Patrick Thomas (@[email protected]) @coffeetocode
Software engineer to security consultant, now security partner at @Netflix. Infosec pragmatist. coffeetocode.net SF Bay Area Joined February 2010-
Tweets3K
-
Followers2K
-
Following893
-
Likes2K
Thanks for the #BSidesSF Semgrep workshop @enncoded @LewisArdern @onefiftyman . You packed a *ton* into 2 hours. Really appreciate the work that went into it.
What can we say, twitter-driven development sometimes works :) netflix.com/.well-known/se… Ya'll are good folks. Keep it going!
What can we say, twitter-driven development sometimes works :) netflix.com/.well-known/se… Ya'll are good folks. Keep it going!
Of the ~950 people I follow on twitter, some hacky profile scraping says that about 60 of those currently have a Mastodon link. So for me that's basically from ~0% to 15% exodus (or at least strongly hedging) in a *week*.
Hah, this makes me feel so much better about my small pile of aborted "I think I should write something about..." drafts.
Hah, this makes me feel so much better about my small pile of aborted "I think I should write something about..." drafts.
I don’t think there’s a SOC2 rule against banking 50 pre-approved empty PRs for future use.
Chrome was delivered without any sprints at all. The team came in at 9 and left at 5 (figuratively, people actually kept their own ~8h schedules) every workday for a couple years like clockwork. No drama. No broken marriages, no broken families.
Chrome was delivered without any sprints at all. The team came in at 9 and left at 5 (figuratively, people actually kept their own ~8h schedules) every workday for a couple years like clockwork. No drama. No broken marriages, no broken families.
Congrats to @Resourcely! Clear, exciting product vision at that critical touchpoint of developer velocity, security, and cloud resources. Very pleased to have joined this round, and looking forward to seeing where @travismcpeak and @0xshellrider take this idea.
Congrats to @Resourcely! Clear, exciting product vision at that critical touchpoint of developer velocity, security, and cloud resources. Very pleased to have joined this round, and looking forward to seeing where @travismcpeak and @0xshellrider take this idea.
Strong recommend for anyone thinking about sustainability, culture, and ultimately the humans in a security organization. @astha_singhal knows what she's talking about and delivers it so well. 🙌
Strong recommend for anyone thinking about sustainability, culture, and ultimately the humans in a security organization. @astha_singhal knows what she's talking about and delivers it so well. 🙌
Web timing attacks: super cool in principle, still super janky in practice. Seems like TimeTrial (github.com/dmayer/time_tr…) and Nanown (code.blindspotsecurity.com/trac/nanown/) still best tools, but really janky to get running & require a known-good case. Anyone got suggestions? Banging my head.
Strong recommend. Some great examples that improve both risk and user experience, and also give metrics that make the wins feel real.
Strong recommend. Some great examples that improve both risk and user experience, and also give metrics that make the wins feel real.
Brilliant talk from @coffeetocode on bonding security to developer productivity.
Slides from my #LocoMocoSec talk on "Productizing Security" docs.google.com/presentation/d…
When it literally rains on your parade at @LocoMocoSec with @ropnop @SammyHep @ndm @h4ck3rky13 and @coffeetocode #stillHavingFun
Woo! @LocoMocoSec has been on my list since it started; I'm finally here and so excited! Looking forward to meeting folks. Just hanging out today/tomorrow if anyone else in early wants to meet up!
Woo! @LocoMocoSec has been on my list since it started; I'm finally here and so excited! Looking forward to meeting folks. Just hanging out today/tomorrow if anyone else in early wants to meet up!
Woot! Let's do this! I'm really looking forward to sharing this.

Clint Gibler @clintgibler
22K Followers 563 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
Ben Sadeghipour @NahamSec
233K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
JS0N Haddix @Jhaddix
167K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
Travis McPeak @travismcpeak
3K Followers 1K Following Security, mgmt, startups, investing, 🏋️♂️, 🚵. Founder/CEO @Resourcely prev: @databricks, @netflix; He.
Tanya Janca | Shehack... @shehackspurple
50K Followers 2K Following Secure Coding Trainer, Best-selling author of Alice and Bob Learn Secure Coding & Alice and Bob Learn Application Security. #AppSec she/her 🌻
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
Leif Dreizler @leifdreizler
2K Followers 2K Following Eng Manager at @semgrep 💻 co-host of @404pod 🎙
Jim Manico from Manic... @manicode
17K Followers 6K Following AppSec Educator https://t.co/wTGnDb91Pp #React
Scott Piper @0xdabbad00
19K Followers 317 Following https://t.co/EXe2MI2DLm Cloud security historian. Developed https://t.co/ZXFwkuxUp4, CloudMapper, and Parliament. Organizer for @fwdcloudsec. Researcher at @wiz_io ✦
Kinnaird McQuade 💻... @kmcquade3
6K Followers 2K Following Chief Security Architect @BeyondTrust. Follow for AI, Hacking, Startups. Founded @NightVision_inc. Ex @Square, @Salesforce 🇵🇭🇺🇸 wrote Cloudsplaining
not here; find me els... @ElleArmageddon
28K Followers 3K Following find me on bluesky or linkedin; i’m never coming back
shubs @infosec_au
56K Followers 2K Following Co-founder, security researcher. Building an attack surface management platform, @assetnote
evan j @ejcx_
7K Followers 1K Following 👾👾 Co-Founder of @RunReveal . 🐄🐄 Former Cloudflare Sr. Director of Security Engineering. JMU Double Duke. There's always more to learn.
Dr. Anton Chuvakin @anton_chuvakin
41K Followers 9K Following Information security - #SIEM, #DFIR, #EDR formerly at Gartner! Now @GoogleCloud Office of the #CISO; host of @CloudSecPodcast https://t.co/VpKtfz8nXG
@norootcause.surfingc... @norootcause
13K Followers 5K Following Lorin Hochstein Student of complex systems failures, resilience eng, cognitive sys eng. Will talk your ear off about @LFISoftware. @[email protected]
Ænna Westelius @bubblewire
12K Followers 1K Following Director of Security @ Netflix | Chaotic Good | tweets are my own | https://t.co/mEdXg4AhiX
Johnny Xmas 🔜 #Man... @J0hnnyXm4s
30K Followers 1K Following 3rd Gen Hacker | @Defcon @MalwareVillage Keynote | BurbSec | OT\ICS | Seen on Fox, Wired, TechCrunch… | Infosec’s Community Builder | I don’t read replies.
RichardKurz30 @RKurz30
35 Followers 821 Following
Ammar Alim | عمار @AmmarAlim4
95 Followers 701 Following Engineering Manager @Adobe - builder - composer - strategist - producer
Emilio Haley @EmilioHale65741
98 Followers 4K Following
Md Ismail Šojal �... @0x0SojalSec
31K Followers 5K Following Cyber_Security_Re-searcher || 0SINT || Malware Analysis II Pwn || Ai Re-searcher || Project @AIStrikeSec || 0ld Accounts Suspended @0xSojalSec ||
Melanie Nevill @MelanieNev42000
3 Followers 172 Following Recruiting webshell engineers t o penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/HnhwLXWgq6
Mito Kehayov @mito_kehayov
21 Followers 465 Following 🇪🇺 / 🇧🇬 / 🇦🇹 / 🇨🇦 - IT Security Engineer. - Statistically estimates cybersecurity risk. - Cuts his nails without anesthetic.
L², PhD @L_Lgde
670 Followers 3K Following DFIR, Malware & CTI. Head of a CSIRT. Ex @ANSSI_FR. PhD in intl law. Mostly working on Chinese #APT but also on russian and cybercrime actors #CTI #Malware
Martinez rudivalaz @rudivalaz
2 Followers 64 Following
Gilbert Sarah @gilbert_sa12055
3 Followers 267 Following
Lionel Lefebvre @LLefebvre711
67 Followers 2K Following
Rob Ragan @sweepthatleg
2K Followers 2K Following SΞCURITΨ ΛUTØMΛTIØN RΞSΞΛRCHΞR. я в 💡∞ 🧠 https://t.co/0yCIFAl5P1
xfollow @xfollow592743
143 Followers 4K Following
Keren Elazari @k3r3n3
20K Followers 5K Following Friendly Hacker | Geek Pride 🌈 | Cyber Punk | Security Researcher | Founder @Bsidestlv & @Ladiescyber | @TEDtalks Speaker | Faculty @icrctau
Andrew Baji @baji_andrew
3 Followers 5K Following
Giwhea @giwhea32801
72 Followers 7K Following
David Marjanidze @davidmarjanidze
96 Followers 765 Following Software engineer. Building apps with Angular, React, Node.js & AWS
EmmaRichards @eB1shZ77LquKX0L
84 Followers 7K Following
ꪑꪮꫝꪖꪑꫀᦔ... @Mohammed5580880
41 Followers 1K Following I still believe that one day I will reach my dream, myself, and who I want. God with me🤲🤲🕋... 👉 Made For Your Dream Battle 🫥✌️💻.Infrastructure Engineer.💻
Gatheau @Gatheau12670
10 Followers 894 Following
Tatitoshu @tatitoshu52956
25 Followers 1K Following
Gracia Elizabeth @SmirtRowe
34 Followers 321 Following
x0mF @x0mF
164 Followers 2K Following
Anh Nguyen @AnhNguyenWho
324 Followers 6K Following opinions expressed are my own | explore @netflix | @tamu alum | prev. @kumo_ai_team, @tobikodata, @snapchat, @confluent
9327624430 @ien_malicdem
17 Followers 164 Following
Eliza Neal @ElizafpNeal
12 Followers 421 Following Gathered on the site of girls from all US states 😽 Ready for private meetings Some have naked profile photos! Watching this https://t.co/weQV7AL6lt
Securing Bits @securing_bits
614 Followers 432 Following I explain application security using comic art. One post every Wednesday at noon CET.
Michel Chaduteau @michadut
30 Followers 712 Following Data analysis, machine learning and management reporting at European Research Council Executive Agency.
hawa Seidu @hawaSeidu430192
7 Followers 89 Following
Mary Jennifer @MaryJennif15248
0 Followers 58 Following hello everyone 🖐️ I'm Mary new on here I'm from USA 🇱🇷 love that country too much ♥️♥️ looking for a life partner
Mama Laylow @laylow_mama
283 Followers 4K Following
Nipun Gupta @nipungupta
2K Followers 4K Following Founder of Stealth Security Co | Securing all the Vibes
Clint Gibler @clintgibler
22K Followers 563 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
Ben Sadeghipour @NahamSec
233K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
JS0N Haddix @Jhaddix
167K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
Sam Curry @samwcyo
97K Followers 1K Following Hacker, bug bounty hunter. Run a blog to better explain web application security.
Travis McPeak @travismcpeak
3K Followers 1K Following Security, mgmt, startups, investing, 🏋️♂️, 🚵. Founder/CEO @Resourcely prev: @databricks, @netflix; He.
Nicolas Krassas @Dinosn
146K Followers 735 Following Head of Threat & Vulnerability Mgmt @ Henkel AG & Co. KGaA https://t.co/NC1orlKrW3
Dave Kennedy @HackingDave
223K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
Tanya Janca | Shehack... @shehackspurple
50K Followers 2K Following Secure Coding Trainer, Best-selling author of Alice and Bob Learn Secure Coding & Alice and Bob Learn Application Security. #AppSec she/her 🌻
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
Leif Dreizler @leifdreizler
2K Followers 2K Following Eng Manager at @semgrep 💻 co-host of @404pod 🎙
Jim Manico from Manic... @manicode
17K Followers 6K Following AppSec Educator https://t.co/wTGnDb91Pp #React
cje @caseyjohnellis
29K Followers 4K Following troublemaker & troubleshooter | founder @bugcrowd @disclose_io, board advisor, investor | pioneer of #bugbounty as-a-service | opinions CC0 1.0 | #hacktheplanet
Scott Piper @0xdabbad00
19K Followers 317 Following https://t.co/EXe2MI2DLm Cloud security historian. Developed https://t.co/ZXFwkuxUp4, CloudMapper, and Parliament. Organizer for @fwdcloudsec. Researcher at @wiz_io ✦
Adriana Porter Felt @__apf__
64K Followers 929 Following I like writing silly Tweets, but that doesn't pay so I also type at @googledeepmind. Principal Engineer. ex-@googlechrome. volunteer @2ndharvest. 🇺🇸🇨🇷
Person @ndm
2K Followers 14 Following
lcamtuf @lcamtuf
38K Followers 498 Following Substack: https://t.co/yFvmNisGW3 Homepage: https://t.co/iFAXZxCO5H
shubs @infosec_au
56K Followers 2K Following Co-founder, security researcher. Building an attack surface management platform, @assetnote
evan j @ejcx_
7K Followers 1K Following 👾👾 Co-Founder of @RunReveal . 🐄🐄 Former Cloudflare Sr. Director of Security Engineering. JMU Double Duke. There's always more to learn.
Daniel Cuthbert @dcuthbert
32K Followers 2K Following Documentary photographer, old creaky hacker. Co-author of @OWASP ASVS standard. Blackhat/Brucon Review Board & Co_chair UK Gov Cyber Security Advisory Board
@norootcause.surfingc... @norootcause
13K Followers 5K Following Lorin Hochstein Student of complex systems failures, resilience eng, cognitive sys eng. Will talk your ear off about @LFISoftware. @[email protected]
Bryan Burrough @BryanBurrough
4K Followers 771 Following Author, Public Enemies, Big Rich. Co-author Barbarians at the Gate, Forget the Alamo. New book, The Gunfighters: How Texas Made the West Wild, out June 3.
Dimension 20 🎲 @dimension20show
200K Followers 524 Following ☁️Cloudward Ho! new episodes every Wed on @dropout ⚔️All seasons available @dropout: https://t.co/a6dTo3nuYd 🐉Youtube: https://t.co/aIszqCiWNg
RCSD @RWCSchools
1K Followers 105 Following RCSD is an award-winning PreK-8 district serving Redwood City and portions of Atherton, Menlo Park, San Carlos, and Woodside.
blindu ch @blindu_ch
55 Followers 341 Following
Dropout @dropout
132K Followers 294 Following 🐉 @dimension20show ☝️ @umactuallyshow 🤫 @gamechangersam 🍸 @dirtylaundrydo 💄 @vipeopleshow 🤐 @dontlaughnews 🗣️ @makesomenoisedo 🐷 @smartypantsdo
Sam Reich @samreich
177K Followers 2K Following 🧢 CEO: Dropout 🎤 Host: Game Changer, Make Some Noise 🌸 he / him Follow me for Dropout references and dumb jokes.
Chris Novak @ChrisJNovak
2K Followers 1K Following Leader of Verizon #cybersecurity team | #DHS #CSRB | #NatSec | Consults w/BoD | #AdvisoryBoard | Keynote spkr | #DBIR | Author | Voice acting | Opinions mine.
Nadee Gunasena @NadeeG
256 Followers 574 Following PR lady. Passions include education, politics, puns, and online rants.
Dan Carlin @HardcoreHistory
435K Followers 150 Following Dan Carlin's Hardcore History Twitter feed quote: Yes, I know the show is late... endquote
Swathi Joshi @swathijoshi
321 Followers 133 Following Wife,Mom,VP Security @oraclecloud, previously @Netflix and @Mandiant, VP Fundraising @SahasraDeepika. Educate a girl, change the world.
Simon Willison @simonw
115K Followers 6K Following Creator @datasetteproj, co-creator Django. PSF board. Hangs out with @natbat. He/Him. Mastodon: https://t.co/t0MrmnJW0K Bsky: https://t.co/OnWIyhX4CH
Emad @EMostaque
289K Followers 23 Following Distributing Intelligence. Building the Intelligent Internet @ii_posts. Founder @StabilityAI.
emptywheel (check) @emptywheel
298K Followers 6K Following Abundant tweets about civil liberties & national security*** Legendary potty mouth*** Also at @[email protected] & @emptywheel.bsky.social 🗽🇪🇺
Daniel J. Bernstein @hashbreaker
22K Followers 24 Following Designing cryptography (deployed now: X25519, Ed25519, ChaCha20, sntrup, Classic McEliece) to proactively reduce risks. Coined phrase "post-quantum" in 2003.
Steven Asifo @AsifoSays
808 Followers 688 Following InfoSec |Cyber Instructor | Organizer @LocoMocoSec | Comedian | Battle Rap Fanatic | #BlacksInTech | 🤙🏾Make it fun - Make it Easy.
Colleen @chaiidaii
129 Followers 57 Following Security professional 🐱💻. Previously at Semgrep, currently at Vanta. she/her 🏳️🌈
Dave Belcher @ukbelch
309 Followers 214 Following Cyber Security Swiss Army knife, veteran, Skydiver, Dogfather. Security Partner @ Big Tech. Sci/Tech geek. opinions are mine.
Vintage Maps @vintagemapstore
332K Followers 8 Following Exploring the world through the lens of cartography and design. 🗺️ Vintage maps, propaganda posters, modern infographics, and heraldry.
Isaac Evans @0xine
411 Followers 311 Following Co-founder @semgrep. Make it cheap to make it expensive to exploit software.
Sophie, indistinguish... @SchmiegSophie
7K Followers 571 Following Leading Cryptography (ISE) at Google. Algebraic Geometer. All opinions are my own. Schatzführerin des Oxfordkommakomitees. @[email protected]
Rami McCarthy @ramimacisabird
2K Followers 745 Following security, for the internet, at @wiz_io! opinionated about security. (he/him) @[email protected], bsky=https://t.co/fxycKAqA6t
Evvy @EvvyBio
458 Followers 415 Following 🔬 Vaginal microbiome experts 💙 Trusted by 75k+ users 🧬 Order our Vaginal Microbiome Test and get answers & Rx care for symptoms, fertility & more https://t.co/Ok1i4E8Kji
RAD Security @RADSecurity_
472 Followers 196 Following The Future of Security: AI-Driven, Real-Time Defense Continuously evolve your defenses with autonomous AI built to protect multi-cloud infrastructures
Rach(el) Landers @workingrach
125 Followers 131 Following product lead @usepatch fighting climate change with APIs 🌎 // prev @segment // die-hard SF fangirl and bean enthusiast
Jackie Bow @jbowocky
1K Followers 324 Following endlessly curious, somewhat chaotic ✨ my thoughts are AI generated
web3 is going just gr... @web3isgreat
121K Followers 1 Following tracking only some of the many disasters happening in crypto, defi, NFTs, and other blockchain-based projects since 2021 • created by @molly0xfff
VisiData @VisiData
2K Followers 13 Following An open-source multitool for exploring data in the terminal. Like vim for tabular data. Support VisiData on Patreon: https://t.co/EK8lpEpY3d
Phil Venables @philvenables
14K Followers 590 Following All about cyber, resilience, risk, AI - at scale. Partner - Ballistic Ventures / Google - Strategic Advisor / 4 x CISO / Board Director / Chief Risk Officer
Kelley Robinson @kelleyrobinson
4K Followers 753 Following
Redactle @RedactleGame
2K Followers 1 Following Redactle is a daily puzzle game. Try to determine the subject of a random Wikipedia article by guessing words to reveal them in the page. Created by @jhntrnr
David Trejo @dtrejo@i... @ddtrejo
568 Followers 104 Following Eng @ https://t.co/EAIj9F2lEW. Past clients @CreditKarma @Aconex @Triple_Byte @NeoInnovate @BrownCSDept @Voxer @Cloudera @VAVetBenefits. Opinions mine.
Tom Alcock @TomAlcockCRP
213 Followers 428 Following Co-founder at @CodeRedPartners and @BlockTal Passionate about helping security and blockchain start-ups build top technical, diverse and inclusive teams.
𝐋𝐚𝐤𝐬𝐡 ... @laraghavan
487 Followers 297 Following Founder of Cyb3rSyn Labs | Helping accelerate the transition away from mainstream management practices!
Nico Waisman @nicowaisman
13K Followers 952 Following Head of Security at @XBOW. Former CISO @Lyft. Binary entomologist
Code Red Partners @CodeRedPartners
161 Followers 463 Following Code Red Partners is a U.S.-based staffing firm that specializes in connecting industry-leading enterprises with elite #cybersecurity talent.
collin @libber
2K Followers 509 Following
Maanpuolustuskorkeako... @mpkkfi
16K Followers 337 Following Försvarshögskolan, Finnish National Defence University. Tutkitulla tiedolla ja innovatiivisella opetuksella tulevaisuuden sotataidon ytimessä. #mpkkfi
(past account, never ... @whereistanya
16K Followers 0 Following Find me at: https://t.co/lxewisR9C5 https://t.co/W5sWwGx52a https://t.co/UavAOmwtSI https://t.co/UVpMpZBNEr
Danwise Gamgee 🅅 @PrivacyLawyerD
3K Followers 6K Following Lawyer, Privacy, InfoSec, CyberSec. BLM. Abolish the bar. Mask up. He/they. Former FF/EMT. Nerdy, Jewish, anti-geno-cide Neurodivergent. Also puppies. 🏳️🌈
bboe @bboe
495 Followers 0 Following
Dan Olson @FoldableHuman
162K Followers 291 Following Albertan documentarian behind In Search of a Flat Earth, Line Goes Up, and The Future is a Dead Mall Not actually a duck [email protected]
BugAlert.org @BugAlertDotOrg
876 Followers 0 Following https://t.co/bDalRXbvAE is a service for alerting security and IT professionals of high-impact and 0day vulnerabilities. Follow for vuln information and general updates.
Caltrans District 3 @CaltransDist3
100K Followers 831 Following Caltrans District 3 maintains the state highway system in 11 Northern California counties. Check https://t.co/y6nSOWP2j8 for 24/7 highway conditions.