Doom S. Day @anotherinfosec
Student & Fellow @ColumbiaSIPA; intern @CFR_org; formerly threat research @401TRG. Tweets are my own personal views & retweets/follows are not endorsements. Joined June 2017-
Tweets38
-
Followers46
-
Following236
-
Likes131
Check out the newest post on the 401TRG blog, this time on Exploratory Data Analysis with network data! 401trg.com/introduction-t…
We’ve released the first Security Overview for the Apple T2 Security Chip! Mac secure boot, storage encryption, and more, e.g.: “Mac portables with the T2 chip have a hardware disconnect that ensures the microphone is disabled when the lid is closed.” apple.com/mac/docs/Apple…
Today we are proud to release BloodHound 2.0. Lots of new features, optimizations, bug fixes, new attack primitives, and most importantly...dark mode. posts.specterops.io/bloodhound-2-0… github.com/BloodHoundAD/B…
Really nicely done report by @401TRG - use of estimative language, calling to others’ work, technical analysis easy to follow, good summary up front, exposing what went into their analysis to make the conclusions they did, etc. kudos y’all! #CTI
This is awesome, there's not nearly enough public stuff on MacOS security.
This is awesome, there's not nearly enough public stuff on MacOS security.
Infosec in @BulletinAtomic.¹ Nice read touching on authenticity, security, and privacy in information societies. __ ¹ Dawn Stover (2018) Garlin Gilchrist: Fighting fake news and the information apocalypse, Bulletin of the Atomic Scientists, 74:4, 283-288, doi.org/10.1080/009634….
For the COM lovers - My analysis of CVE-2018-0624 with POC :-)
For the COM lovers - My analysis of CVE-2018-0624 with POC :-)
EFF: Consider disabling Enigmail. GPG: FUD! Irresponsible! We looked at this vulnerability years ago! Not impressive! Hanno Böck:
EFF: Consider disabling Enigmail. GPG: FUD! Irresponsible! We looked at this vulnerability years ago! Not impressive! Hanno Böck:
Very cool to see @MalwareKiwi's awesome report in a @politico newsletter! politico.com/newsletters/mo…
Introducing "Burning Umbrella". An Intelligence Report on the Winnti Umbrella and Associated State-Sponsored Attackers. 401trg.pw/burning-umbrel…
I had a question today about how BloodHound determines session data in an Active Directory domain and @_wald0 whipped this up to answer it. Very helpful! Thank you! youtu.be/q86VgM2Tafc
The ThyssenKrupp CERT just released an Nmap script, a Suricata rule & a detector script that decodes Winnti traffic (PCAP / live traffic) Nmap NSE script github.com/TKCERT/winnti-… Suricata Lua github.com/TKCERT/winnti-… Winnti detector github.com/TKCERT/winnti-… all by @fooolix
Looking for more information on what SharpHound does on your network? Check out @CptJesus's new blog post on SharpHound's API usage and target selection posts.specterops.io/sharphound-tar…
This is so awesome.
Reuters reports more than $17 million stolen from RU banks in 2017 using cobalt strike, built on metasploit mobile.reuters.com/article/amp/id…
@4A4133 This is such a cool project! So many possibilities, thanks for sharing! github.com/salesforce/ja3
🎣 ReelPhish: Real-Time 2FA Phishing Tool 🎣 Simplifies multi-factor authentication phishing based on in-the-wild techniques used by #APT29 and others. @Mandiant Red Team's #ReelPhish blog & tool by @xornorxor @panhchan: 📰: fireeye.com/blog/threat-re… 💾: github.com/fireeye/ReelPh…
🎣 ReelPhish: Real-Time 2FA Phishing Tool 🎣 Simplifies multi-factor authentication phishing based on in-the-wild techniques used by #APT29 and others. @Mandiant Red Team's #ReelPhish blog & tool by @xornorxor @panhchan: 📰: fireeye.com/blog/threat-re… 💾: github.com/fireeye/ReelPh…
An excellent writeup on @mysmartlogon & @gentilkiwi #dcshadow #mimikatz technique by @AlsidOfficial CC @PyroTek3 @jepayneMSFT blog.alsid.eu/dcshadow-expla…
Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cyber Cybe
Why are military planes able to be tracked with a commercial ADS-B receiver? This makes no sense. c4isrnet.com/air/2018/01/25…

Sean Steinberg @the_seanologue
212 Followers 410 Following Writes about politics, policy, conflict, and our collective descent into tyranny.
Hassan Shehata @HassanS76812631
115 Followers 1K Following MEME LORD, GEEK, CyberSec, Opensource Coding https://t.co/GCjhJxIW3P
This Phone @ShrigleyDimond
987 Followers 4K Following
Mitch Stokes @mitchjay10
28 Followers 295 Following Fighting crime, thwarting evildoers and building a safer place for all humanity @ProtectWise #cybersecurity #infosec #tech
Pierre B. @Horgh_rce
1K Followers 948 Following French guy interested in reverse engineering / malware analysis / threat intel.
Tom Behaeghe @BehaegheTom
58 Followers 983 Following
Shahan Khatchadourian @shahankhatch
2K Followers 3K Following web3/defi/ai. ex-: @WindrangerLabs @BitDAO @interchain_io @Cosmos Hub Lead. @PegaSysEng @EntEthAlliance. Created #HyperledgerBesu.
Charles Greenaway @cciechaz
1K Followers 4K Following Christian. Interested in lots of tech. Cloud Innovation. Technical Strategy. Cloud/DC/WAN. Programming. Technoeconomics. Product Delivery Tweets are my own.
🇨🇦PJ⌨🏋🏻... @PJ47596176
2K Followers 3K Following 🇨🇦whisky; cyber; natsec; Greater Toronto; innovation; girl dad.🌻.
fueres @fueres
118 Followers 828 Following
BlackBerry Cybersecur... @BlackBerrySpark
22K Followers 7K Following AI-Driven Cybersecurity that Works Smarter, Not Harder
Andrea S. Lanternini @muserkp
31 Followers 1K Following
Christopher Grimaldo @GrimaldoChris
549 Followers 5K Following
blackbird497 @blackbird497
335 Followers 3K Following We are Anonymous. We are Legion. We do not forgive. We do not forget. Expect us.
Nicolas Caproni @ncaproni
8K Followers 4K Following Head of @sekoia_io Threat & Detection Research (TDR) Team #SOCplatform #XDR #SIEM #CTI #TIP
Paul Dokas @pauldokas
2K Followers 5K Following Boiler of Oceans, Killer of Fun, Angel of Death, Crusher of Dreams. The Rat's Ass is my spirit animal.
LocalhostDaemon @LocalhostDaemon
2K Followers 4K Following
${jndi:ldap://glennba... @theglennbarrett
967 Followers 3K Following Threat Hunter and Incident Responder by day, occasional adjunct by night. () { :;} ; Yay #DerbyCon
Gene Stevens @genestevens
262 Followers 123 Following Chief Product Innovation Officer @VerizonBusiness, Co-Founder & CTO @ProtectWise, Board of Directors @OISFoundation. Tweets are my own.
kvmc @0x7ccccccc
33 Followers 2K Following
DAVE GOLD @davidagold
428 Followers 3K Following The Gold Standard. InfoSec/Cyber Security, Sports, Politics are all fair game. I appreciate a good dad joke. Views expressed here are my own.
Phil Schroeder @proschro
72 Followers 424 Following
noDraft @noDraft10
333 Followers 975 Following Options Seller, Dividend Collector and eBay/Poshmark Shoe Seller | $TSLA, $PLTR, $SOFI | Tesla Model Y Performance FSD.
Augusto Bortoluzzi @augustob333
583 Followers 5K Following kinda polymath person - only techy tweets here.
w1mp1 @w1mp1k1ng
754 Followers 976 Following Applied Intelligence and Threat Research #Vet #DataAddict #Truth #WildDreams #NoTrustPress Don't touch my drums Opinions are always my own
ring_lcy @ring_lcy
19 Followers 155 Following
Anthony J. Guida @aguida
305 Followers 464 Following cloud security engineer @googlecloud husband. father. @onepeloton junkie #forzaJuve tweets are probably not my own
edx @criznash
2K Followers 5K Following security, drum and bass, stuff and things. AHAtian, w00er, professional hard chatter. moderator @ https://t.co/cuKZCaVhGJ - blog @ https://t.co/cvnX7XrYVg - he/him
Dragos, Inc. @DragosInc
27K Followers 5K Following Dragos is an industrial (OT/ICS/IIoT) cybersecurity company on a mission to safeguard civilization.
Travis Green @travisbgreen
677 Followers 2K Following An infosec old & author of TGI HUNT rules. Not the gospel singer. Opinions are my own and not the views of my employer. I don't often check DM here
Chris 'Buzz' Womack @R3D83ARD
46 Followers 411 Following I do sneaky squirrel type things with 401TRG!
Mohamed Amer @cyberwarr10r
82 Followers 3K Following 🚀 Tech Entrepreneur | Innovator 💡 | Building the Future, One Line of Code at a Time | Passionate about Cybersecurity & Geopolitics | Personal Opinions Only
James Condon @jameswcondon
509 Followers 308 Following Aspiring for a future where cloud security is simple and easy. @laceworklabs
ProtectWise 401TRG @401TRG
710 Followers 150 Following Threat Research Group at @ProtectWise. Analyst to analyst content on malware, DFIR, threat intelligence and much more.
Tom Hegel @TomHegel
7K Followers 777 Following Threat Research Lead @SentinelOne, Advisor with @ValidinLLC
Shashank Joshi @shashj
221K Followers 2K Following Defence editor @TheEconomist, Visiting fellow @warstudies KCL. Signal: shashank.96. Speaking engagements: https://t.co/8V3SSBwUYe
Chris Bing @Bing_Chris
34K Followers 10K Following @propublica reporter: national security and technology. 📧: [email protected] / 📞(Signal): 771-217-8550. More contact info: https://t.co/FnTdrahhi0
Council on Foreign Re... @CFR_org
558K Followers 165 Following Foreign policy news and analysis. CFR takes no institutional positions on policy. Follows, RT ≠ endorsements. ✉️ Subscribe for more: https://t.co/ehd5lKYrLs
Adam Segal (@adschina... @adschina
12K Followers 3K Following On leave @CFR_org now @StateCDP (see pinned tweet); Hacked World Order https://t.co/SgzNoG2lwD Opinions my own. RTs ≠endorsement
Troy Hunt @troyhunt
241K Followers 1K Following Creator of @haveibeenpwned. Microsoft Regional Director. Pluralsight author. Online security, technology and “The Cloud”. Australian.
Steve YARA Synapse Mi... @stvemillertime
17K Followers 1K Following threat intelligence @google writing & sharing on adversary tradecraft, malware, threat detection, AI-nexus intel and all things #yara
Gita Ziabari @gitaziabri
74 Followers 23 Following
Ryan Cobb @cobbr_io
12K Followers 480 Following Red Teamer | Hobbyist Software Developer | Operator @SpecterOps Developer: Covenant, SharpSploit, PSAmsi
Fran Donoso (@francis... @Francisckrs
2K Followers 857 Following The analysis is severely limited by my lack of understanding of what I am doing. @[email protected] @francisck.bsky.social
Andrew Chiles @AndrewChiles
2K Followers 688 Following Works @ SpecterOps, Red Teamer, Amateur Photographer, Health Nut, Husband, Father, #wreckingball
Verif!cation Quiz Bot @quiztime
29K Followers 11 Following Join us and verify yourself through a little series of quizzes that we post daily on Twitter. Learn about the main tools and collaborate with others.
Christiaan Triebert @trbrtc
105K Followers 2K Following Visual Investigations at @nytimes. Previously with @Bellingcat, @Airwars. DMs open.
Kelly Villanueva @kellthenoise
4K Followers 285 Following Previously Red team @ Salesforce, SpecterOps & Big4 | Interested in security, puns, and mountains | Opinions my own @[email protected]
Bellingcat @bellingcat
721K Followers 75 Following Support our charity https://t.co/XMTKIEDiTB Buy our book: https://t.co/2JiuWFfTpO Follow us: https://t.co/LPUEQI8TdZ
Aric Toler @AricToler
133K Followers 1K Following @nytimes Visual Investigations Previously @bellingcat [email protected] https://t.co/aHPY73i935 Signal/Telegram/WhatsApp: +1 913-209-0215
Ivan Krstić @radian
12K Followers 869 Following Head of Security Engineering+Architecture (SEAR) at Apple. I don’t speak for my employer.
Kim Zetter @KimZetter
93K Followers 3K Following Journalist - cyber/national security. Author - COUNTDOWN TO ZERO DAY: Stuxnet and the Launch of the World's First Digital Weapon. https://t.co/334DzfSL1f
Microsoft Threat Inte... @MsftSecIntel
187K Followers 1K Following We are Microsoft's global network of security experts. Follow for security research and threat intelligence.
Arrigo Triulzi @cynicalsecurity
7K Followers 678 Following IT Security, cynically aged. Maths. Some nukes. Longing for Symbolics and Connection Machines. Keeper of Ancient Computing Lore. Wassenaar intangible Ⓐ
Lieutenant Governor G... @LtGovGilchrist
35K Followers 360 Following Husband; Father x 3; 64th Lieutenant Governor of Michigan #StandTALLforMichigan
CNAS Technology and N... @CNAStech
7K Followers 218 Following Technology and National Security Program at @CNASdc. Researching AI, 5G, autonomous weapons, and digital freedom. CNAS does not take institutional positions.
Centre for the Study ... @CSERCambridge
16K Followers 2K Following @Cambridge_Uni interdisciplinary research centre dedicated to the study and mitigation of existential risks. Bluesky: https://t.co/cD6lyPPzBH
Ben Actis @Ben_RA
3K Followers 2K Following Former Red Team at Facebook/Meta. My tweets are my own and not my employer.
Richie Cyrus @rrcyrus
4K Followers 712 Following Husband. Brother. GIAC GSE #270. Infosec at Apple. I don’t speak for my employer.
Samuel Groß @5aelo
24K Followers 502 Following Working on Project Zero, Big Sleep, and V8 Security. Personal account. Also @[email protected] and https://t.co/aVitnPjBie
Vineet Bhatia @ThreatHunting
2K Followers 916 Following Digital Forensics and Incident Response. Talk to me about engineering detection and managing response. Views on this channel are those of my own.
Matthew Green is on B... @matthew_d_green
150K Followers 1K Following I teach cryptography at Johns Hopkins. Mostly on BlueSky these days at https://t.co/GI4QlxZr2S.
WIRED @WIRED
9.7M Followers 440 Following Where tomorrow is realized || Sign up for our newsletters: https://t.co/Tl6GImvc8R
cda @CDA
7K Followers 863 Following Researcher on Internet infrastructure, state-sponsored hacking, sanctions, human rights, and authoritarianism; 'Blonde guy, talks about Iran a lot.'(ملا لغتی)
Thomas H. Ptacek @tqbf
33K Followers 612 Following Don't look at me sideways. Don't even look me straight on. bsky:@sockpuppet.org
Matt Jonkman @mattjonkman
451 Followers 1K Following
Runa Sandvik @runasand
72K Followers 368 Following Founder of @GranittHQ, securing journalists and at-risk people around the world.
Rohan Vazarkar @CptJesus
17K Followers 111 Following Penetration Tester and BloodHound Developer @specterops
Andy Robbins @_wald0
36K Followers 2K Following Co-founder of SpecterOps. Co-creator of BloodHound. https://t.co/rub1i3Fs9g
Craig @security_craig
8K Followers 1K Following Head of Threat Intelligence Engineering @ Amazon | Former Director Talos | Distinguished Speaker Hall of Fame | Reformed Podcaster | Bug Hunter | My Opinions
Greg Conti @cyberbgone
3K Followers 2K Following Security Researcher // Co-Founder and Principal @Kopidion_llc
Rob Joyce 45 Archived @RobJoyce45
4K Followers 174 Following This is an archive of a Trump Administration account, maintained by the National Archives and Records Administration.
Google Cloud Security @GoogleCloudSec
10K Followers 194 Following Make Google part of your security team with Mandiant frontline experts, intel-driven security operations, and a secure cloud platform — supercharged with AI.
mdowd @mdowd
32K Followers 746 Following Internet Hacker. Founder of @vigilant_labs. Previously, co-founder of Azimuth Security (now L3Harris Trenchant)
Chris Long @Centurion
5K Followers 1K Following Security @DetectionLab creator 日本語の生徒 Opinions are my own
Philip Tsukerman @PhilipTsukerman
3K Followers 78 Following I sometimes tweet about security stuff. Pondering whether to turn this into a music-focused account instead...
Red Canary, a Zscaler... @redcanary
30K Followers 1K Following 24/7/365 threat detection and response across your cloud, identity, endpoints and everything in-between. We got you: https://t.co/pFNwBJN3d5
Florian Roth ⚡️ @cyb3rops
207K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Stephen Gillett @stephengillett
12K Followers 1K Following Proud Father, Husband, Gamer and Author. HealthTech enthusiast. Christianos. CEO @Verily جَلَّاد GoDucks! Thoughts here my own 🇺🇸
Lesley Carhart @hacks4pancakes
157K Followers 7K Following ICS DFIR @dragosinc, martial artist, marksman, humanist, Lvl14 Neutral Good rogue, USAF Ret. Tweet *very serious* things about infosec. Thoughts mine. They/them