-
Tweets895
-
Followers224
-
Following380
-
Likes1K
This talk looks interesting. > We also show how rare entitlement combinations (e.g., com.apple.private.tcc.allow) appear 25x more often in malware, enabling stealth access to sensitive hardware like the microphone and camera. AFAIK, private entitlements aren’t…
I've been hacking on a new Windows Named Pipe tool called PipeTap which helps analyse named pipe communications. Born out of necessity while doing some vulnerability research on a target, its been super useful in reversing it's fairly complex protocol. :)
I just released a new video: How WSL 1 Works. In this video, I explain how Windows Subsystem for Linux version 1 runs ELF binaries. trainsec.net/library/window…
QUANTUMSTRAND beta 1 released: built for analysts to quickly understand *where* strings are, *what* they might be, and *how* important they are, without getting lost in a sea of undifferentiated text. Thanks @m_r_tz and the crew at @Mandiant FLARE github.com/mandiant/flare…
1/ Nice catch by @g0njxa: ads drop #macOS #stealer as well. First stage: signed DMG "Alli-Ai.dmg". Inside: Mach-O file named sudoku?🤷♀️ Seems to be a Swift app, in real a wrapper (loader/launcher) that spawns a child process and hands it AppleScript that does the actual data theft
1/ Nice catch by @g0njxa: ads drop #macOS #stealer as well. First stage: signed DMG "Alli-Ai.dmg". Inside: Mach-O file named sudoku?🤷♀️ Seems to be a Swift app, in real a wrapper (loader/launcher) that spawns a child process and hands it AppleScript that does the actual data theft https://t.co/4i1dginXXH
New blog post just dropped! West Shepherd breaks down extending the Mythic Poseidon agent for ARM64 Dylib injection on Apple Silicon. Details include: ✅ Shellcode construction ✅ Memory allocation ✅ Runtime patching ✅ Thread creation Read more ⤵️ ghst.ly/41Nu4ED
YARA-X 1.5.0 has been released! It comes with new features and multiple bug fixes. github.com/VirusTotal/yar…
Today we released a new stable version of DRAKVUF Sandbox v0.19.0 🎉– a project that leverages the DRAKVUF system for agentless malware analysis. Detailed release notes can be found on our Github: github.com/CERT-Polska/dr…
WARP is here in Binary Ninja 5.1! It’s our new signature‑matching system that’s not just faster and smarter, but actually easier to use too. Build and share libraries easily, pull in type info, even prep for cross‑tool compatibility. WARP is the future. Go try it.…
I updated the #Rhadamanthys custom format converter (for XS modules), to support the latest version (0.9.x): github.com/hasherezade/hi…
Binary Ninja 5.1 is now released: binary.ninja/2025/07/24/5.1… - New WARP function matching - Pseudo Objective-C - Binexport plugin built-in - IL Rewriting Examples, APIs, and Docs - Arch: PPC VLE, mips-r5900, x32 + Much more!
First time in Ibiza for #OBTS 🌴☀️ and couldn’t be more stoked! Honored to be speaking alongside some brilliant researchers. In my new talk I'll explore Apple Security Updates and how to tear them open for intel. Bring your sunscreen and your curiosity😎🧠
First time in Ibiza for #OBTS 🌴☀️ and couldn’t be more stoked! Honored to be speaking alongside some brilliant researchers. In my new talk I'll explore Apple Security Updates and how to tear them open for intel. Bring your sunscreen and your curiosity😎🧠
This has been getting some activity on my GitHub recently so thought I would cross post here. 👀✨Last year I worked on a cool project with some students tackling mixed-boolean arithmetic (MBA) deobfuscation and built a plugin for Binary Ninja (@vector35)! 🐛🥷 🧵(1/n)
Have you wanted to report signed Mac binaries like this one? Now you can with certReport 3.3* (pip install certreport). You can also add them to the Cert Central DB with -p, and tag a malware family with -t. Easy. See thread for more detail. *VT API key required
I've been poking at #Golang malware a bit lately and wrote up some tips/tricks that I use when analyzing Golang. @jstrosch and I just talked about this on his live stream too. Check it out here -> (The livestream replay is linked in the blog post) 🤓 securityliterate.com/go-big-or-go-h…
📣"Debuggers 1103: Introductory Binary Ninja" is released!📣 ost2.fyi/Dbg1103 This class by Xusheng Li of @vector35 (makers of Binary Ninja) provides students with a hands-on introduction to the free version of Binja as a debugger, thus providing decompilation support!…
We've released Procmon for Linux, Sysmon for Linux, and SysinternalsEBPF with Azure Linux 3.0 support! Get the tools at sysinternals.com. See what's new on the Sysinternals Blog: techcommunity.microsoft.com/blog/Sysintern…
🚨 RIFT Update: We’ve boosted our compiler detection! 🛠️ Now with sharper insights into binaries built using GNU, MinGW, and MSVC toolchains. More enhancements are on the way—stay tuned! 🔍✨ #ReverseEngineering #malwareAnalysis #RIFT #malware #msft github.com/microsoft/RIFT
Jesko is an excellent reverse engineer and Binary Refinery is a great tool to check out for malware triage: github.com/binref/refinery
Jesko is an excellent reverse engineer and Binary Refinery is a great tool to check out for malware triage: github.com/binref/refinery

Koen Van Impe ☕ @cudeso
4K Followers 2K Following Freelancer. CSIRT. Incident Response. Threat Intelligence. Security, IDS, Linux, OpenBSD, Honeypots, Jazz, Literature, Modern Art. https://t.co/D9bkiv10Sy
Alexandre Dulaunoy @a... @adulau
8K Followers 7K Following Enjoy when humans are using machines in unexpected ways. I break stuff and I do stuff. @[email protected]
Kris McConkey @smoothimpact
5K Followers 837 Following #threatintel and #dfir lead @ PwC. Blue team forever. Christian, husband, dad, coffee addict, bad photographer, awful cyclist. Tweets my own, not PwC's.
Allison Wikoff @SaltyWikoff
641 Followers 824 Following #threatintel Americas Lead @pwc. Hype woman. Beach Rat. Former Adjunct @Columbia. Lover of all the APTs. | All views are my own.
x:re:sxerphine @EGuerce18006
2 Followers 163 Following
Norbert @NB1r0
61 Followers 3K Following
Graphic T-Shirt Desig... @SweetHossa71499
33 Followers 458 Following Graphic T-Shirt Designer I help brands create standout apparel that sells, Trusted by 100+ clients worldwide .View portfolio👇 https://t.co/7FqoRQG6VY
AlwaysLookOnTheRootSi... @CrucifyTheBug
0 Followers 47 Following
Nguyễn Thanh Vuy �... @DukeSec97
124 Followers 4K Following Cyber Security, malware, bug bounty hunter 🍷
Darren Webb ☠🕷 @spyd3r
1K Followers 7K Following Computational demonologist. The following tweets are classified SECRET GOLD JULY BOOJUM. 101 824 5150
Nietzsche Virus Lab @NietzscheLab
153 Followers 489 Following macOS / linux malware research and red teaming stuff
Titus Erdman @ErdmanTitu2493
61 Followers 2K Following
santi.wesley @SantiWesle23176
0 Followers 76 Following
Micheal werisky @Mwerisky585
203 Followers 7K Following I'm micheal j weirsky frm New Jersey lottery winner of $273M am giving out $50,000 each to my first 500 followers,Good luck everyone watch me here 👉https://t.co/wKw7pkLUAK
DanaKellogg @1VPZtLbqn8759R
57 Followers 1K Following
L², PhD @L_Lgde
676 Followers 3K Following DFIR, Malware & CTI. Head of a CSIRT. Ex @ANSSI_FR. PhD in intl law. Mostly working on Chinese #APT but also on russian and cybercrime actors #CTI #Malware
Guardian Angel Intell... @GAIA_Sasuki
3 Followers 416 Following
Cyberbro @cyberbro_cti
63 Followers 258 Following A simple application that extracts your IoCs from garbage input and checks their reputation using multiple services. #cti #cybersecurity #threatintel #foss
Dinohacks @nhegde610
594 Followers 2K Following Researcher. Malware Analyst. Part time threat hunter. Part time blogger and passing interest in AI
Bruce Ketta @bruce_k3tta
248 Followers 413 Following Malware Research Engineer @Threat_Down || 𝙸𝚗 𝚌𝚢𝚋𝚎𝚛𝚜𝚙𝚊𝚌𝚎, 𝙺𝚞𝚖𝚒𝚔𝚘 𝚗𝚘𝚝𝚎𝚍, 𝚝𝚑𝚎𝚛𝚎 𝚊𝚛𝚎 𝚗𝚘 𝚜𝚑𝚊𝚍𝚘𝚠𝚜
Paiinxz @paiinxzz
5 Followers 367 Following
Kylm @0xKylm
356 Followers 1K Following reverse fuzzing and maldev / internals enjoyer at @FuzzingLabs 20yo https://t.co/koi6Phdmmf
Michael R @nahamike01
1K Followers 3K Following Threat (Adversary Infrastructure) Researcher | Python Development | Long-time Japan resident
Chriss_0x01 @Chriss_0x01
1K Followers 7K Following #EthicalHacker | #CyberCrime #Investigator | #BugBounty #Hunter | #InfoSec & #CyberSec | #Intelligence & #OSINT | #OpSec | #Thread #Intelligence | #Scientist
xiu @osint_barbie
836 Followers 474 Following GOOD GIRLZ LUV THREAT INTEL&MAC MALWARE 🤟🏼 opinions and tweets are my own
`Ivan @Ivanlef0u
11K Followers 4K Following
MoeSec Website Securi... @MoeSecCom
53 Followers 1K Following Website Hack Repair, Malware & Blacklist removal services. Website Firewall Protection Digital Forensics Vulnerability Assessment & Penetration Testing
Hunt.io @Huntio
4K Followers 921 Following https://t.co/9I6nRUiFjm is a service that provides threat intelligence data about observed network scanning and cyber attacks.
Patrick Staubmann @sm4sh1t
119 Followers 1K Following Team Lead Threat Analysis @VMRay 👾 #malware #threatresearch #reversing #exploitation Opinions expressed are strictly my own.
nyxgeek @nyxgeek
7K Followers 3K Following rebel scum, nerfherder, dogged and relentless. H/P/V/A/C Directory - https://t.co/qn0D9H7IIi
Abdelrahman Magdy @abder_aahman
366 Followers 4K Following
irfan_eternal @irfan_eternal
351 Followers 332 Following Malware Analyst. Interested in RE. Here to Learn and Share
rayh4c @rayh4c
2K Followers 4K Following
rivitna @rivitna2
5K Followers 2K Following Chief #malware analyst, reverse engineer, #APT and #ransomware researcher, programmer. Tweets represent my personal views.
Aaron Jornet @RexorVc0
4K Followers 396 Following Threat Researcher at @socradar | Malware Researcher | Threat Hunter | CTI ¦ Former @ElevenPaths @Panda_Security
Stefan Hofbauer @sthofbauer95
23 Followers 239 Following
Bryon @__Bryon
88 Followers 634 Following Husband, Father, Incident Responder, Martial Artist, Runner, Hiker, mountain climber, mountain biker, rock climber, ice climber, kayaker, and nice guy.
Alfon 🎸 Seguridad ... @seguridadyredes
11K Followers 3K Following Wireshark/Tshark & Zeek IDS, Suricata IDS. Wazuh. Análisis y visualización gráf. capturas tráfico red. Shodan. https://t.co/3ih70SbsoW
MaYil @mayl8822
84 Followers 4K Following
John @BitsOfBinary
2K Followers 398 Following #threatintel @PwC_UK. Reverse engineering, threat intelligence, YARA. Amateur jazz pianist. All tweets are my own. He/him.
NavETeeN @Naveen_ET
501 Followers 4K Following Security Researcher -Random Incoherent Ramblings & Idiosyncrasies- Trying To Add Words To Remaining ~54 Characters, And Here Comes The Smelly ~~Brain Farts~~
vx-underground @vxunderground
377K Followers 294 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Florian Roth ⚡️ @cyb3rops
207K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
ςεяβεяμs - м�... @c3rb3ru5d3d53c
25K Followers 243 Following 💕 Malware Hunter Killer 💕 #binlex & #mwcfg Developer 📽️ YouTuber 👩💻 She/Her 💍@DravenSwiftbow Support my work 👇 ☕️ https://t.co/NoM1TXq00P
Michael Koczwara @MichalKoczwara
23K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
MalwareHunterTeam @malwrhunterteam
245K Followers 38 Following Official MHT Twitter account. Check out ID Ransomware (created by @demonslay335). More photos & gifs, less malware.
Alexandre Dulaunoy @a... @adulau
8K Followers 7K Following Enjoy when humans are using machines in unexpected ways. I break stuff and I do stuff. @[email protected]
Reverse Engineering a... @re_and_more
15K Followers 521 Following RE and More by Alexey Kleymenov (https://t.co/s1pWjL46AW). Private classes and group workshops in malware analysis and reverse engineering. #infosec #malware
Steve YARA Synapse Mi... @stvemillertime
17K Followers 1K Following threat intelligence @google writing & sharing on adversary tradecraft, malware, threat detection, AI-nexus intel and all things #yara
Max_Malyutin @Max_Mal_
13K Followers 309 Following Threat Researcher, Blue Team, DFIR, Malware Analysis, and Reverse Engineering. “⚔️What do we say to God of malware, Not today⚔️”
Karsten Hahn @struppigel
25K Followers 767 Following MalwareAnalysisForHedgehogs, Principal Malware Researcher at GDATA, he/him 🦔🌈🏳️⚧️
Ivan Kwiatkowski @JusticeRage
11K Followers 75 Following Security @Meta. Maintainer of Manalyze, Gepetto, and writer. Trolling on a purely personal capacity.
Myrtus @Myrtus0x0
8K Followers 709 Following Malware Researcher | Developer | @Cryptolaemus1 | @NVIDIA bsky: [email protected]
Katechondic @katechondic
587 Followers 617 Following #malwareanalysis and an all round fun person x; views are not that of my employer. Not on Twitter xx
0verfl0w @0verfl0w_
16K Followers 256 Following Malware Reverse Engineer & Malware Analysis Course Author | RE @ Unit 42
marc ochsenmeier @ochsenmeier
14K Followers 65 Following #Malware Analyst | @BoschGlobal CERT | Author of #pestudio
MISP (@misp@misp-comm... @MISPProject
23K Followers 94 Following MISP - Threat Sharing. An open source software and standards to share, create and validate threatintel and intelligence. Mastodon @[email protected]
Kris McConkey @smoothimpact
5K Followers 837 Following #threatintel and #dfir lead @ PwC. Blue team forever. Christian, husband, dad, coffee addict, bad photographer, awful cyclist. Tweets my own, not PwC's.
x0rz @x0rz
96K Followers 420 Following Cybersecurity & Threat Intelligence. Knowledge is power, France is bacon 🥓
Olivia Gallucci ✨ @OliviaGalluccii
5K Followers 1K Following Security @ Datadog | MacOS Internals | #FOSS Advocate | Opinions ≠ Employer | @intelligentCTF @oghealthfitness | RIT | Prev. Apple, SECUINFRA, US Govt
sixtyvividtails @sixtyvividtails
3K Followers 394 Following Currently working as an independent GUID merchant. Fully licensed. I acquire, produce, and sell high-quality GUIDs.
Mari0n @pinkflawd
11K Followers 591 Following nutcracker by heart • tweets are my own, but if someone wants to buy them.. errr kidding
Interrupt Labs @InterruptLabs
3K Followers 86 Following We’re here to provide world-leading vulnerability research and research capabilities. From browsers, mobile, automotive and everything in between.
Stephan Berger @malmoeb
28K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
Nietzsche Virus Lab @NietzscheLab
153 Followers 489 Following macOS / linux malware research and red teaming stuff
Jonathan Peters @cod3nym
777 Followers 102 Following Threat Researcher | Detection Engineer @nextronsystems @nextronresearch #Yara enthusiast | C# Developer
aptwhatnow @aptwhatnow
1K Followers 638 Following
TOUHAMI KA @vxremalware
1K Followers 181 Following WORK HARD TO MAKE IT VULNERABLE AND SECURE IT AGAIN.
Konstantin Nikolenko @K_N1kolenko
699 Followers 157 Following Team leader, Reverse engineer, Forensics specialist at Doctor Web (@DrWeb_antivirus)
Null Pwner @NullPwner
257 Followers 810 Following Turning random hashes into aha-moments. Coffee fueled. Views mine.
Daax @daaximus
12K Followers 396 Following reverse engineering • secure processor design • system emulation • µarch bugs @the_secret_club
Jamf @JamfSoftware
11K Followers 643 Following The Standard in Managing and Securing Apple at Work. More than 76,500 global customers rely on Jamf to manage 33.2 million devices as of 12/31/24.
alden @birchb0y
3K Followers 2K Following sr threat researcher @ huntress • re/malware enjoyer • macOS security
fG! @osxreverser
12K Followers 791 Following Know a thing or two about Reverse Engineering and Economics. Love 911s with three pedals and natural aspirated engines.
RAKESH KRISHNAN @RakeshKrish12
4K Followers 118 Following Scam Hunter | Blockchain Investigator | Threat Intel Researcher | Sheds light on Dark Web| Read my findings https://t.co/sTD7UDFfUr https://t.co/ivvg7T74JX
Bhargav Rathod @malwr4n6
364 Followers 3K Following All things DFIR & Malware Analysis | macOS/iOS DFIR & Malware Research | Staff MDR Analyst @ Unit42 | OC-DFRWS | GIAC - GREM, GIME & Advisory Board Member
Igor Kuznetsov @2igosha
2K Followers 339 Following Reverse engineering, soldering, programming, digital forensics & random stuff | Director @ Kaspersky GReAT | Tweets are my own
Boris Larin @oct0xor
18K Followers 657 Following Former console hacker (PS3/PS4). Hunting in the wild 0-days at Kaspersky GReAT. All tweets are my own.
Aliakbar Zahravi @AliakbarZahravi
298 Followers 12 Following Malware Reverse Engineer at @TrendMicro - Tweets are my own
Dylan Tran @d_tranman
2K Followers 181 Following salsa sultan, verde villain, condiment connoisseur Adversary Simulation @xforce Red Team @wrccdc Former: @NationalCCDC+@wrccdc & @globalcptc @calpolyswift
Raffaele Sabato @syrion89
581 Followers 646 Following macOS Detection Engineer at @SentinelOne. Offensive Security, Malware, Reverse Engineering and Apple Security. Opinions are my own. @syrion89.bsky.social
Gynvael Coldwind @gynvael
38K Followers 1K Following security researcher/programmer/director @ HexArcana Cybersecurity GmbH ⁂ @pagedout_zine ⁂ @DragonSectorCTF ⁂ https://t.co/ShG2c5As1K ⁂ ex-Google ⁂ he/him
BleepingComputer @BleepinComputer
241K Followers 202 Following Breaking cybersecurity and technology news, guides, and tutorials that help you get the most from your computer. DMs are open, so send us those tips!
Stuart Ashenbrenner �... @stuartjash
2K Followers 1K Following Principal macOS Security Researcher at @HuntressLabs | Creator of @Crash_Security | Reviewer at @bestthrillbooks | @MillennialGirlDad on @SubstackInc
Nikhil @Ox4d5a
18K Followers 1K Following Penetration Tester | i XCHG 0's 1's and do hacks | Red Team Sorcery https://t.co/6LUhkvN2hz | #eJPT | #OSCP | #CRTP | #CRTA | #CESP | #CRTE
GrapheneOS @GrapheneOS
83K Followers 0 Following Open source privacy and security focused mobile OS with Android app compatibility. Forum, Discord, Telegram, Matrix: https://t.co/C0RaJbZosj
0xdf @0xdf_
25K Followers 467 Following Training Architect @ HackTheBox "Potentially a legit security researcher" he/him https://t.co/GCcLVlmdQK https://t.co/uQWVpw4nft 0xdf on discord
Howard Oakley, Eclect... @howardnoakley
4K Followers 137 Following Chief illuminator at the Eclectic Light Company, writing about macOS, paintings; author of over 40 free utilities for macOS.
Airbus Security Lab @AirbusSecLab
2K Followers 9 Following
eSentire Threat Intel @esthreat
1K Followers 47 Following A branch of the @eSentire Threat Response Unit (TRU)
Rad @rad9800
9K Followers 455 Following irrational. founder. building solutions to secure organizations. @deceptiq_
Bruce Ketta @bruce_k3tta
248 Followers 413 Following Malware Research Engineer @Threat_Down || 𝙸𝚗 𝚌𝚢𝚋𝚎𝚛𝚜𝚙𝚊𝚌𝚎, 𝙺𝚞𝚖𝚒𝚔𝚘 𝚗𝚘𝚝𝚎𝚍, 𝚝𝚑𝚎𝚛𝚎 𝚊𝚛𝚎 𝚗𝚘 𝚜𝚑𝚊𝚍𝚘𝚠𝚜
Alex. Turing @TuringAlex
1K Followers 334 Following Kernel Developer | Security REsearcher | Basketball Fan {Botconf | VirusBulletin | Kaspersky SAS} Speaker Current: @Xlab_qax EX: @360Netlab @Kaspersky AKA 渣兔
ExploitedSite @ExploitedSite
169 Followers 191 Following Security Researcher | Low-Level Ninja | RE & Malware RE Maniac Tweets are my own.
hypen @hypen1117
429 Followers 263 Following Security Researcher at Kaspersky, GReAT | Formerly KrCERT/CC, S2W Inc.
Smukx.E @5mukx
16K Followers 227 Following Malware Researcher & Red Teamer | 0..=n Day 🔬 at 🌒 | 0x15 Y/o
Darren LaCasse @stiltznet
442 Followers 484 Following Threat Detection, Intelligence, and Incident Response @elastic At the intersection of logs and security (and now AI!)