Bhavin Patel @hackpsy
Threat Research Team @splunk Maintainer of #atomic-red-team Joined April 2015-
Tweets503
-
Followers374
-
Following863
-
Likes1K
Your Fall Reminder to always Hunt Naked. gist.github.com/MHaggis/66dd0b…
🥳 Woah! we got a new #Kubernetes Goat 🐐 scenario on @ciliumproject Tetragon for eBPF-based runtime #security monitoring, detection & enforcement 🚀 🔥Try it out yourself at madhuakula.com/kubernetes-goa… 🌟 Give a start if you like github.com/madhuakula/kub… #CNCF #Hacking #Community
Isn’t it amazing that some of the best research and tools, is literally free because of some passionate skilled people devote their time to sharing?! 🙏🙌💪
Isn’t it amazing that some of the best research and tools, is literally free because of some passionate skilled people devote their time to sharing?! 🙏🙌💪
[New Blog 📚] The Fragile Balance: Assumptions, Tuning, and Telemetry Limits In Detection Engineering If you ever struggle with false positives and the idea of tuning detections. This is for you. Read More - nasbench.medium.com/the-fragile-ba…
Picture Paints a Thousand "Codes": STRT analyzed a Quasar RAT campaign using image steganography to hide payloads inside harmless-looking images. 🔍 In our latest blog: How it works Key TTPs Detection for #Splunk & #Cisco NTDR Read: splunk.com/en_us/blog/sec… #int3 Demo tool:
LOLRMM.io now tracks over 290 RMMs, with new ones being added regularly. These tools provide legitimate functionality but are frequently repurposed by attackers. Read here: buff.ly/oNbWfa6 If you're not using them in your setup, why allow them to run?…
So I was deep in my webshell era this week 🧙♂️🕸️💻 and—plot twist—I totally got owned... by myself 😂 Naturally, I pulled the classic move: Did I read the source? Nope. Did I run it anyway? YOLO 🪂💥 Next thing I know, it casually goes full ninja mode and drops: cmd.exe ➡️…
🚨 NEW BLOG DROP 🚨 A little late to the CitrixBleed party… But still REALLY worth your time 🧠💥 💻 CitrixBleed (CVE‑2025‑5777) 🩸 Memory exposure ➡️ token hijacking 🛡️ Detection + mitigation tips inside! 👉 Read it now: splunk.com/en_us/blog/sec… ⸻ 🔍 What you’ll learn: •🚔…
🚀 Happy to share my latest blog on @splunk: "Unlocking Endpoint Network Security Insights with Cisco Network Visibility Module (NVM) and Splunk" 🔗 Check it out here - splunk.com/en_us/blog/sec… In this post, I walk through how Cisco Network Visibility Module (NVM) works, the…
Stoked to present the research #STRT did with our Talos friends alongside @nas_bench and John Levy! And it includes a sweet demo at the end. Come say Hi :)
Stoked to present the research #STRT did with our Talos friends alongside @nas_bench and John Levy! And it includes a sweet demo at the end. Come say Hi :)
Come see me at RSAC! I'll be speaking about common threat actor techniques seen in AWS intrusions, and why they're terrible! It'll be a Gordon Ramsey-style critique of cloud threat actors. In addition, we'll talk about how you can attack AWS environments better!
Introducing 🚀Eventlog Compendium 🚀 A new Streamlit app, that aims to be the go-to resource for understanding and playing with Windows Event Logs. Explore it 👉 eventlog-compendium.streamlit.app Includes the following utilities and docs ⚙️ Build your own Advanced Audit Policy based on…
SQL attacks are getting stealthier. Now is your chance to stay ahead with insights from the Splunk Threat Research Team on how your database can turn against you — and how to shut it down fast: splk.it/42likc4 #SplunkSecurity
The new documentation for contentctl buff.ly/4hPEbyR by Lou Stella is awesome. It now includes a straightforward guide for beginners, along with templates to streamline the testing and validation of Splunk content using GitHub Actions. If you haven't explored this…
Cool people add ASCII art to their tools, at #STRT we add a a flag that `recognize` your value threat researcher♥️! github.com/splunk/content… thank you @SnekCharmerr for letting me run with the silly.
AttackRuleMap.com now supports Linux attack and detection rules, in addition to Windows! With 88 new Linux attacks added, this open-source solution, aligned with Sigma and Splunk rules, takes multi-platform threat detection to the next level.
Excited to share my new project: AttackRuleMap This project maps #AtomicRedTeam simulations to open-source detection rules like #SigmaRules and #Splunk ESCU rules (maybe more in the future). Currently for Windows, with plans to support more platforms. attackrulemap.netlify.app
I am extremely excited for Splunk customers ... this announcement changes everything! 🔥 splunk.com/en_us/blog/sec… Splunk best-in-class SIEM (and security content) combined with the detection engineering capabilities the SnapAttack platform offers is a value and capabilities…
Excited to share AtomicGen.io, a platform I’ve built to simplify #AtomicRedTeam test creation. Discover more: atomicgen.io Github Link: github.com/krdmnbrk/atomi… #detectionengineering #attacksimulation @redcanary

J⩜⃝mie Williams @jamieantisocial
10K Followers 7K Following threats && stuff || #UNC1799 forever 🤘|| @DistrictHeather ♥️ + 🍷 **𝚅𝚒𝚎𝚠𝚜 𝚎𝚡𝚙𝚛𝚎𝚜𝚜𝚎𝚍 𝚊𝚛𝚎 𝚖𝚈 օ𝚠𝚗**
Ryan K @meansec
7K Followers 1K Following A cyber hobo. Cycling the earth. Enjoys clicking too fast, long walks in the woods, & advocating. Hates printers. Co-Creator of the BOTS CTF, founder of SURGe
Jose Enrique Hernande... @_josehelps
3K Followers 2K Following 🛡️ Threat Research Director @Splunk ❤️ Scuba Diving 🔧 Maintainer of #AtomicRedTeam #LOLDRIVERS #LOLRMM #LOLBAS
Run DMc @dimitrimckay
3K Followers 1K Following Glazed donut connoisseur, plus size hand model, Neurodivergent, InfoSec, Gracie Jiu-Jitsu purple belt, zombie killer & lover of pitbulls.
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Dave Kennedy @HackingDave
224K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
Anton @Antonlovesdnb
5K Followers 3K Following Blue Team stuff | Trying to be a decent human being | @munkschool Grad | Hunt & Response @HuntressLabs
April C Wright @aprilwright
19K Followers 5K Following The Infosec Diplomat, Curious Polymath Hacker Speaker Author @defcongroups @oreilly @BSidesBos #Privacy #SecurityAwareness #SecurityArchitecture #GRC
Michael Koczwara @MichalKoczwara
23K Followers 2K Following Threat Researcher/Founder @Intel_Ops_io Threat Intelligence, Adversary Infrastructure Hunting, Curated TI Feed (Coming Soon) https://t.co/VQWaze6gaF
Jeff McJunkin @jeffmcjunkin
12K Followers 4K Following Started in ops&blue, now I hack for a living. SANS author/instructor in Oregon. Founder: https://t.co/c36tmCXDpt. He/him. @[email protected]
Sarah Kalevra @swat_cyber
832 Followers 755 Following Threat Intelligence Instructor. She/her. Using Twitter discourse to sound smart at work. #cti #infosec #cyber [email protected]
Olaf Hartong @olafhartong
17K Followers 966 Following @FalconForceTeam | researcher with a camera | Microsoft MVP | Snow man role model
The Haag™ @M_haggis
9K Followers 2K Following Threat Researcher | Co-Host of Atomics on a Friday | LOLDrivers & Atomic Red Team Maintainer | I'm Everywhere and Nowhere - BSG.
Truiu2921 @truiu2921
0 Followers 99 Following
isenhu @isenhu
40 Followers 2K Following
Tim Brown @timb_machine
3K Followers 5K Following push(@twitter, 'Adversarial Engineer'); # i tweet in Perl
George W. Ombeva II @ombeva
1K Followers 7K Following Great Minds Discuss Ideas... Average Minds Discuss Events... Small Minds Discuss People. - Sir Castic Ombeva
Dodge This Security @shotgunner101
7K Followers 5K Following Computer Security Professional. Tweets are my own. Rooster Teeth Archive Project: https://t.co/gawoj5ZZyG
Raven Tait @raven_tait
42 Followers 41 Following
Rita Gomez @RitaGomez416238
1 Followers 175 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/l4M6vHZU6G
James Ibrahim @JamesIb54140322
66 Followers 3K Following
Aditya Shetty @AdityaShet31524
0 Followers 1 Following
ech0d3lta @ech0d3lta
15 Followers 312 Following Looking to get back in the trenches. Recovering nerdherder. CISSP, GPEN, GSOM, GYPC certified. PT1, OSCP and CKA next on the hit list.
Lev Salinas @levsalinas
330 Followers 8K Following
andy various @andy_various
8 Followers 27 Following
Cagri @Cagri_1_
3 Followers 58 Following
Sunil Wimalawansa—S... @SJWimalawansa
3K Followers 7K Following Prof Wimalawansa, MD PhD MBA DSc: Physician-Scientist, Researcher, Educator, Author, Innovator, Philanthropist, Board member & Process Consultant—MAHA—💪
eladm9 @eladm91
16 Followers 316 Following
Wendy @w_kohen44
166 Followers 3K Following
lazarg @lazarg_
37 Followers 165 Following
t3chlaw @t3chlaw
746 Followers 2K Following InfoSec & Privacy Attorney | Adjunct Law Prof @ubaltlaw @AUWCL @UMDLaw | CIPP/US, CIPP/E, CIPM, CIPT, IAPP FIP, CISSP, GCIP | Recovering Tsundoku Sensei
AI Logics @AILogics
702 Followers 6K Following AI Logics is all about AI Startups, Latest Quantum, Cloud, Crypto, Stocks, Sports, and Tech News.
Cp8hr @cp8hr
51 Followers 406 Following
Swachchhanda Poudel @_swachchhanda_
95 Followers 371 Following Threat Researcher | Detection Engineer @nextronsystems | #sigma #yara https://t.co/LjJ2sh3CIE
za @zakiakhmad
966 Followers 2K Following
Richard Ackroyd @rfackroyd
821 Followers 804 Following Cyber Security | Staff Security Engineer @Ripple (fintech/crypto) | Specialised in Detection & Response 🦈 Ex @PwC
ΛPΣXXӨЯ - BSKY: a... @apexxor
253 Followers 2K Following Cyber dumpster fire marshal, tabletop adventurer, wannabe coffee and whiskey snob, Malort propagandist, new dad, & husband. Follows folks smarter than he/him.
NAJEEB MAHFOUDH @Najeeb_Mahfoudh
8 Followers 229 Following
MySOC @MY_eSOC
0 Followers 46 Following
tonghuaroot @tonghuaroot
453 Followers 3K Following Staff Security Engineer. Cyber Security enthusiast, not Hacker. Focus on Application Security, Penetration testing. #OSCP #OSEP #RedTeam #AppSec #WebSec
Emre Güler @emr3guler
297 Followers 909 Following Cyber Security Engineer 💻 #cybersecurity #AISecurity #SOAR #AI #Python🐍
smthdfirent @smthdfirent
60 Followers 1K Following
Nathan Phung @PhungNathan
5 Followers 88 Following
Thái Lê minh @LmThai99
0 Followers 55 Following
DanTheAusMan @DanTheAusMan
21 Followers 363 Following
CHINONSO OKEKU @okekuchinonso
0 Followers 730 Following
∆®€dDy@4 @dyoggofo
80 Followers 2K Following
Rick Fernandez @RFernandez_1
336 Followers 1K Following Cyber Security Professional, @CrowdStrike and Tweets are my own.
nathi Wethulami @wethulami7138
50 Followers 2K Following
Danny Rodriguez @jdannyrod
57 Followers 753 Following Sports Fan, Concert goer, Community Volunteer, and Film fan
Albert Zsigovits @albertzsigovits
2K Followers 2K Following Senior Malware Researcher @VMRay 🤖👾🧬🦠 | #malware #ransomware #dfir #apt #threatintel #threatresearch | Opinions expressed are strictly my own.
Shubham Agarwal @sagarwal_
22 Followers 262 Following eXpert Detection and Investigation @ Airbus SOC
Permiso Security Rand... @PermisoRandall
269 Followers 768 Following @permisosecurity @p0Labs Cloud Threat Research: https://t.co/zs9Jx7rtav Open-Source CloudSec Tools: https://t.co/j5INlo4kBC
VenusWodehous @mO1g392S9lq7Ok7
81 Followers 2K Following
ice @ice98079542
96 Followers 3K Following
Manuel @0xc0ffee
459 Followers 2K Following Sec dude during the day, beer brewer at night. neutral as a neutron. backout plan: 40 30 78 63 30 66 66 65 65 40 69 6e 66 6f 73 65 63 2e 65 78 63 68 61 6e 67 65
J⩜⃝mie Williams @jamieantisocial
10K Followers 7K Following threats && stuff || #UNC1799 forever 🤘|| @DistrictHeather ♥️ + 🍷 **𝚅𝚒𝚎𝚠𝚜 𝚎𝚡𝚙𝚛𝚎𝚜𝚜𝚎𝚍 𝚊𝚛𝚎 𝚖𝚈 օ𝚠𝚗**
Ryan K @meansec
7K Followers 1K Following A cyber hobo. Cycling the earth. Enjoys clicking too fast, long walks in the woods, & advocating. Hates printers. Co-Creator of the BOTS CTF, founder of SURGe
Jose Enrique Hernande... @_josehelps
3K Followers 2K Following 🛡️ Threat Research Director @Splunk ❤️ Scuba Diving 🔧 Maintainer of #AtomicRedTeam #LOLDRIVERS #LOLRMM #LOLBAS
vx-underground @vxunderground
377K Followers 294 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
💻 Sherrod DeGrippo... @sherrod_im
36K Followers 7K Following Weird security voyeur. Vibe merchant. CISO of your 🩷 Official USPS fan account. 🎉 Host of THE Microsoft Threat Intelligence Podcast. I like crime actors.
Jake Williams @MalwareJake
143K Followers 2K Following Breaker of software | VP R&D @hunterstrategy | CTI/DFIR | @ians_security faculty | Bookings: jake at malwarejake dot com | GSE #150 | He/him
David J. Bianco @DavidJBianco
13K Followers 835 Following Threat Hunting, CTI, incident detection & response. SANS instructor. Special interest in helping newbies get started. He/Him. https://t.co/XcrBqQLUrP
John Stoner @stonerpsu
1K Followers 574 Following Principal Security Strategist @ Google Cloud @[email protected] (mastodon) @stonerpsu on threads and bluesky https://t.co/cMWKj8kA5h
Run DMc @dimitrimckay
3K Followers 1K Following Glazed donut connoisseur, plus size hand model, Neurodivergent, InfoSec, Gracie Jiu-Jitsu purple belt, zombie killer & lover of pitbulls.
Chris Sanders 🔎 �... @chrissanders88
34K Followers 489 Following Ed.D. | Founder @networkdefense @RuralTechFund | Former @Mandiant, DoD | Author: Intrusion Detection Honeypots, Practical Packet Analysis, Applied NSM
SwiftOnSecurity @SwiftOnSecurity
405K Followers 9K Following computer security person. former helpdesk.
Justin Elze @HackingLZ
65K Followers 5K Following CTO @TrustedSec | Former Optiv/SecureWorks/Accuvant Labs/Redspin | Race cars
Andrew Thompson @ImposeCost
39K Followers 1K Following Head of Research and Discovery (RAD) @Google Threat Intelligence Group via @Mandiant acquisition. Posts are attributable to me—not my employer. Former @USMC.
Dave Kennedy @HackingDave
224K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
John Hammond @_JohnHammond
300K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyQtS || https://t.co/narO3sz7y6
Florian Roth ⚡️ @cyb3rops
207K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Mick Douglas 🇺🇦... @bettersafetynet
31K Followers 570 Following Consultant for InfoSec Innovations | @SANSInstitute Principal Instructor | @IANS_Security Faculty | I like information security. How about you?
DebugPrivilege @DebugPrivilege
40K Followers 2K Following Windows Nerd | Ex-MSFT | Microsoft MVP in Windows and Devices | Interested in Security, Debugging, and Windows Internals.
EMSC @LastQuake
340K Followers 484 Following Independent Scientific Organization and provider of real-time earthquake info BSky: https://t.co/Uk9IiOhEAA Get The App: https://t.co/VRKgoE3hxF
INFOSEC F0X 🔥 @infosec_fox
11K Followers 4K Following #CRISC | #CISA | #CISM | MSc #Cybersecurity | Digital #Transformation | Talk about #infosec & GRC | Wing Chun & Amateur Podcaster | Opinions are my own
Cilium @ciliumproject
14K Followers 586 Following eBPF-based Networking, Security, and Observability Open Source | https://t.co/D7jTr0mAt8 | https://t.co/Hj4eU5ptLG | https://t.co/0VUFAwWIaZ Newsletter https://t.co/OampQWskV4
Tim Brown @timb_machine
3K Followers 5K Following push(@twitter, 'Adversarial Engineer'); # i tweet in Perl
Shane Harter @shaneharter
1K Followers 417 Following Building @cronitorio & https://t.co/OXfHH5loLM. You can't trust cron jobs.
Mohit Gupta @_Skybound
107 Followers 63 Following Principal Security Consultant @ Reversec focusing on all things AWS, CI/CD and Kubernetes More active on Slack so find me there
Palantir Privacy and ... @PalantirPrivacy
8K Followers 136 Following Official account of @PalantirTech's Privacy & Civil Liberties Engineering Team. Building privacy protective technology and fostering responsible use of data.
Dodge This Security @shotgunner101
7K Followers 5K Following Computer Security Professional. Tweets are my own. Rooster Teeth Archive Project: https://t.co/gawoj5ZZyG
Colours of Bharat @ColoursOfBharat
114K Followers 33 Following Wish to highlight the beautiful locales, cultural heritage, & diversity in the world | Tweets on travel, positivity, heritage and general fun
ChessBase India @ChessbaseIndia
131K Followers 872 Following ChessBase India is a place where you get all the information and updates about the Indian and world chess scene, tournaments and players.
Palantir Daily @DailyPalantir
41K Followers 34 Following Covering the world of Palantir, (NASDAQ: PLTR) daily.
Yamato Security Tools @SecurityYamato
2K Followers 0 Following Tweeting about the latest tool updates from Yamato Security Tools. 大和セキュリティツールについての情報を配信するアカウントです。 https://t.co/PiLgt4IOvV
Raven Tait @raven_tait
42 Followers 41 Following
Office of Dr. S. Jais... @sjaishankaroffc
14K Followers 9 Following Office of External Affairs Minister of India @DrSJaishankar. Member of Parliament (Rajya Sabha) from Gujarat State.
watchTowr @watchtowrcyber
9K Followers 14 Following watchTowr enables organizations to get ahead of in-the-wild exploitation with Preemptive Exposure Management technology.
CIA @CIA
3.6M Followers 56 Following We are the Nation's first line of defense. We accomplish what others cannot accomplish and go where others cannot go. https://t.co/yhjtYvFBiJ
Cisco Talos Intellige... @TalosSecurity
48K Followers 164 Following The Official X account of the Cisco Talos Intelligence Group. Support requests: https://t.co/LGrHyYbolX
Snort 🐷 @snort
23K Followers 12 Following SNORT®: The standard in IDS and IPS. Download Snort 3 today! https://t.co/0Aycqy2PqJ
Roy @im_roy_lee
156K Followers 2K Following ceo @cluely | kicked out of columbia, harvard, community college graduate
ThePowerShellPodcast @PowerShellpod
1K Followers 46 Following The PowerShell Podcast highlights what makes PowerShell so great, the community. We geek out over #PowerShell
FBI Director Kash Pat... @FBIDirectorKash
1.9M Followers 180 Following Director of the Federal Bureau of Investigation, #9
Oakland Police Dept. @oaklandpoliceca
60K Followers 296 Following X is managed by the OPD Media Unit and is not routinely monitored. In case of an emergency, please dial 9-1-1.
Jonathan Peters @cod3nym
776 Followers 102 Following Threat Researcher | Detection Engineer @nextronsystems @nextronresearch #Yara enthusiast | C# Developer
DeepSeek @deepseek_ai
971K Followers 0 Following Unravel the mystery of AGI with curiosity. Answer the essential question with long-termism.
BART Alert @SFBARTalert
137K Followers 2 Following Automated feed. News: @SFBART. Customer service: https://t.co/deqCpr7p9G. Emergencies on BART: dial 911, use the train intercom or see a station agent.
Muhammad Umair @m_umairx
574 Followers 99 Following Reverse Engineer @ Google FLARE. Malware stuff. Views are my own.
OpenAI @OpenAI
4.4M Followers 3 Following OpenAI’s mission is to ensure that artificial general intelligence benefits all of humanity. We’re hiring: https://t.co/dJGr6Lg202
Tesla @Tesla
24.4M Followers 74 Following Electric vehicles, giant batteries & solar, AI & robotics / https://t.co/WbcKtqUxSs
za @zakiakhmad
966 Followers 2K Following
Richard Ackroyd @rfackroyd
821 Followers 804 Following Cyber Security | Staff Security Engineer @Ripple (fintech/crypto) | Specialised in Detection & Response 🦈 Ex @PwC
hasherezade @hasherezade
89K Followers 910 Following Programmer, #malware analyst. Author of #PEbear, #PEsieve, #TinyTracer. Private account. All opinions expressed here are mine only (not of my employer etc)
Donald J. Trump @realDonaldTrump
109.5M Followers 53 Following 45th & 47th President of the United States of America🇺🇸
IntelBroker @IntelBrokerBF
7K Followers 64 Following XMPP: [email protected] HackForums: IntelBrokerBF BF: IntelBroker
Het Mehta @hetmehtaa
36K Followers 1K Following Security Analyst | Content Creator | I Spread Cybersecurity News & Talk about AI, Cloud, Tech, Tools & Recent Updates
Nextron Research ⚡�... @nextronresearch
2K Followers 10 Following Nextron Systems Threat Research Team research (att) https://t.co/QTt2X62dXP
Shubham Agarwal @sagarwal_
22 Followers 262 Following eXpert Detection and Investigation @ Airbus SOC
Permiso Security Rand... @PermisoRandall
269 Followers 768 Following @permisosecurity @p0Labs Cloud Threat Research: https://t.co/zs9Jx7rtav Open-Source CloudSec Tools: https://t.co/j5INlo4kBC
Dhruv Rathee @dhruv_rathee
3.1M Followers 615 Following YouTuber: 25 million+ subs⚡️TIME Magazine’s Next Generation Leaders 2023 • Traveller •