminał.Sportowiec słaby,kibic najlepszy:)
Altered Security @AlteredSecurity
7K Followers 2K Following Global leader in hands-on learning for enterprise and cloud security education. Join 40000+ infosec professionals from 130+ countries
Jamie G @jamie_sixworks
121 Followers 195 Following CTO of @SiXworks, previously Head of Cyber. Lover of all technology and security things Nat Sec & Defence. Disrupting the paradigm of defence sector delivery.
CyberSecuritySalesMan @CSSalesMan
573 Followers 3K Following Cybersecurity sales-man. I sell the best cyber cyber stuff. Words of wisdom. The most in-depth analysis of the cyber-world. I failed my own Turing test.
_____ @H_ng_an
187 Followers 2K Following
Exodus (josh) @tehEx0dus
996 Followers 3K Following Inner monologue of a misguided sense of humor: cryptography. code, break stuff, policy issues, & numerous misspelling. Founder of @CircleCityCon.
Jirka Vejrazka @JirkaV
471 Followers 988 Following Experienced IT Security guy. Mostly harmless. Days without piping grep into grep: 0
Robert Tomkowski @trodbert
175 Followers 93 Following Software and security engineer. Currently working on his world domination plan as CEO of @hacking_dept and Head of R&D at @stm_cyber. Member of @p4_team.
Jakub Brzozowski @redfr0g_
123 Followers 312 Following XSS and coffee enjoyer @ Nord Security https://t.co/jWOWe8bZ6q
arthusu @ArthusuxD
850 Followers 3K Following Hacking web Pentester PHP coder Linkedin: https://t.co/awweoN7hK6
Xis_one @xis_one
22 Followers 71 Following
Vulhalo @vulhalo
142 Followers 918 Following
Wojciech Reguła @_r3ggi
6K Followers 866 Following iOS/macOS app security researcher & blogger. 🍎 Black Hat / DEF CON / TyphoonCon speaker. Head of mobile appsec @SecuRingPL
polrider @polrider1
9 Followers 213 Following
Hans-Martin Münch @h0ng10
1K Followers 886 Following CEO of MOGWAI LABS GmbH. I play CTF with powerpuffpwn.
Piotr Bazydło @chudyPB
4K Followers 312 Following Principal Vulnerability Researcher at watchTowr | Previously: Zero Day Initiative | @[email protected]
Jakub Sajniak @kubolos231
201 Followers 311 Following Pentesting at @stm_cyber. Playing CTFs with @p4_team | @S™.
Czarna Owca @004ffca
85 Followers 714 Following Scientia potentia est. Trying to do good things in cybersec. #IntelligenceOperations
Natalia Wróbel @NataliaWrbel20
8 Followers 7 Following
./AbOdE @AbOdE_HaK
122 Followers 2K Following
Matisec @M4tisec
52 Followers 191 Following
Przemysław Kowalski @przemyslaw_k1
14 Followers 315 Following
Elusive_Fox @E1u5iv3F0x
62 Followers 132 Following https://t.co/2b9gV83x40 more XSS challenges: https://t.co/rRS5BE0C9y
\x00 CRASHES @michalbeza
103 Followers 1K Following ${191*7} && fuzz the world! ه҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿҈̿
DreamITeam @DreamITeam
84 Followers 183 Following Obsługa informatyczna, Outsourcing IT, Opieka Informatyczna, Audyt IT, Wdrożenia i Migracje do Chmury, Microsoft 365 Experts
Michał Ruta @LordRuter
181 Followers 581 Following
Stupid Astronomer @SolarImager
900 Followers 96 Following I do the stupid things so you don't have to, like point a telescope at the sun! Do not do this at home!
SpaceX @SpaceX
40.1M Followers 120 Following SpaceX designs, manufactures and launches the world’s most advanced rockets and spacecraft
Kancelaria Prezydenta... @prezydentpl
70K Followers 124 Following Oficjalne konto Kancelarii Prezydenta RP Karola Nawrockiego
Danny Limanseta @DannyLimanseta
22K Followers 1K Following I make games with AI. Product Designer, Co-founder at https://t.co/C6xWXxJrsL & https://t.co/5jKwzHKucU. Founding Designer at RedMart, acquired by Alibaba.
OS Dev @OSdev_
2K Followers 385 Following Senior Engineer I C/C++ | Kernel Development | Low level & System Programming
Piotr Brzyski @p_brzyski
7K Followers 221 Following Analityk bezpieczeństwa | Specjalista zarządzania kryzysowego | Związany z @warnewspl1 | Możesz wesprzeć moją pracę na https://t.co/xL63kmfq99
Krzysztof Bosak 🇵�... @krzysztofbosak
508K Followers 5K Following Poseł i wicemarszałek Sejmu. Lider @Konfederacja_, prezes @RuchNarodowy. Mąż @KarinaBosak, ojciec Artura, Daniela i Emilii. Chrześcijanin
Paweł Zariczny @pawel_zariczny
11K Followers 1K Following #PoCoNamMarynarkaWojenna 🚢, #MorzeŻywiIbogaci ⚓ ⛴️, Team Przemysł Okrętowy 🛳️, #społecznik, ⚽, Prywatne opinie, Staram się #Abecadłem 😉 RT ≠ poparcie
Jarosław Kaczyński @OficjalnyJK
158K Followers 103 Following Prezes Prawa i Sprawiedliwości. Jedyne oficjalne konto.
Lex Fridman @lexfridman
4.4M Followers 594 Following Host of Lex Fridman Podcast. Interested in robots and humans.
Tomasz Rożek @RozekTom
122K Followers 3K Following Mąż, tata, autor książek. Założyciel i prezes Fundacji Nauka To Lubię. Prowadzi vbloga NaukaToLubie i NaukaToLubie Junior @naukatolubie
Marek Wałkuski @Marekwalkuski
39K Followers 1K Following Korespondent Polskiego Radia w Białym Domu. Autor książek:„Zakamarki Białego Domu”, „To jest napad”, „Ameryka po Kawałku” i „Wałkowanie Ameryki”.
Darwin to Jesus @darwintojesus
69K Followers 910 Following Lifelong atheist who found Jesus Christ. Husband and father. Exposing the lies and fallacies of Atheism, proclaiming the truth of Christianity.
Albert Świdziński @A_Swidzinski
35K Followers 364 Following amicus plato sed magis amica veritas Head of analysis at https://t.co/4uNfs0BV46
Steve · Millionaire ... @SteveOnSpeed
332K Followers 84 Following Money, Confidence and Strength || Mission: Help 10M people achieve financial freedom || Learn how to steal the habits of millionaires in my free newsletter
Z buta dookoła Świa... @Dziki59667847
52K Followers 366 Following Łukasz Podstada ⛺ Piesza 👣 samotna wyprawa dookoła Świata 🌍 Start 15.07.2020 z Cieszyn 🇵🇱 Teraz Afryka 🇨🇲 Kamerun
Donald J. Trump @realDonaldTrump
109.5M Followers 53 Following 45th & 47th President of the United States of America🇺🇸
Evan Amato @SirEvanAmato
101K Followers 554 Following Author @the_culturist_ | Coffee dealer https://t.co/WXTfvmwbtW | Sharing the secrets of Old World elegance
Sztab Generalny WP @SztabGenWP
78K Followers 207 Following Oficjalny profil Sztabu Generalnego #WojskoPolskie | The official account for the General Staff of the Polish Armed Forces. #SGWP
Jon SayWen @SayWen_eth
2K Followers 2K Following Collecting and Creating Pixels. Coding games and tools with A.I.
𝕏 Bug Bounty Write... @bountywriteups
36K Followers 4K Following 🔍 Bug Bounty Hunter | Content Creator | Sharing cybersecurity write-ups & resources | AI | | by @piyush_supiy #bugbounty #bugbountytips
retarded guru 🍊 @0xKubi
22K Followers 2 Following https://t.co/d9MLcKyb9G | https://t.co/ELOcaxorET Czytając moje treści miej na uwadze, że ich autor może okazać się większym debilem od Ciebie
Mateusz Lachowski @LachowskiMateus
155K Followers 802 Following Dziennikarz i reżyser. Korespondent Telewizji Polskiej w Ukrainie. Subskrybuj: https://t.co/Za1Mth79MB
Kenneth Andersen @inScopeStudios
624 Followers 73 Following I'm a programmer and a teacher. I love teaching how to program n create games. 👑 https://t.co/5Ptkfw5oGz 🎮 https://t.co/Tx3rodrROZ 📺 https://t.co/f5MLEkzTSt
Hunter @HunterMapping
23K Followers 184 Following Internet search engine for security researchers Contact Us: [email protected]
SinSinology @SinSinology
12K Followers 685 Following Pwn2Own 20{22,23,24,24.5,25,25.5}, i look for 0-Days but i find N-Days & i chase oranges 🍊
FOFA @fofabot
12K Followers 191 Following Cybersecurity Search Engine Contact Email: [email protected] Telegram: https://t.co/E5EcKr5Kyl
naiive @naiivememe
299K Followers 186 Following
eversinc33 🤍🔪�... @eversinc33
6K Followers 1K Following computers be computin | https://t.co/Eiur8iOJQ4
MalwareHunterTeam @malwrhunterteam
245K Followers 38 Following Official MHT Twitter account. Check out ID Ransomware (created by @demonslay335). More photos & gifs, less malware.
Andrzej Duda @AndrzejDuda
2.0M Followers 737 Following
Donald Tusk @donaldtusk
2.1M Followers 669 Following Premier Rzeczypospolitej Polskiej 🇵🇱 Prime Minister of Poland 🇵🇱
James Forshaw @tiraniddo
49K Followers 339 Following Security researcher in Google Project Zero. Author of Attacking Network Protocols. Tweets are my own etc. Mastodon: @[email protected]
WarNewsPL @WarNewsPL1
441K Followers 2K Following Konflikty, bezpieczeństwo i geopolityka. 📡 Kanał YouTube 👇 https://t.co/218Pc1V39V Kontakt: [email protected] Portal: https://t.co/ePLp81KtdK
RELOCATIFY @relocatify1
13K Followers 3K Following Kambodża-bezpieczeństwo dla Twoich aktywów.Pomagamy otworzyć konto bankowe,kupić nieruchomość, założyć firmę lub zainwestować. Telegram: https://t.co/bbmKwccwMN
Alex Albert @alexalbert__
99K Followers 647 Following Claude Relations @AnthropicAI. Opinions are my own!
InfoPiguła @InfoPigula
10K Followers 29 Following Bezstronnie. Rzetelnie Odławiamy z całego medialnego bullshitu 20 wartościowych newsów. Co dnia. Skracamy je lepiej, niż ChatGPT. Sprawdź - nasze apki 📲
RaportWojenny @RaportWojenny
46K Followers 555 Following Najnowsze wiadomości ze stref konfliktów zbrojnych oraz polityki międzynarodowej.
Anna Maria Dyner @Anna_M_Dyner
79K Followers 2K Following Head of International Security Programme at @PISM_Poland. Belarus, Russia, hard security, and hybrid threats. Private opinions only.
SatoshiSync @SatoshiSync
49K Followers 27 Following 1st Chain-Agnostic Interoperability Protocol for BTCFi and Runes Connecting all inscription liquidity markets.
🔜🇸🇬 Alex - "... @CryptoAlexand
19K Followers 2K Following 🎯 Kryptowaluty & Życie! 🎥 YT "Krypto Inwestycje" 📱 Social Media, Marketing, Business Developer WEB3 Profil trochę satyryczny, to nie porady :D
Whale Alert @whale_alert
2.8M Followers 13 Following Live reporting on large and interesting #blockchain transactions as they happen. Create your own alerts for over 100 coins on https://t.co/wQEfstUfLm