Sebas @0xroot
- 🦊 Senior Security Consultant at @BishopFox - 📚 Curated Security Pills Newsletter https://t.co/c1XhZLXTZS newsletter.securitypills.news Joined April 2010-
Tweets9K
-
Followers4K
-
Following466
-
Likes495
Vibe coders after realizing they'll still have to dance on TikTok to market their SaaS.
We're back. See you Monday: newsletter.securitypills.news Drop your email, we won't phish you.
I've pushed a few updates to github.com/assetnote/reac…. Vercel and Netlify are no longer flagged as vuln. Offsite redirs not followed. Custom header support in case you need auth or custom UA. Redir test cases are more accurate now (both base path and redir tested).
@galnagli Are those AWS creds exposed intentionally? :P
According to the National Intelligence Service, around 8,400 individuals are employed in cyber warfare in North Korea. Previously, there were 6 hacking groups and 17 support organizations backing cyber attack activities, but this number has now increased by nearly 20%. - Korean: donga.com/news/Politics/… - English: donga.com/en/article/all…
My article regarding Poisoned Pipeline Execution attacks on CI/CD pipelines has just been published 🔗bishopfox.com/blog/poisoned-…
Dive into our blog on the surge of app security attacks on CI/CD pipelines. Discover how to shield against poisoned pipeline executions and real-world remote code execution scenarios. More here: bfx.social/3IHtwGJ #AppSec #DevOps #Cybersecurity
🕵️♂️ Deluder 🔍 A tool for intercepting traffic of proxy unaware applications, supporting multiple networking libraries: * OpenSSL * GnuTLS * SChannel * WinSock and Linux Sockets + more! github.com/Warxim/deluder
🛠 pphack: A Client-Side Prototype Pollution Scanner Scan for prototype pollution using chromedp, customize payloads and JavaScript with this powerful tool 👤 @edoardottt2 github.com/edoardottt/pph…
⚔ Visualizing ACLs with Adalanche A tool for enumerating and visualizing ACLs in Active Directory, helping to identify misconfigurations and potential attack paths By @lsecqt lsecqt.github.io/Red-Teaming-Ar…
🛠️ proctools: Extract information & dump sensitive strings from Windows processes: 🔍 procsearch: find sensitive strings in process memory ℹ️ procinfo: display file version info 📝 procargs: extract command line args ❌ prockill: terminate processes github.com/mlcsec/proctoo…
🛠 Debug your GitHub Actions via SSH with action-tmate A GitHub Action that allows users to debug their GitHub Actions by using SSH or a web shell to access the host system on which the actions run 👤 Max Schmitt github.com/mxschmitt/acti…
🤖 LLM-powered fuzzing via OSS-Fuzz A framework that uses LLMs to generate fuzz targets for C/C++ projects and benchmarks them on the oss-fuzz platform. 👤 @google github.com/google/oss-fuz…
🛠️ graphrunner A post-exploitation toolset for interacting with the Microsoft Graph API It provides different tools for: * Reconnaissance * Persistence * Pillaging of data from a Microsoft Entra ID (Azure AD) account 👤 @dafthack github.com/dafthack/Graph…
🛠 Jira-Lens: Fast and customizable vulnerability scanner for JIRA Perform 25+ checks including CVEs and multiple disclosures on a provided JIRA instance 👤 @mayank_pandey01 github.com/MayankPandey01…
Receive the latest security news each Monday: 🛠️ Appsec ⛓️ Blockchain 🛡️ Blue Team ☁️ Cloud Sec 🐳 Container Sec 🤖 ML ⚔️ Red Team 📦 Supply Chain 🕵️Threat Hunting Join 2,000+ security professionals newsletter.securitypills.news/subscribe Follow me ( @0xroot ) for more content like this
🔖 Security Pills #55 🛠️ A Recipe for Scaling Security @ddworken 🛡️ Detect threats using Microsoft Graph logs @fabian_bader ☁️ All Google Kubernetes Engine Risk @roinisimi ⚔️ electroniz3r @_r3ggi 📦 Forging signed commits on GitHub + more! newsletter.securitypills.news/p/security-pil…
@TheIceRoot If you have enjoyed this content, please help us by: 1️⃣ Joining over 2000 security professionals to get the latest trends in security. 2️⃣ Following me (@0xroot) for more content like this. Visit securitypills.news for more information.
☁ Google Cloud Incident Response Cheat Sheet * Common Attack Paths in GCP 🧧 * Logs for Threat Hunting & Incident Response 🧙♂️ * GCP Attack Matrix 📊 * Service Accounts 🔑 Includes documentation with + details for each TTP 👤@TheIceRoot & Wes Guerra medium.com/google-cloud/g…
☁️ Cloud Threat Landscape A cloud threat intelligence database, providing details on actors, tools and attack vectors Dive into @wiz_io's public database: 🚨107 incidents 🎭96 threat actors ⚔️100+ attack techniques wiz.io/cloud-threat-l…
elhacker.NET @elhackernet
141K Followers 614 Following Recibiendo ataques DDoS desde 2001. RIP wolfbcn. Telgram https://t.co/QSdxPId0ZH - Tecnología, seguridad, informática
Nicolas Krassas @Dinosn
157K Followers 763 Following Head of Threat & Vulnerability Mgmt @ Henkel AG & Co. KGaA https://t.co/NC1orlKZLB Posting content that I find interesting.
Ben Sadeghipour @NahamSec
247K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
Sam Curry @samwcyo
101K Followers 1K Following
hacker.house @hackerfantastic
106K Followers 5K Following Co-Founder @MyHackerHouse 💾 | Cybersecurity & Web3 🌐 | Author of Hands-on Hacking (ISBN 9781119561453) 📖 | Offensive Lua 💻 | ✝️
X-C3LL @TheXC3LL
5K Followers 630 Following Just a biologist that loves to break cyber-stuff. Ka0labs / @AdeptsOf0xcc / ID-10-Ts member. 🦉
Clint Gibler @clintgibler
23K Followers 573 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
[NN2ed] s4ur0n @NN2ed_s4ur0n
9K Followers 1K Following 0x0F0EAB28 · Security Researcher & Teacher · Offensive Security · Malware · Reversing · All my opinions are belong to me
John Hammond @_JohnHammond
320K Followers 3K Following Cybersecurity Researcher @HuntressLabs || Just Hacking Training @JustHackingHQ w/ @ethicalhacker || https://t.co/UtsNJiyiEk || https://t.co/narO3syzIy
The Hacker News @TheHackersNews
1.5M Followers 2K Following The #1 trusted source for cybersecurity news, insights, and analysis — built for defenders and trusted by decision-makers.
paπcake 🌱 🏴�... @trufae
8K Followers 1K Following Holding stuff in my head since 0x7bf - no longer posting in Twitter since Nov2022, follow me on Mastodon instead https://t.co/vG5I1IZVRG
Simone Margaritelli @evilsocket
48K Followers 2K Following Music, cybersecurity, open source and AI • Author of bettercap, pwnagotchi, opensnitch, bleah, legba and a few other things. Chief Architect @ 🥷
DragonJAR - Seguridad... @DragonJAR
254K Followers 3K Following Al 👉 seguirnos, te compartiremos información de calidad sobre #Hacking, Somos una empresa 🐲 👇 Colombiana de servicios en #SeguridadInformática
Marc R @Seifreed
18K Followers 3K Following 🌍 Geopolitics & Cyber Intel | 🧠 Reverse Engineering Pro | 🔎 Geostrategy Analyst | 💻 Combatting Cybercrime & APT | 🚀 All tweets are my own!
Pentester Academy @SecurityTube
198K Followers 14K Following We help professionals acquire the skills, knowledge and certificates by teaching defense through offense to advance their careers in cybersecurity.
hackplayers @hackplayers
55K Followers 1K Following Hacking ético e in-seguridad informática: it's time to play!
Marco Lancini @lancinimarco
7K Followers 383 Following 💼 Director of Security 📬 @CloudSecList 📚 https://t.co/TrQKzxfnYg 💬 I write about security strategy, technical leadership, and cloud security.
Ricardo J. Rodríguez @RicardoJRdez
2K Followers 1K Following Associate Professor @ University of Zaragoza. Researching on program binary analysis, memory forensics, and survivability.
dragosr @dragosr
23K Followers 9K Following Stop, Think, Pwn! (see also @[email protected], https://t.co/BjclXYWQ9R for alternate)
Griffendor @Griffend0R
0 Followers 183 Following
Ali Al-Ridha |علي ... @AliAlRidhawb
1 Followers 68 Following Red Team | Penetration Tester | CTF Player | Student³ Certified:#eCPPTv3 | #CRTA | #PT1 | #eWPTXv3 #1 Iraq – TryHackMe Cisco Badges : Network&Security
Sooraj Shah @Sooraj_Shah
6K Followers 2K Following Content marketing lead @AikidoSecurity. Former tech journo - bylines @BBCnews @businessinsider @Infosecuritymag @fastcompany, @FT, more
Netsec Explained @GTKlondike
1K Followers 495 Following I'm a senior security consultant who makes videos to level up my team on AI, pentesting, and bug bounty. Check out my channel on YouTube.
UVCW @UVCW3
13 Followers 298 Following
SecurityDummy @security_dummy
2 Followers 64 Following
𓊈𒆜🅲🆁🅸�... @Cris7ianJCC
670 Followers 996 Following Systems Engineer ⌨︎ I send 📦 to the address 10.255.255.255 so that all the hosts of this internal social network receive my messages.📡💻📚🐧🏀⛰️🛡️🤖🪲ES/EN
HutchSec @HutchSec
4K Followers 3K Following Offensive Security Consultant. 90s Grunge Enthusiast. Making cybersecurity easier to follow with The Cyber Short. https://t.co/7IEav9sKxq
Hussein Muhaisen @husseinmuhaisen
2K Followers 4K Following Computer Security Researcher @OrbitCurveSec, @(PagedOut_zine), @(GuidedHacking).
. @opi982
4 Followers 457 Following
Pierre Balachowitz @balachowit54967
13 Followers 302 Following
solst/ICE of Astarte @IceSolst
31K Followers 2K Following Voidweaver @AstarteSecurity - Pentester turned seceng turned meeting canceller - meetup https://t.co/E4rlINC0U6 - conf tracker https://t.co/tReNhuhANF
Ishfaq Fariq @ishfaq_fariq
165 Followers 2K Following Cybersecurity Engineer| Frontend Developer | Application Security Engineer | Red Teamer | Software Engineer |
Evan Luke @EvanThomasLuke
143 Followers 1K Following "Most likely to automate the apocalypse (safely)" - GPT5. AI hacking and alignment. https://t.co/enkfxVTCJF
Tito @trynatitolife
3 Followers 71 Following
user3d @user3d1
0 Followers 88 Following
. @Mohamme2607526
3 Followers 126 Following
ع @kazm_ly48426
0 Followers 25 Following
deren ogb @0xderen
2 Followers 92 Following I like computers, coding, infra & hardware. security engineer in making.
0xEBFB @0xEBFB
0 Followers 291 Following
Mehrdad @thisMehrdad
0 Followers 110 Following
Ahmed Mohamed @iveahmedzx20
68 Followers 917 Following
ile Barrionuevo @accio_bugs
1K Followers 2K Following Catholic | Security researcher | Bug hunter | Bookworm | Gymnast | @fernetInjection CTF team
Dharmik._.777 @dharmikkk_777
3 Followers 441 Following
Mahmood Ansari @00iamma00
117 Followers 4K Following Sharing the latest developments in world of Tech 💻 Hacking⚔️ Development👨💻 Security🛡️
WillWillSmithSmith @WillWillSmithS6
3 Followers 165 Following
Mayur Singru @MayurSingru
59 Followers 383 Following
ymmaS @Sec_Sammy
35 Followers 731 Following
t0xch4 @t0xch4_
5 Followers 663 Following
BetilløGalvan(ß2G) @BetilloGalvan_
943 Followers 6K Following Developer|CyberSecurityResearcher|DC664🔫|🇲🇽🤠🥷
dk03 @CandyB842
0 Followers 116 Following
RedKi Sennin @RedKi_Sennin
3 Followers 82 Following
inso @lnsamosa
0 Followers 221 Following
Dharaniraj Sekar @NirajArahD
0 Followers 122 Following
Harley Kimball @infinitelogins
7K Followers 1K Following Researcher Strategy & Live Hacking @ HackerOne | Community Cultivator | Bug Bounty Hunter | Co-Founder of @BugBountyDEFCON | Founder of Disclosed Newsletter.
zhiwang.chen @ring0rz
4 Followers 442 Following
Ahmed @ahsaad2110
2 Followers 61 Following
Cristian Cantos @kriwarez
1K Followers 3K Following AI Prompter @kriwareAI. Security Analyst at @layakk. Staff at @rootedcon YouTube: https://t.co/u8DirnFlCh
The TaskMaster @JamisonNorwood
376 Followers 377 Following CTO of https://t.co/n049SUGfwr Mobile app Dev that lives in Atlanta, Develops with the world, but brings all back to Atlanta.
JS0N Haddix @Jhaddix
176K Followers 7K Following CEO, CISO, Trainer, Hacker, and Speaker. Cybersecurity + Hacking + AI + Sec Leadership @arcanuminfosec
chompie @chompie1337
88K Followers 1K Following hacker, exploit developer/weird machine mechanic head of X-Force Offensive Research (XOR) @IBM
Ben Sadeghipour @NahamSec
247K Followers 1K Following Cofounder @hackinghub_io | Advisor @CaidoIO. I hack companies and make content about it. #NahamCon organizer. ex @hacker0x01🇮🇷
Sam Curry @samwcyo
101K Followers 1K Following
ϻг_ϻε @steventseeley
23K Followers 557 Following Artist disguised as a logician. Pwn2Own Winner. Spiritual Alchemy. An adept in the making.
hacker.house @hackerfantastic
106K Followers 5K Following Co-Founder @MyHackerHouse 💾 | Cybersecurity & Web3 🌐 | Author of Hands-on Hacking (ISBN 9781119561453) 📖 | Offensive Lua 💻 | ✝️
X-C3LL @TheXC3LL
5K Followers 630 Following Just a biologist that loves to break cyber-stuff. Ka0labs / @AdeptsOf0xcc / ID-10-Ts member. 🦉
Clint Gibler @clintgibler
23K Followers 573 Following 🗡️ Head of Security Research @semgrep 📚 Creator of https://t.co/xwtIAI0CuJ newsletter
Alisa Esage Шевч�... @alisaesage
41K Followers 99 Following Independent hacker and researcher, owner of Zero Day Engineering @zerodayalpha
Adam Chester 🏴�... @_xpn_
38K Followers 539 Following Hacker for Hire at @SpecterOps | Blog at https://t.co/tjfTOlmau2 | Insta at https://t.co/PqR6CZQ48T
Daniel Cuthbert @dcuthbert
33K Followers 2K Following Documentary photographer, old creaky hacker. Co-author of @OWASP ASVS standard. Blackhat/Brucon Review Board & Co_chair UK Gov Cyber Security Advisory Board
paπcake 🌱 🏴�... @trufae
8K Followers 1K Following Holding stuff in my head since 0x7bf - no longer posting in Twitter since Nov2022, follow me on Mastodon instead https://t.co/vG5I1IZVRG
/r/netsec @_r_netsec
33K Followers 0 Following Follow for new posts submitted to the netsec subreddit. Unofficial.
Project Zero Bugs @ProjectZeroBugs
37K Followers 0 Following A bot that posts the latest blog posts and disclosures from Google's Project Zero
PentesterLab @PentesterLab
204K Followers 0 Following We make learning web hacking and security easier. Online systems, code review, videos & courses that can be used to understand, test and exploit bugs!
Simone Margaritelli @evilsocket
48K Followers 2K Following Music, cybersecurity, open source and AI • Author of bettercap, pwnagotchi, opensnitch, bleah, legba and a few other things. Chief Architect @ 🥷
Marco Lancini @lancinimarco
7K Followers 383 Following 💼 Director of Security 📬 @CloudSecList 📚 https://t.co/TrQKzxfnYg 💬 I write about security strategy, technical leadership, and cloud security.
Ricardo J. Rodríguez @RicardoJRdez
2K Followers 1K Following Associate Professor @ University of Zaragoza. Researching on program binary analysis, memory forensics, and survivability.
dex @dexhorthy
19K Followers 2K Following building the post-IDE IDE at https://t.co/hDpglj9veo - @aitinkerers sf lead, prev @replicatedhq @SproutSocial @nasa - ai that works pod @ https://t.co/69BhaNtopF
Dickson Tsai @dickson_tsai
6K Followers 126 Following Claude Code @ Anthropic. Previously at Google, Cruise Automation, Apple. UC Berkeley 2016, CS and Linguistics. Current hobbies: AI agents and agentic coding!
Harley Kimball @infinitelogins
7K Followers 1K Following Researcher Strategy & Live Hacking @ HackerOne | Community Cultivator | Bug Bounty Hunter | Co-Founder of @BugBountyDEFCON | Founder of Disclosed Newsletter.
Peter Steinberger �... @steipete
534K Followers 2K Following Polyagentmorous ClawFather. Came back from retirement to mess with AI and help a lobster take over the world. @OpenClaw🦞 + @OpenAI
Jenish Sojitra @_jensec
25K Followers 585 Following $2M in bug bounty. Offensive Security researcher. Product developer who likes Building in Public. Creator of https://t.co/0N9TViCzQ4
Horror Losers @horrorlosers
220K Followers 705 Following Cine de Terror - Horror Movies - Peliculas de Terror - Horror Culture, Television, Art, illustration, reviews...
AgoraSecurity @AgoraSecurity
483 Followers 2K Following Interest in AI security, web attacks & defense, DoS, vuln research, automation, secure code, bug bounties, bots, Ruby, Python, etc. He/him
Cloud Village @cloudvillage_dc
6K Followers 27 Following Cloud Village is an open space to meet folks interested in offensive and defensive aspects of cloud security.
𝕏 Bug Bounty Write... @bountywriteups
40K Followers 4K Following 🔍 Bug Bounty Hunter | Content Creator | Sharing cybersecurity write-ups & resources | AI | | by @piyush_supiy #bugbounty #bugbountytips
PyQuant News 🐍 @pyquantnews
163K Followers 517 Following Where finance practitioners get started with Python for quant finance, algorithmic trading, and data analysis | Tweets & threads with free Python code & tools.
Hack in Hire @hackinhire
246 Followers 530 Following 🚀 Elevate your #CyberSecurity career worldwide! 🔎 AI-driven matching. Verified skills. Real opportunities.
Saar Amar @AmarSaar
18K Followers 359 Following
Elizabeth Ramirez @tijuanera
1K Followers 1K Following Community Builder | Hacker Summer Camp 🛬 | BSidesLV
hextree.io @hextreeio
8K Followers 2 Following 🌱 Grow your cybersecurity skills with concise and well-edited video courses - in early-access, sign-up now! Created by @LiveOverflow and @ghidraninja.
Wojciech Reguła @_r3ggi
6K Followers 862 Following iOS/macOS app security researcher & blogger. 🍎 Black Hat / DEF CON / TyphoonCon speaker. Head of mobile appsec @SecuRingPL
Hackmanac @H4ckmanac
126K Followers 371 Following We track verified, real-world cyber attacks to help you develop effective Cybersecurity strategies. Try https://t.co/eB7qgxKFAa, your Strategic Threat Intelligence platform
Trevin Edgeworth @tetrisguy
128 Followers 432 Following Red Team practice director @ Bishop Fox, program builder, college football nut, gamer, sailor, reader.
Kuba Gretzky @mrgretzky
17K Followers 755 Following Creator of Evilginx - Reverse Proxy Phishing Framework for Red Teams: https://t.co/hPg644CTnM
Matthew Green @matthew_d_green
154K Followers 1K Following I teach cryptography at Johns Hopkins. Mostly on BlueSky these days at https://t.co/GI4QlxYTdk.
☠️ Brandon @__mez0__
3K Followers 445 Following 👽 UNC1194 🔥 Targeted Ops @TrustedSec 🤖 Dev @preemptdev "purveyors of the prettiest log files"
LaurieWired @lauriewired
154K Followers 292 Following researcher @google; serial complexity unpacker; https://t.co/Vl1seeNgYK ex @ msft & aerospace
Thomas Roth @StackSmashing
7K Followers 305 Following When you say JMP I ask to which address. Forbes 30 under 30.
Johann Rehberger @wunderwuzzi23
9K Followers 615 Following Hacking neural networks so that we don’t get stuck in the matrix. Builder and Breaker. Opinions are my own. https://t.co/ij8buvMaXg
Ryan Carr @ryan_boat
2K Followers 513 Following Building and growing revenue-driving newsletters for our partners @ Tailwind. Sharing the lessons we learn along the way.
Pentesting News @PentestingN
5K Followers 1 Following 🤫 Telegram https://t.co/49ybQlAldk 💲Donate https://t.co/BqnGEJgtjM
Kubesploit @kubesploit
21K Followers 1 Following News and links on Kubernetes security curated by the @Learnk8s team Mastodon: @[email protected]
MalDev Academy @MalDevAcademy
20K Followers 8 Following Providing specialized, module-based security training and resources designed for cyber security professionals
Miscreants @MiscreantsHQ
1K Followers 152 Following An off-beat group of hackers and creatives injecting design into cybersecurity. Agency, clothing, collective. Ⓜ️
Matt Johansen @mattjay
46K Followers 2K Following Founder of @vuln_u | Long Island elder emo surviving in ATX | AI and Cybersecurity news from an 18yr industry vet
Melvin langvik @Flangvik
11K Followers 526 Following Red Team @TrustedSec , terrible creator of InfoSec content 📹Opinions are my own and not the views of my employer.
Francisco Müller Ama... @famato
11K Followers 9K Following Co-Founder @faradaysec & @ekoparty security conference. #Evilgrade https://t.co/RaqeRoRD1O $home 🌍🇦🇷 Merlo Valley
Aviad Carmel @AviadCarmel
414 Followers 195 Following
web3 is going just gr... @web3isgreat
118K Followers 1 Following tracking only some of the many disasters happening in crypto, defi, NFTs, and other blockchain-based projects since 2021 • created by @molly0xfff
Matt McGarry @JMatthewMcGarry
20K Followers 612 Following The Newsletter Guy | Founder at https://t.co/5Q1T6JEoio & https://t.co/6oD8iaFwgX | My newsletter is read by 50,000+ founders👇
simple investing @simpleinvest01
22K Followers 277 Following Buy-side Portfolio Manager | Long term, fundamental, bottom up investing | Link to Outperforming the Market below (top 50 finance Substack)
CTT Express @CTTExpressES
8K Followers 903 Following Twitter oficial de CTT Express. Escríbenos a @CTTExpressATC para cualquier consulta sobre tu envío.
Signature Coins @signature_coins
515 Followers 1K Following Helping Businesses Leave Their Mark Worldwide🌎 Amazing Service with Consistent High Quality Custom Challenge Coins Get Started:
Carlos Holguera @grepharder
1K Followers 150 Following OWASP Mobile App Security (MAS) Project Leader https://t.co/7R3VkPzDWD https://t.co/VwJGbXvSnI
Asi Greenholts @TupleType
188 Followers 75 Following Concentrated AppSec juice • Security Researcher @PaloAltoNtwks
@[email protected]... @n0kovo
265 Followers 971 Following
The Application Secur... @AppSecPodcast
3K Followers 1K Following Hosts dig into the stories of AppSec experts and the tools, tactics, and tricks that make them successful.
DirectoryRanger @DirectoryRanger
37K Followers 102 Following This account assembles and disseminates information related to Active Directory and Windows security.
Unciphered LLC @uncipheredLLC
1K Followers 446 Following Cryptocurrency Recovery Solutions https://t.co/vbFcjRZ8Vm





















