Paul Point @_plo_
Apparently if you don't wear a t-shirt people will think you are a fed. #KISS #security #malware #phishing #bugbounty #AI Somewhere Joined May 2012-
Tweets713
-
Followers137
-
Following800
-
Likes3K
What people seem to miss: The #Log4Shell vulnerability isn't just a RCE 0day. It's a vulnerability that causes hundreds and thousands of 0days in all kinds of software products. It's a 0day cluster bomb.
🛡️BlueTeam CheatSheet * #Log4Shell CVE-2021-44228* | Last updated: 2021-12-11 0040 UTC ↘️ gist.github.com/SwitHak/b66db3…
I guess it’s time for me to announce that I’ll leave @CertSG after almost 7 years of service. So, I’m looking for a senior incident handler / forensicator / malware analyst / Internet janitor to replace me.
TrickBot malspam (rob23) incoming, using weaponized XLS files 🔥 XLS: 📄 bazaar.abuse.ch/sample/f669b9a… Payload URL: 🌍 urlhaus.abuse.ch/url/922383/ TrickBot DLL: 🪲 bazaar.abuse.ch/sample/da1ae69…
when you need to confirm you're not a robot
MalwareBazaar is now featuring oletools + oledump for analyzing office documents 📄 e.g.: Emotet (docx): 👉 bazaar.abuse.ch/sample/1fd2374… AZORult (xls): 👉 bazaar.abuse.ch/sample/f0135e7… Thanks to @decalage2 and @DidierStevens for providing their awesome tools to the community! 💪
I've released NAT Slipstreaming, a spooky new technique that allows an attacker to remotely access any TCP/UDP service bound to a victim machine, bypassing the victim’s NAT/firewall, just by the victim visiting a website. samy.pl/slipstream/ Happy Halloween!
abuse.ch: Time to move forward. Your help is needed ⛑️ 👉 abuse.ch/blog/moving-fo…
Hey @github. Remember that security bug where anyone can attach commits to repos they don't control? That bug you said you wont fix? It was used to attach the "youtube-dl" source code to your own DMCA repo. Have fun @dmca. You two deserve each other. github.com/github/dmca/tr…
@RIAA here is another mirror for you. If you really like banning these I can make a script to automatically re-upload obfuscated versions of them to random repos every few mins. How much time do you have? github.com/lrvick/youtube…
We Hacked Apple for 3 Months: Here’s What We Found samcurry.net/hacking-apple/
We are pleased to announce our new free service "Have I Been Emotet?". You can check if your email/domain is involved in #Emotet malspam. haveibeenemotet.com @BleepinComputer @LawrenceAbrams @Cryptolaemus1 @campuscodi @securityaffairs @arturodicorinto @58_158_177_102
If you already knew about VelvetSweatshop though, did you know there's a different default password for Powerpoint? docs.microsoft.com/en-us/openspec…. Try saving a PPT file with the password of /01Hannes Ruescher/01 and opening it somewhere else. You'll notice you don't get prompted.
@SimonHoiberg Also, there is this
Emotet maldocs are currently triggering errors in olevba. It looks like they are exploiting a bug in olevba to avoid analysis. So I made a slight change in olevba to enable the "relaxed" mode by default. Please update to the latest dev version: github.com/decalage2/olet…
Emotet maldocs are currently triggering errors in olevba. It looks like they are exploiting a bug in olevba to avoid analysis. So I made a slight change in olevba to enable the "relaxed" mode by default. Please update to the latest dev version: github.com/decalage2/olet…
Look at this slice of awesome. The new Wireshark version in dev (3.3.0) has a packet diagram view. A fantastic teaching and learning tool! When released, I'll be making pretty extensive use of this in my classes! Great job @geraldcombs and @WiresharkNews team.
Hello @Foodora_FR (@foodora_de), you either illegally sold user data or you had a leak. @CNIL
A tricky URL spoofing bug that I reported two years ago to Mozilla and it is still working: spoof.lbherrera.me (reproducible only on Firefox).

Make money easily @AErRxrf0SY14b
4 Followers 122 Following MYXC LTD is a diversified global investment management company headquartered in the United States with a registered capital of US$100 million.
thespaceman @SpacemanAlbondo
113 Followers 1K Following
Vixepti @Vixepti
83 Followers 207 Following Firewalls are great, except when they aren’t. 🌭 Gros-boutiste![Communauté Francophone Kali linux - Tutoriels de hacking et Pentest. [White hacking only]](https://pbs.twimg.com/profile_images/1148009148090593280/Wu3gZ0Dr.png)
Kali-Linux.fr @KaliLinuxfr
2K Followers 2K Following Communauté Francophone Kali linux - Tutoriels de hacking et Pentest. [White hacking only]
zhengchaoping @zhengchaoping
71 Followers 2K Following
Chrisantus. @chrisantusodin7
300 Followers 2K Following Transcriptionist, Analyst and Truth for Justice
Assi9 @assi9
822 Followers 4K Following Happiest guy in the room. Tweeting about #geekdad #linux #infosec #3Dprinting #dogs #drones and all things #nerdy. Chaotic Neutral
Alan (over at bsky) @ANeilan
3K Followers 5K Following 34. | security researcher. | team hashmob | keybase: w00dsman | https://t.co/NRNCI1zaJo | CashApp; $ANeilan (find me on the other place)
Axel Dreyfus @axeldreyfus
736 Followers 2K Following Cofounder of 2600, the leading cybersecurity school in France.
The Defence Works @TheDefenceWorks
952 Followers 4K Following Make your employees your strongest defence. We provide award-winning, GCHQ-certified security awareness training - trusted by businesses around the world.
Fabien Thomas @rtsock
18 Followers 170 Following
SCANDABLE @scandable
374 Followers 4K Following Comprehensive Web Application Vulnerability Scanner.
Pyvonix @Pyv0nix
185 Followers 278 Following Security Research • If all persons who can do something are in the bad side, the game could not be balanced.
CoinWhisperBot @CoinWhisperBot
330 Followers 639 Following Be the first one to know when new coin is listed on #cryptocurrency exchange
WifiRumHam @WifiRumHam
2K Followers 1K Following Why not RumHam? https://t.co/g137QVijhq Azure/Sentinel PHISHING,OSINT. FORENSICS Dont mistake my generosity for generosity
FUSHIA @FUSH1A
29 Followers 151 Following Freelance - CyberSec Officer / Pentester / DevSecOps /BugHunter #OSCP #OSWE #Zenk-Security @Rootme_org
Pyrcz @PyrczWorld
671 Followers 5K Following
Andrew Stellman 👾 @AndrewStellman
2K Followers 884 Following Author, developer, AI researcher, team lead. @OReillyMedia books include Head First C#, Learning Agile, and Head First PMP. 🔗 https://t.co/TEy5yWZ4iq
Mitsurugi Heishiro @0xmitsurugi
1K Followers 122 Following Reverse, exploit, pwn. My blade is angry... Want a taste?! The name's 0xMitsurugi. Don't forget it. Member of HexpressoCTF https://t.co/OYV0jRCTIQ
zbetcheckin @zbetcheckin
2K Followers 753 Following
FireBounty - YesWeHac... @firebounty
8K Followers 4K Following LATEST VULNERABILITY DISCLOSURE POLICIES & BUG BOUNTY - https://t.co/tLVN6gVbJF - https://t.co/MdTQq5So35 - https://t.co/e4VWPubxU3
Mayfly @M4yFly
7K Followers 783 Following Former Dev and DevOps| Pentester and red teamer at orange cyberdefense | OSCE³| Tweet are my own| discord: m4yfly
Jhonathan Davi @jh00nbr
475 Followers 1K Following Saiyajin in training living on earth in constant evolution, Security Researcher, Pentester. https://t.co/2e7vOHPWLy https://t.co/iiGP1ntEQT
Deeztek.com @deeztek
26 Followers 175 Following Deeztek provides hosted and on-premises encrypted e-mail solutions.
c0n1c @c0n1c
414 Followers 1K Following #Threat Intelligence, #OSINT, #Phishing specialist and Incident Response analyst at @Sivotis. All opinions expressed here are mine only.
Fuck Schloss @4esu80
291 Followers 5K Following
Malware Patrol @MalwarePatrol
9K Followers 2K Following Malware Patrol's cyber #threatintelligence solutions offer a comprehensive view of the external threat landscape. #infosec #cybersec #APT #malware #phishing
@techbrunchfr@infosec... @BugBountyWeekly
4K Followers 300 Following Weekly #BugBounty realated news and tips - Curated by @TechbrunchFR
2B @h3x2b
3K Followers 2K Following Eat hex for breakfast, binaries for lunch, crunchy malware for dinner, watch disassembly before sleep ... wannabe.
C2C Cyber @C2Ccyber
451 Followers 525 Following The official Twitter page for the Cambridge 2 Cambridge Cybersecurity Challenge | July 24-26, 2017
Giovanni ‘Sug4r’ ... @Sug4r7
2K Followers 5K Following Tsurugi Linux founder & core developer - Italian ambassador and staff of old back|track Linux project (now Kali Linux) - #DFIR #OSINT #CTI
hashproofs @hashproofs
477 Followers 4K Following Security researchers, hackers, people tend to post hashes on twitter to use later as proofs. We give them visibility.
VMRay @vmray
4K Followers 2K Following Sandboxing reinvented for the threats of today - and tomorrow. | Imprint: https://t.co/yZtPfo2ySF
Reborn @Reborn_Indian
452 Followers 3K Following
prasad appala @prasad_appala
14 Followers 224 Following
JoeBT @jritsecure
5 Followers 174 Following
KurSh @KurShf
49 Followers 2K Following
Manish Kumar @5ame0ver
220 Followers 3K Following Co-founder https://t.co/HUzC4NMbE3, bug hunter, researcher
LaborX: Crypto Jobs &... @LaborXNews
760K Followers 295 Following Need Help #Hiring in Web3? We’ve Got You Covered! Connecting Employers & Businesses with Web3 Talent 🤝 Get Paid In #Crypto ₿ | 120k+ registered users 💼
Volexity @Volexity
8K Followers 7 Following A security firm providing Incident Response, Proactive Threat Assessments, Trusted Advisory, and Threat Intelligence
Whale Alert @whale_alert
2.8M Followers 13 Following Live reporting on large and interesting #blockchain transactions as they happen. Create your own alerts for over 100 coins on https://t.co/wQEfstUfLm
HackerRats - Uncle Ra... @theXSSrat
156K Followers 955 Following Alone we survive, together we prosper. Are you with me? https://t.co/AfnDsVhqqA
GLIMPS @GlimpsRe
434 Followers 18 Following Uncover your malwares in a GLIMPSe of an eye! Winner of the ECW2019 & 2020 Startup Trophy, @ecso_eu and @ACN_SecNum Certified !
urlscan.io @urlscanio
13K Followers 137 Following A sandbox for websites - Find malicious websites and phishing - https://t.co/LfPJPBGXFV - https://t.co/XjI4zJaBBp - #threatintel #cybercrime #infosec #web #phishing
Phish Report @phish_report
1K Followers 139 Following Takedown tools for small security teams Tweets about phishing kit analysis, takedown tips, and new tools https://t.co/44hDmZ9xnj
Tommy M (TheAnalyst) @ffforward
14K Followers 195 Following Threat Researcher @proofpoint | @Cryptolaemus1
DEYOCLUB @DeyOClub
10K Followers 270 Following I call scammers using accents from around the 🌎 to educate. Each one, teach one. Retired undefeated in Monopoly (1-0).
Semgrep Release Notif... @SemgrepReleases
648 Followers 14 Following This account is taking a break. Follow @semgrep for all things Semgrep! See https://t.co/nOY2y1xFl5 for Semgrep status.
🇺🇦 CryptoDiffer... @CryptoDiffer
287K Followers 2K Following Real-time crypto intelligence: news, listings, airdrops, market moves. Contact https://t.co/I7bZ9eZ1Os https://t.co/OC8mpcX0xR
Kraken @krakenfx
1.7M Followers 70 Following Kraken is your bridge to the world of crypto. Spot, Futures, Margin, Staking & OTC. Buy, sell, trade, earn, explore and learn. Need help? 👉 @krakensupport
POURQUOI J’AIME TWI... @JaimeTwi_
302K Followers 0 Following N’hésitez pas à envoyer vos screens en DM 📥
DC11333 Lille @defcon11333
296 Followers 23 Following Defcon Group from Lille (France). Meetings are held on the last Monday of each month.
PolyDoge 🐶🚀 | A... @PolyDoge
44K Followers 809 Following PolyDoge is crypto from the future and the OG Doge (Mascot) of #Polygon! DAO 🤝 Instant ⚡️ Cheap 💸 Telegram: https://t.co/HYWEFeYQ32 🐕 $PDOGE #Gaming #NFT
CrediBULL Crypto @CredibleCrypto
477K Followers 3K Following *Tweets are my opinion, not financial advice* Only on X- be careful of impersonators. WILL NEVER DM YOU FOR MONEY. NO PAID SERVICES.
Bank Security @Bank_Security
39K Followers 337 Following
TG Soft @VirITeXplorer
3K Followers 1K Following Italian Software House active in antimalware research and antivirus development since 1992. VirIT eXplorer is the name of our antivirus suite.
zigo 101 - Zig + Go @zigo_101
9K Followers 3 Following Mainly about #Ziglang and #Golang. Also web(js, css, html) and C/C++. Author of the #TapirMD markup language, the "Zig 101" (WIP) and "Go 101" series of books.
Joe Roosen @JRoosen
8K Followers 1K Following SpyCloud - Director of Security Research, Cryptolaemus Coordinator, Emotet(Ivan)/QBot(Boris) Destroyer, gold prospector & former sysadmin.
Daniel López @0xDanielLopez
2K Followers 473 Following Cyber Threat Researcher | @CuratedIntel member
Check Point Research @_CPResearch_
24K Followers 119 Following Fighting cyber threats one research at a time. News from Check Point’s (@checkpointSW) Research team.
dave @dave_daves
2K Followers 345 Following Ph'nglui mglw'nafh Cthulhu R'lyeh wgah'nagl fhtagn, previously #phishing #infosec. https://t.co/BncNi5JH1W
Increment @IncrementMag
14K Followers 13 Following A print and digital magazine about how teams build and operate software systems at scale. Published by @stripe from 2017 to 2021.
phishunt.io @phishunt_io
3K Followers 0 Following Sharing suspicious websites with details and screenshot.
vx-underground @vxunderground
377K Followers 294 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Cryptolaemus @Cryptolaemus1
20K Followers 207 Following Where are mealybugs now!?! We is hungry and no one wants to play anymore. Where everyone at?
Grabify @GrabifyDOTlink
2K Followers 7 Following We provide URL shortening / IP Logging services. With over 270 Million IP logs recorded, we are your best bet for IP address data.
Jake | JCyberSec_ @JCyberSec_
10K Followers 67 Following Expert in Credential Phishing and Phishing Kit Research. Working in Cyber Security - Threat Intelligence #Phishing
IpNigh @IpNigh
2K Followers 1 Following #Phishing detection. Posted by a bot, verified by a human. Paid subscription options available. Contact for more information. ⚠️ Created by @JCyberSec_
Prevailion @prevailion
4K Followers 235 Following Continuous Security Validation. Predict, Preempt, Prevent Ransomware.
PagedOut @pagedout_zine
5K Followers 9 Following Paged Out! is a free magazine about programming, hacking, security hacking, retro computers, modern computers, electronics, demoscene, and other amazing topics.
Saâd Kadhi (M: https... @_saadk
2K Followers 372 Following Head of @CERTEU. Dormant personal account given what birdsite is going through. Mastodon account: https://t.co/8vGHjzGRmF
Christophe Brocas @cbrocas
1K Followers 533 Following Security at @Assur_Maladie | @passthesaltcon founder | Have liked sliding | Tweets are my own | Also available at @[email protected]
stacksmashing @ghidraninja
48K Followers 452 Following Security researcher with a focus on hardware & firmware. I occasionally publish stuff on YouTube. Co-founder of @hextreeio. Contact: [email protected]
Elie Bursztein @elie
62K Followers 127 Following AI Cybersecurity @Google & @DeepMind. Help advance AI cybersecurity capabilities and make AI safe & secure for all. @EtteillaOrg Art Foundation founder.
leHACK @_leHACK_
9K Followers 2 Following 🗓️ #leHACK 2025 // June 27-29, 2025 // 🎟️Tickets : https://t.co/IhROwiQjy6 // 📍 https://t.co/YNCuc1Jq03
Spam404 @Spam404
12K Followers 638 Following We help online companies with content monitoring, penetration testing and brand protection. We aim to make the internet a much safer place for everyone.
OpenMined @openminedorg
10K Followers 0 Following We're building open-source tech that helps app builders & researchers get answers from data without direct access to it. Join us on slack → https://t.co/Vuk24CYYnZ
Natalie @NataliePis
5K Followers 494 Following ❤️⛵🌌 ◦ Tech, Sec, AI ◦ @openai Dev Ambassador ◦ Go @GoogleDevExpert ◦ Founder: @heyai_dev @gopherconEU @wtm_berlin ◦ Org: @gdgBerlinGo @SidesBer @GoTimeFM