fuzzyf10w @fuzzyf10w
OSCP // OSCE // OSWE // OSED :: security enthusiast :: CTF player Joined October 2013-
Tweets632
-
Followers729
-
Following1K
-
Likes25K
From a VR student today on our ROP chain lessons. I'm dying 😂: "This week's been like"
How the Red Team engagement really went down…
The @qualys team is back at it! pwnkit: Local Privilege Escalation in polkit’s pkexec (CVE-2021-4034) openwall.com/lists/oss-secu…
If you like AD hacking and many others things explained in deep => go to my budy and coworker Charlie Bromberg aka @_nwodtuhs website: thehacker.recipes
Consider supporting OverTheWire! It's one of the important community oriented CTF/Wargame platforms. Great to start learning linux, pwn and reverse engineering. patreon.com/StevenVanAcker
Consider supporting OverTheWire! It's one of the important community oriented CTF/Wargame platforms. Great to start learning linux, pwn and reverse engineering. patreon.com/StevenVanAcker
#Log4J 2.16.0 is out. Fully disables all JNDI related functionality, and removes the lookups feature. Kudos to the team. @yazicivo, @rgoers @RemkoPopma @carter_kozak @jvz @GaryGregory, Ron Grabowski, Robert Middleton. logging.apache.org/log4j/2.x/chan…
Did you know that you can register an ENS name with XSS? Although ens.domains will not let you register it because of frontend validation, it is possible to do so directly with a smart contract. Here is a tool: github.com/Raz0r/ens-xss
Dropped a little blog post on a really common but not well know pass-back-attack. Its something to keep an eye out for during your next internal ❤ boschko.ca/printer-to-dom…
Linux has so many built-in password managers: syslog .bash_history .zsh_history .mysql_history …
Stanislaw Lem is 100 today. This is from a 1961 story: "Books are crystals with information stored on them. They were read via an opton -- a device that resembled a real book but with only a single page between the covers. A touch would cause it to display the next page of text."
Last semester I was lucky to teach a group of amazing undergrad students (thank you!) my "Offensive Security & Reverse Engineering" course @ChamplainEdu #offsec #exploit #exploitation Today, I'm publishing the whole course here: bit.ly/swexploitation Please read 1/n
Before everybody gets all freaked out about CVE-2021-1675 I would like to point out the amazing work by @NotMedic as well as @tifkin_ for discovering SpoolSample, aka outbound auth by print spooler as used by github.com/NotMedic/NetNT… Disable print spooler on sensitive servers
2021-1675 is spicy 🔥 and highly critical. The June patch does not work against the remote DLL loading and a fully patched system allows RCE from a regular user on anything using the printer spooler. It's not just DCs. Only option is to disable the printer spooler service.
In cooperation with @KevTheHermit & @fuzzyf10w I've created some Sigma rules for the detection of exploits against CVE-2021-1675 Rules github.com/SigmaHQ/sigma/… Older one for PoC only github.com/SigmaHQ/sigma/… Plz note the new Eventlog mappings: github.com/SigmaHQ/sigma/…
Impacket implementation of CVE-2021-1675 🔥 github.com/cube0x0/CVE-20…
I did not test it but this looks bad for missing June patches: github.com/afwu/PrintNigh… CVE-2021-1675 - Exploit released.
Finally, a use for math! "The Ransomware Song"

JS0N Haddix @Jhaddix
167K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
bugcrowd @Bugcrowd
188K Followers 6K Following The leading provider of crowdsourced cybersecurity solutions purpose-built to secure the digitally connected world...Unleash Ingenuity™
LiveOverflow 🔴 @LiveOverflow
156K Followers 1K Following wannabe hacker... he/him 🌱 grow your hacking skills @hextreeio
Auhoouxou @Auhoouxou80636
59 Followers 3K Following
Аскар Жакиш... @papito434
0 Followers 4 Following
Nearkough @NearkoughESyC3
75 Followers 3K Following
Nadia Kihn @KihnNadia59226
2 Followers 173 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/9CH7QY84TJ
Alex @alextoystory
0 Followers 589 Following From a hopeless crush on a captivating stranger, a bitter curse emerged, transforming their once innocent love into a twisted obsession. To MsPsychology1
Owokoloo Jeff @Blu_SOC
39 Followers 932 Following
Active Directory Thin... @ADAllTheTime
3K Followers 717 Following Microsoft Certified Master (MCM): Active Directory. Previously AD field engineer at Microsoft. Notes from the field & the lab (@duff22b)
Hackviser @hackviserr
3K Followers 3K Following Tailored cybersecurity upskilling platform for all levels, catering to beginners and pros | Best way to boost your #cybersecurity skills
Tara @Seyne449360
13 Followers 387 Following I want to be in a unique relationship. https://t.co/WLbFc5yWjv
Dito.Hack 🥷💻�... @Dito_0xE7
436 Followers 4K Following IT/Infosec Practitioner | BTL1 | CySA+, Sec+, Net + | Forensic Psych Guy | Practicing Stoicism as a way of life | Video Game kid for life
Pi | 𝛑 @pt_sec
0 Followers 183 Following Red Team | Vulnerability Research OSCE | OSCP | OSWE | OSWP
RET2 WarGames @ret2wargames
2K Followers 2K Following Our industry-leading platform is the most effective solution for learning modern binary exploitation through a world-class curriculum developed by @RET2Systems
tracedoor @tracedoor
74 Followers 2K Following Stay safe from cyber threats with our cybersecurity blog. Get the latest updates on data protection, online privacy, and digital security.
DanLit Official @DanlitOfficial
8 Followers 187 Following
st4m @stamatisl1
190 Followers 5K Following Site Reliability Engineer ©️ Vegan power 🥗 Reverse Engineering ⏪
Frans @frans_initroot
1K Followers 2K Following Security fanatic... COO @ Risk X Opinions are my own and have no affiliation with my employer.
M @wizardof0x
5 Followers 303 Following
Chris McConkey @xXmckonkelsXx
18 Followers 242 Following
ANoob @cho69847683
107 Followers 5K Following
YoungWuk Rim @YoungwukR
3 Followers 121 Following
Aman Dhital @AmanDhital6
15 Followers 491 Following
Bart Mistrot @BartMistrot
11 Followers 1K Following
Matovu Robert @MatovuR06777644
40 Followers 208 Following
chrismeistre @chrismeistre
396 Followers 1K Following There is no charge for awesomeness | Penetration Tester | Red Teamer | Developer | OSCP | OSEP | OSWE | OSED | OSCE3 | PNPT | PACES
Hutch (Cyber Cognitio... @sociosploit
2K Followers 5K Following Hacker | Blogger | Podcaster | Author | Data Scientist | R&D | Python coder 🐍 | Opinions are my own
Rust Security 🦀 �... @RustSecurity
4K Followers 4K Following News about #Rustlang Security & Fuzzing. Not affiliated with @rustlang core team. 🎉 #Rust security Audit and Fuzzing training is now available 🥳
m0rn1ngstr @m0rn1ngstr
344 Followers 125 Following | Netrunner | OSEP | OSCP | OSWP | CRTO | Security+ | Wanna make cyberspace a safer place | She/her
Abhijit Tikekar @abhijittikekar
34 Followers 570 Following
Abraham I Jacob @abjacob13
96 Followers 429 Following Knowledge to Wisdom is through People & all of'em are in #twitter!
Ashokkrishna(le0li9ht... @ashokkrishna99
536 Followers 2K Following SOC Lead | Microsoft Sentinel SME | ThreatHunting|Threat Intelligence |OSINT|Darkweb |DFIR|Linux Lover | Azure| KQL|Threat Simulations
Shawn Carlson @EvilEyeShawn
719 Followers 3K Following Security Ops | Threat Mgmt | Vuln Mgmt | Data center | Geek | Project Management | Data Viz | Navy veteran
Karib0u @bzh_karib0u
364 Followers 2K Following 🇫🇷 CTI Lead - Interested in Malware Analysis, DFIR and powerful OSINT techniques - Tweets are my own
Diego Betancur @diegob19
290 Followers 2K Following Interested in tech, politics, science, space, football, innovation, religion, humans. Give me BOTH: Facts AND Opinions. Colombian in aussie land! 🇦🇺🇨🇴
Gajanand Rao Surve @gajanand_rao
282 Followers 3K Following Security / Malware analyst by profession and traveller by heart! proud Indian! loves books and chocolates.
vx-underground @vxunderground
377K Followers 294 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Nicolas Krassas @Dinosn
147K Followers 735 Following Head of Threat & Vulnerability Mgmt @ Henkel AG & Co. KGaA https://t.co/NC1orlKrW3
JS0N Haddix @Jhaddix
167K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
Sam Curry @samwcyo
98K Followers 1K Following
Dave Kennedy @HackingDave
224K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
Intigriti @intigriti
195K Followers 657 Following Bug bounty & VDP platform trusted by the world’s largest organisations! 🌍
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
chompie @chompie1337
83K Followers 1K Following hacker, weird machine mechanic, X-Force Offensive Research (XOR)
ProjectDiscovery @pdiscoveryio
38K Followers 132 Following Detect real, exploitable vulnerabilities. Harness the power of Nuclei for fast and accurate findings without false positives.
Florian Roth ⚡️ @cyb3rops
207K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Luke Stephens (hakluk... @hakluke
96K Followers 2K Following Hacker, marketer. I manage socials and produce amazing technical blogs for cybersecurity orgs. Founder of @hacker_content and @haksecio
John Hammond @_JohnHammond
300K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
Louis Nyffenegger @snyff
20K Followers 592 Following Founder/CEO/Trainer/Researcher/CVE archeologist @PentesterLab. Security engineer. Bugs are my own, not of my employer...
Vincent Yiu @vysecurity
29K Followers 254 Following Director, Red Team, Offensive Security. Help organizations safeguard their businesses from the bad guys.
Gareth Heyes \u2028 @garethheyes
37K Followers 1K Following JavaScript for hackers: Learn to think like a hacker. https://t.co/e0aNEbEDk5
Katie Paxton-Fear @InsiderPhD
93K Followers 2K Following Dr, apparently. Security Adovcate @semgrep & Hacker. #BugBounty hunter & #infosec YouTuber. APIs & Interlinked OffSec, PhD in AI+Sec @hacknotcrime. she/her
Active Directory Thin... @ADAllTheTime
3K Followers 717 Following Microsoft Certified Master (MCM): Active Directory. Previously AD field engineer at Microsoft. Notes from the field & the lab (@duff22b)
ACE Responder @ACEResponder
17K Followers 227 Following Practice threat hunting & detection engineering in a real SIEM with real attacks. Join us and become the best.
𝕏 Bug Bounty Write... @bountywriteups
36K Followers 4K Following 🔍 Bug Bounty Hunter | Content Creator | Sharing cybersecurity write-ups & resources | AI | | by @piyush_supiy #bugbounty #bugbountytips
Pwned Labs @PwnedLabs
2K Followers 68 Following Pwned Labs delivers fun and immersive cybersecurity training experiences for individuals and businesses. Join the community: https://t.co/kyG413GZDa
glzjin @glzjin
4K Followers 2K Following InfoSec enthusiast | Developer | OSCP | OSWE | OSEP | OSED | OSCE3 | OSWA | OSWP | OSDA | OSMR | KLCP | CISSP | ASCP | S+ | PMP | Fighting for the better future
h4k @h4kb4n
572 Followers 44 Following LianSecurity Founder "Discord with US https://t.co/nQei46beNH"
Mr.SIP Pro @mrsippro
74 Followers 146 Following VoIP Security Toolkit. SIP Auditing & Attack Simulation. Featured at DEF CON & Black Hat. Designed for red teams and telecom operators. https://t.co/IOtlvqqBOa
Netlas.io @Netlas_io
7K Followers 12 Following Stay ahead with updates on high-profile vulnerabilities, expert tutorials, essential safety tips, and the latest Netlas developments.
Mauricio Velazco @mvelazco
5K Followers 2K Following Security Research @Microsoft || Purple Team || Noob
Oliver Lyak @ly4k_
9K Followers 265 Following Yet another security researcher 🔦 Github: https://t.co/7WFOFz17KI
d1rkmtr @d1rkmtr
8K Followers 467 Following
Karan @0xDISREL
3K Followers 664 Following CTI Analyst & Malware Researcher | Staff at @vxunderground | PTC
Moloch @LittleJoeTables
5K Followers 641 Following Offsec at OpenAI Formerly of @BishopFox https://t.co/YcsVLOe1EL https://t.co/z3UKx3VEBH
Begin n Bounty @beginnbounty
7K Followers 209 Following 👉Practical Bug bounty tips 👉Beginner friendly 👉Pentesting DM for queries
Jayson E. Street 💙... @jaysonstreet
67K Followers 401 Following ➡️Hacker - Helper - Human ⬅️ . . . Also Author. Speaker & Scientific Hooligan! A bona fide teachable moment for hire! he/him
Eirik Nordbø @enordbo
238 Followers 205 Following
Scott Sutherland @_nullbind
3K Followers 326 Following Security Researcher @NetSPI | PowerUpSQL Author
Trickest @trick3st
11K Followers 17 Following Visualize, operate & scale everything offensive security in one-platform.
Steve Syfuhs @SteveSyfuhs
16K Followers 2K Following Windows and Authentication at Microsoft. Developer. Mostly dog pictures. Might actually be two dogs in a trench coat. 🇺🇸 / 🇨🇦 @syfuhs.net on blue sky
Teymur @HeirhabarovT
1K Followers 294 Following Threat Hunter | GCFA | GXPN | GDSA | Head of Cyber Defense Center at https://t.co/IWCy4sTBoA
SecureAuth @SecureAuth
9K Followers 6K Following SecureAuth IAM solutions provide dynamic, AI-driven authentication and privacy. Protect data, engage employees, delight customers. Welcome to Better Identity.
nop @thenopcode
941 Followers 324 Following professional binary breaker | Red Teamer @ MTD | BSODs are my daily routine
Shockwave - External ... @shockwave_sec
2K Followers 2 Following We specialize in protecting businesses from externally facing threats through our advanced Attack Surface & Continuous Threat Exposure Management Platform.
Brandon Rossi @0xConda
17K Followers 2K Following Pentester / Security Researcher / Content Creator | OSCP | CRTP | OSEP |
Heath Maverick Adams @thecybermentor
40K Followers 13 Following Husband | Vet | Founder @TCMSecurity | YouTuber | Professor | Disrupting the education industry via TCM Academy and #PNPT https://t.co/aIcaYyoDlK
PinkDraconian @PinkDraconian
11K Followers 276 Following ▶️ YouTube: https://t.co/j2KvfZx6Un 💼 LinkedIn: https://t.co/1Ky1Jft7mj
Alh4zr3d @Alh4zr3d
24K Followers 276 Following Legal Criminal | Twitch cult leader | InfosecPrep founder | Lovecraft scholar | Soros mercenary | Spiritual cargo shorts wearer | Cthulhu fhtagn
Osmedeus @OsmedeusEngine
2K Followers 1 Following Build your own reconnaissance system with Osmedeus Next Generation - A Workflow Engine for Offensive Security Made with ♥️ by @j3ssiejjj
Yassine Aboukir 🐐 @Yassineaboukir
31K Followers 373 Following HackerOne Top 50, Elite, Pentest Lead, Ambassador, MVH Title and (former) Hacker Advisory Board • Digital Nomad • (Un)pro Athlete
n00py @n00py1
13K Followers 962 Following Retweeter of InfoSec/Offsec/Pentest/Red Team. Occasional blogger/Independent security research.
Mike Felch (Stay Read... @ustayready
17K Followers 2K Following Targeted Ops Red Team @ TrustedSec | Hacking since Renegade BBS backdoors | Prior CrowdStrike/BHIS | In Christ's grip | I speak for myself only | K1HAQ
Truesec @Truesec
8K Followers 380 Following This account is monitored but not active. For updates, follow us on https://t.co/q2eXHkQgrm or Linkedin.
Peter Löfgren @LofgrenPeter
766 Followers 111 Following Working as consultant with #ConfigMgr, #Intune, #WindowsServer and #PowerShell
OWASP Mobile App Secu... @OWASP_MAS
4K Followers 46 Following The OWASP MAS social channels are now: https://t.co/yMddIxOysy https://t.co/tOVHne63qy
Simon Scannell @scannell_simon
3K Followers 501 Following Cloud Vulnerability Research @ google. Opinions are my own
Arkadiy Litvinenko @TheBetepok
1K Followers 535 Following Information Security Fan. Used to play in CTF with @BalalaikaCr3w and LC↯BC. @OFFZONE_moscow & @CTFZone ex-organizer
Expl0itabl3 @Expl0itabl3
898 Followers 2K Following
Crusaders of Rust @cor_ctf
2K Followers 37 Following A European and American Security Research Group
topotam @topotam77
4K Followers 688 Following All I know is that I know nothing. I like Windows, Active Directory and IoT/Hardware hacking. "Responsable mais pas coupable" de PetitPotam
an0n @an0n_r0
13K Followers 727 Following CRT(E|O|L) | OSCP | @RingZer0_CTF 1st (for 2yrs) | HackTheBox Top10 | RPISEC MBE | Flare-On completer | GoogleCTF writeup winner | SSD research | Math MSc |🇭🇺