Arsenal Recon @ArsenalRecon
Developers of digital forensics weapons which include Arsenal Image Mounter, Hibernation Recon, LevelDB Recon, HBIN Recon, & Registry Recon. Arm Yourself! #DFIR ArsenalRecon.com Boston Joined August 2012-
Tweets1K
-
Followers3K
-
Following1K
-
Likes402
The "TechHive Scenario" is a Windows on Arm disk image we made available to the public via NIST CFReDS (cfreds.nist.gov/all/MarkSpence…) about a month ago. Have you used it for #DFIR training or R&D? We just used it for LevelDB Recon R&D, here's a couple internal build screenshots.
Have you thought about how Hibernation Recon could be used to gain new insight into your highest-stakes cold cases? We released a new version (v1.2.3.96) yesterday with significant updates. ArsenalRecon.com #DFIR
Hibernation Recon has recovered smoking guns in some of the highest-stakes cases involving digital forensics anywhere, ever. Here's a network packet recovered from the third level of a NetWire victim's Windows hibernation slack involving file transfer to an attacker's C2. #DFIR
Hibernation Recon has recovered smoking guns in some of the highest-stakes cases involving digital forensics anywhere, ever. Here's a network packet recovered from the third level of a NetWire victim's Windows hibernation slack involving file transfer to an attacker's C2. #DFIR
Here's the new Hibernation Recon running on Windows on Arm (WoA) & processing WoA, Windows x64, & Windows x86 hibernation (hiberfil.sys) files! We continue to put extremely powerful & unique functionality in the hands of #DFIR practitioners. Arm yourself! ArsenalRecon.com
Here's the new Hibernation Recon (v1.2.3.96) in action! What do you notice about Windows architecture support? Did you know that Hibernation Recon also supports hibernation from Windows XP through the latest build of 11? ArsenalRecon.com #DFIR
We just released Hibernation Recon v1.2.3.96 with some awesome updates - Windows 24H2 & 25H2 support, new decompression algorithms, now runs on Windows on Arm & Linux, etc. How do you analyze Windows hibernation? ArsenalRecon.com #DFIR
@brockpierson Nightmares from so many wasted hours trying to get this thing to work like a respectable modem.
We’re ready for another day at the @IACIS Orlando Training Conference, making more #DFIR practitioners aware of the powerful & unique things our tools can do for them. What’s that under our TV? ArsenalRecon.com
Traveling to the @IACIS Orlando Training Conference! Come see us Tue-Th to talk about maximum exploitation of electronic evidence that is not currently possible with other tools & published techniques. Windows swap, hibernation, & more - let's go! ArsenalRecon.com #DFIR
Emina got to the @MassAGO's National Cyber Crime Conference early yesterday to get our classroom setup. We had a mixture of motivated local, state, & federal law enforcement in our workshop "Disks are Gamblers and Virtualization is Vegas." ArsenalRecon.com #DFIR #NCCC2026
Getting class materials ready for our "Disks are Gamblers and Virtualization is Vegas" workshop tomorrow at the @MassAGO's National Cyber Crime Conference! Notice anything interesting about this laptop? ArsenalRecon.com #DFIR #NCCC2026
Congratulations to Nicholas Smith & Oleksandr Lysyi for completing the Arsenal Image Mounter online training & certification! ArsenalRecon.com #DFIR
Here’s something you don’t see every day in #DFIR - launching a virtual machine from a Linux laptop (safely booted with WinFE) connected to Arsenal Image Mounter across a network via AIM Remote Agent! ArsenalRecon.com
Another video of more Linux functionality from the latest Arsenal Image Mounter... this time, creating a forensic image from a physically-attached disk with the AIM Linux CLI. (& yes - slow laptop, slow disk, slow interface in this demonstration. 😂) ArsenalRecon.com #DFIR
Have you seen Arsenal Image Mounter's latest Linux functionality? Check out the AIM Linux Pro CLI creating a Recon Report from a disk image containing a BitLocker-protected volume and then unlocking & browsing that volume. ArsenalRecon.com #DFIR
@shanselman @Microsoft Ok, trying to reach Garrett now - thanks! We have another team at MS struggling to get this escalated internally.
Now that our "TechHive Scenario" Windows on Arm disk image has been used in a @ChamplainEdu CTF, we think it's time to make it public. Any thoughts on where we should host it? The disk image & associated files are approximately 90gb in size. ArsenalRecon.com #DFIR
Ali Hadi | B!n@ry @binaryz0ne
35K Followers 569 Following DFIR and Adversary Simulation | All posts reflect the views and interests of the person behind this account only |
Kevin 🤖🕵️🍺 @KevinPagano3
4K Followers 582 Following 🕵🏼♂️ @stark4n6 🎴 Shiny cardboard collector 🍺 Resident beer drinker
SwiftOnSecurity @SwiftOnSecurity
410K Followers 9K Following computer security person. former helpdesk.
Chad Tilbury @chadtilbury
22K Followers 599 Following Digital forensics and incident response. Ex-AFOSI, Mandiant, and CrowdStrike. SANS Institute Fellow and co-author of #FOR500 and #FOR508 courses.
Heather Mahalik Barnh... @HeatherMahalik
23K Followers 1K Following DFIR, Faculty Fellow & author, #FOR585 #FOR500, wife, mama, researcher, USAF. Trust but validate. Thoughts are mine.
Brett Shavers 🙄 @brettshavers
40K Followers 948 Following Fell off a cliff. Swam with sharks. Dined with hitmen. Hung out with crime bosses. Bought and sold a ton of drugs. How the heck am I still here? #DFIR #USMC 🚓
Phill Moore @phillmoore
9K Followers 3K Following This Week in 4n6 // ThinkDFIR https://t.co/vLyL2sgQsy I might not know much, but I do know how to Google Tweets are mine
Stephan Berger @malmoeb
29K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
DFIR Training @DFIRTraining
18K Followers 412 Following The official DFIR Training account and most complete #DFIR online resource. Managed by @Brett_Shavers.
Magnet Forensics @MagnetForensics
17K Followers 984 Following Official Twitter feed for Magnet Forensics, a global leader in solutions for digital investigations since 2009.
Patrick @Beav_Patrick
1K Followers 2K Following U.S. Federal Platform Consultant @ Magnet Forensics. Marine Corps Cyber Aux team. Marine Corps Veteran. Former Detective 🕵️♂️ Opinions are my own 👨🏼💻
derek eiri 👻 @MrEerie
604 Followers 769 Following Chicken herder. Corgi keeper. Digital forensics. I’m here to read your tweets. #dfir
Ryan "Chaps" Chapman @rj_chap
8K Followers 3K Following Threat Hunter. DFIR & Malware Analyst. @sansforensics Author (FOR528) & Instructor (FOR610). Husband & father. Retro gamer too! Comments = own.
DFIR Diva @DfirDiva
22K Followers 5K Following DFIR Analyst trying to learn all the things | DFIR Blog for Beginners | Founder @GetYourStart | https://t.co/7cHco4FjUS
Patrick @RVA4n6
760 Followers 578 Following Richmond, VA #RVA Director of Digital Forensics, writer, trainer in #dfir & Active Attack Response, former LE. Motorcycler & traveler. Opinions = my own.
OccupytheWeb @three_cube
265K Followers 3K Following Pentester, Forensic investigator, and former college professor. Trained hackers at each US military and intelligence. Visit me at https://t.co/G478wug0p4
Kevin DeLong @kevindelong
2K Followers 640 Following Retired LE tech investigator. Founder of @avairysolutions & @cybersocialhub helping LE & PSAPs with A.I. technology!
The Cyber Social Hub @CyberSocialHub
1K Followers 359 Following An Online Community of Digital Investigators, Cybersecurity, and eDiscovery Professionals. Offering resources, information, and training.
ElcomSoft @ElcomSoft
11K Followers 2K Following ElcomSoft's Official Twitter. Password recovery, mobile & cloud forensics.
Jon @0xReaper0x
316 Followers 777 Following #Army Vet | Father | Threat Hunter | SANS Graduate Certificate Student |GIAC Advisory Board | GIAC x 7
goutham0164 @goutham0164
2 Followers 410 Following
7up4 @7up47
0 Followers 170 Following
U I @ui81740
1 Followers 766 Following
Beate Klatschfeld @c_qkie
40 Followers 3K Following Ohrfeigen möchte ich meinen zarten Wurstfinger trotzdem nicht antun
Fábio Cabral Pacheco @fcabralpacheco
1 Followers 267 Following
Mchenzie @Osenliahenry
94 Followers 2K Following
xd-sc01 @vinhxuandaisc01
12 Followers 680 Following
2B @2B9975657120850
19 Followers 2K Following
TM @Thandaninkosi
72 Followers 966 Following
hacker.house @hackerfantastic
106K Followers 5K Following Co-Founder @MyHackerHouse 💾 | Cybersecurity & Web3 🌐 | Author of Hands-on Hacking (ISBN 9781119561453) 📖 | Offensive Lua 💻 | ✝️
Shivani Singh @shi2000vani2000
1 Followers 7K Following
Leverage 12 @12Leverage
44 Followers 3K Following
ˢᶜᵒᵗᵗ @Carp_704
812 Followers 4K Following Christian ☩ || SOF Vet 🇺🇸 || Director of Security Operations
Neustradamus @neustradamus
674 Followers 3K Following #OpenSource, #Linux, #Computing, #Technology, #XMPP, #Music... https://t.co/zZdAw0RN75 | Author of the security alert about XAMPP. Thanks to all.
Dan Embury @dan_techcrime
111 Followers 48 Following Director, Solutions Engineering @ Addressable Solving Crime. Making Crypto Safe
CuonNg @CuongNg111
1 Followers 56 Following
Rahul Gill @RahulGill396379
24 Followers 2K Following
Alex Bondoc @bondoc_alex
7 Followers 288 Following
Ahmed @0xAlbana
0 Followers 88 Following
Blacksand Forensics @BlacksandFx
3 Followers 102 Following Digital forensics services for businesses, law firms, and individuals. Where evidence comes to light. Ontario, Canada.
Chris Roberds @ChrisRoberds2
0 Followers 56 Following
Openflaw @Openflaw0
14 Followers 2K Following
Zembtach @zembtach
32 Followers 171 Following
Tetra @dicdicdic20
13 Followers 113 Following
S A @flafee_fluff
0 Followers 3K Following Tesla, Grok 4, and X fan. Goal: Become an X engineer. ♥️♥️ 🇮🇱 🇺🇸 ♥️♥️ Israel 💪💪
Brendan @B54619644
0 Followers 171 Following
Med Dawg @retsdem22
206 Followers 1K Following NVIDIA Threat Hunter and Investigator🕵🏽♂️ | ΩΨΦ 🐶 | NSU Alum🔰| Success Rule: “You are confined only by the walls you build yourself....” 🔑
Nancy H @meryemqwx
25 Followers 979 Following Just a quiet girl who feels glowing and dreams big dreams 🌌
Juanje @ju4nj3
272 Followers 3K Following 44 65 76 65 6C 6F 70 65 72 2C 20 43 48 46 49 20 26 20 43 79 62 65 72 73 65 63 75 72 69 74 79 20 73 70 65 63 69 61 6C 79 73 74
~/.Alvaro @Alvarescu
27 Followers 508 Following
Mendoza @Crox4N6
8 Followers 19 Following
cl0ak_th3_r3ap3r @ghostin43
21 Followers 609 Following
Cyberkryption @cyberkryption
1K Followers 3K Following CERT/CSIRT - Head of Cyber Defence Tweets are my own and do not represent my employer.🇯🇪
Karii @KariiHFSP
19 Followers 563 Following
9MF @n1neMF
81 Followers 5K Following
Cuyler Robinson @nullseye
77 Followers 433 Following
Gaetano @Alk4lo1d
33 Followers 998 Following
herokin @ndza79161
0 Followers 176 Following
Medina Morris @TheRealMedina28
30 Followers 639 Following
Ali Hadi | B!n@ry @binaryz0ne
35K Followers 569 Following DFIR and Adversary Simulation | All posts reflect the views and interests of the person behind this account only |
Florian Roth ⚡️ @cyb3rops
221K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
SANS DFIR @sansforensics
111K Followers 104 Following The world's leading Digital Forensics and Incident Response provider. This feed updates you on latest DFIR news, events, and training.
4n6lady @4n6lady
62K Followers 660 Following #DFIR & #BlueTeam | IR & Threat Detection | #OSINT enthusiast | waiting for HL3 | AWS CIRT - my views are my own
Kevin 🤖🕵️🍺 @KevinPagano3
4K Followers 582 Following 🕵🏼♂️ @stark4n6 🎴 Shiny cardboard collector 🍺 Resident beer drinker
Jake Williams @MalwareJake
149K Followers 2K Following Breaker of software | VP R&D @hunterstrategy | CTI/DFIR | @ians_security faculty | Bookings: jake at malwarejake dot com | GSE #150 | He/him
SwiftOnSecurity @SwiftOnSecurity
410K Followers 9K Following computer security person. former helpdesk.
Dave Kennedy @HackingDave
231K Followers 6K Following Founder @Binary_Defense @TrustedSec Co-Owner https://t.co/HQC75WhdJh. @WeHackHealth Pod. God + Family/Hacker/CSO/USMC/Intel/Fitness. Make the world a better place.
Chad Tilbury @chadtilbury
22K Followers 599 Following Digital forensics and incident response. Ex-AFOSI, Mandiant, and CrowdStrike. SANS Institute Fellow and co-author of #FOR500 and #FOR508 courses.
Heather Mahalik Barnh... @HeatherMahalik
23K Followers 1K Following DFIR, Faculty Fellow & author, #FOR585 #FOR500, wife, mama, researcher, USAF. Trust but validate. Thoughts are mine.
Brett Shavers 🙄 @brettshavers
40K Followers 948 Following Fell off a cliff. Swam with sharks. Dined with hitmen. Hung out with crime bosses. Bought and sold a ton of drugs. How the heck am I still here? #DFIR #USMC 🚓
Phill Moore @phillmoore
9K Followers 3K Following This Week in 4n6 // ThinkDFIR https://t.co/vLyL2sgQsy I might not know much, but I do know how to Google Tweets are mine
Stephan Berger @malmoeb
29K Followers 1K Following Head of Investigations @InfoGuardAG https://t.co/A5lnFAu7eX
DFIR Training @DFIRTraining
18K Followers 412 Following The official DFIR Training account and most complete #DFIR online resource. Managed by @Brett_Shavers.
Magnet Forensics @MagnetForensics
17K Followers 984 Following Official Twitter feed for Magnet Forensics, a global leader in solutions for digital investigations since 2009.
Alexandre Borges @ale_sp_brazil
31K Followers 169 Following iOS, Chrome and Android security researcher | Exploit Developer
Andrew Thompson @ImposeCost
41K Followers 2K Following Posts are attributable to me—not my employer. Leadership, Security, and Intelligence. Former Infantry, HUMINT, Counterintelligence, and Cyberspace Operations.
The DFIR Report @TheDFIRReport
67K Followers 0 Following Real Intrusions by Real Attackers, the Truth Behind the Intrusion
Thomas Roccia 🤘 @fr0gger_
35K Followers 2K Following AI Security x Threat Intel · Threat Researcher · Creator of #Unprotect & #NOVA · Malware Warlock · Python 🧡 · Prev @Microsoft @McAfee_Labs
Garrett Duchesne @COBreck243
38 Followers 2 Following Principal Program Manager @ Microsoft | Windows Hardware Program | Hardware Dev Center
Scott Hanselman 🌮 @shanselman
332K Followers 10K Following VP, Member of Technical Staff @ MSFT/GitHub - Code, OSS, STEM, Beyoncé, T1D, #DevRel YouTube/TikTok and listen to the @Hanselminutes tech podcast
Jeff Geerling @geerlingguy
92K Followers 5K Following Father, author, developer, maker. Sometimes called "an inflammatory enigma". #stl #ansible #k8s #raspberrypi #crohns #ostomy
BostonSecurityMeetup @securitymeetup
822 Followers 148 Following Monthly meetup in Boston area for Hackers and Infosec Professionals. https://t.co/RWP4XzM162
RetroTech Chris @RetroTechChris
9K Followers 183 Following IBM PC compatible retro tech enthusiast who likes trying out unique retro experiments!
Mark Baggett @MarkBaggett
10K Followers 840 Following Course Author SEC573/SEC673, SANS Faculty Fellow, GSE #15, Founding @AugustaISSA President, @BSidesAugusta, Redeemed,CISO,developer,net/sys admin,soldier
Marcus Guevara @MGuevara224
653 Followers 604 Following Dad of 7 - 1 in Heaven. Director of Sec Svc @Recon_InfoSec. Author of #HackingTheology. SANS #FOR508 Instructor. Former @USCG CPT and @DHSgov Hunt/IR team lead
Noot Noot @nootnoot4n6
571 Followers 456 Following Founder, Principal Investigator @dragoneyeintel | Digital Forensics Examiner @Hexordia
bluemonkey4n6 @bluemonkey4n6
266 Followers 43 Following Linux is fun, powerful and great for Digital Forensics/Incident Response. Check my YouTube and join me in exploring the ever expanding world of #Linux and #DFIR
Shanholo @ShanHolo
2K Followers 367 Following Another blue team member…..#CSIRT #DFIR #Malware #4n6 #ThreatIntel and following the white rabbit...
Erik Kristensen @esotericmeans
432 Followers 1K Following Veteran, Geek, Gamer, Father, Engineer, Developer, DevOps, DFIR // Director of SROC @SANSInstitute // Opinions are my own and not that of my employer.
Ladislav B @ladislav_b
389 Followers 162 Following Malware Analysis & Reversing, Network DFIR, Threat Hunting, Threat Intelligence, Trainings, Conferences. Tips&tricks: @malwarelab_eu Opinions are my own. @ESET
MalwareLab @malwarelab_eu
3K Followers 268 Following #Malware Analysis, #DFIR, Computer #Forensics, Incident Response, #ThreatIntel, #OSINT, #CyberSecurity Tips, Tricks, Tools and Trainings by @ladislav_b
Chris Beckett @cbecks_2
810 Followers 2K Following Infosec and the Green Bay Packers. Interested in all things DFIR, Detection Engineering, Purple, and CTI. Opinions are mine, certainly not those of my employer.
Malwar3Ninja | Threat... @Malwar3Ninja
4K Followers 3K Following Malware Hunter | ⚡🆓Threat Intelligence: @threatviewio | Cyber Defense | DFIR | Views are personal | Retweet≠endorsement | 🍺🥃
billyhaze @billyhaze
576 Followers 2K Following Chestnut Hill College, DFIR / Cybersecurity, High Stakes Fantasy Player @[email protected]
Stef Rand @techieStef
2K Followers 435 Following Senior Intelligence Analyst @RedCanary! Former DFIR @Mandiant, former @NetworkDefense intern. Psychology nerd. When I am not computering, I go outside and play!
GroupIB_DFIR @GroupIB_DFIR
457 Followers 48 Following @GroupIB's #DFIR team. First-hand insights from battle-tested incident responders
Saudi Incident Respon... @SaudiDFIR
9K Followers 180 Following Saudi cybersecurity research group . We do not represent any official gov entity! Managed by @mohdmintakh
James Chappell @jimmychappell
2K Followers 2K Following Formerly Founder at Digital Shadows. Sporadic tweeter, Digital Risk. Interests AI, DFIR, CTI, OSINT + infoSec. ❤️music and Astro
Aura @SecurityAura
6K Followers 676 Following GCIH, GCFE, GDAT | DFIR, TH, DE | @CuratedIntel DFIR https://t.co/BMWUwziTLh https://t.co/MmX2YNVqdk https://t.co/R20zseQfLk
Max_Malyutin @Max_Mal_
13K Followers 305 Following Threat Researcher, Blue Team, DFIR, Malware Analysis, and Reverse Engineering. “⚔️What do we say to God of malware, Not today⚔️”
ᴍɪᴄʜᴀʟɪs �... @Cyb3rMik3
4K Followers 3K Following Regional Threat Protection Tech Lead @Microsoft | Former Microsoft MVP | Father 👭/Husband👫/🍷&⌚️ enthousiast/Explorer ✈️ | Views my own.
Albert Zsigovits @albertzsigovits
2K Followers 2K Following Senior Malware Researcher @VMRay 🤖👾🧬🦠 | #malware #ransomware #dfir #apt #threatintel #threatresearch | Opinions expressed are strictly my own.
Alex/Muldwych @Muldwych
12K Followers 443 Following SOC & DFIR Analyst 🛡️ | Malware Analysis 👾 | Python 🐍 | Aberdeen FC 🔴⚪ Mon the Dons | Star Trek 🖖🏻
ᴡʜᴏɪꜱ @JuhoJauhiainen
3K Followers 550 Following I like DFIR and malware | Founder of HelSec | I do this and that for @disobey_fi @accenture and others | Holder of GSP, OSCP and other abbreviations
Get Your Start in DFI... @GetYourStart
820 Followers 127 Following Get Your Start in DFIR is a non-profit founded by @DFIRDiva with the goals of improving diversity in the DFIR field and providing scholarships to those in need.
cog @Jason_DFIR
81 Followers 350 Following
Supriya & 🐆 @supg0x80
950 Followers 622 Following (DFIR) Security Engineer @ AMZN | Passionate about #dfir and #cloudsec | @MidAtlanticCCDC 2017 | 🤍Researching/Learning | (she/her) Opinions = mainly my 😸’s
Razor @RazorEQX
3K Followers 585 Following Speaker @DerbyCon || OSINT || #DFIR || Pentester || US Army Ranger 1/75th || Malware Reverse Engineer || Malware Hunter @malwarebytes
Stroz Friedberg DFIR @StrozDFIR
326 Followers 11 Following Stroz Friedberg, a LevelBlue company, delivers intelligence-driven digital risk management with expert-led services designed for adaptive resilience.
Mattison Schuch @MittenSec
526 Followers 1K Following Cybersecurity fanatic! 💾 DFIR 👾 Malware Reversing 🔎 Threat Hunting @TheDFIRReport member
Blue Team News @blueteamsec1
56K Followers 9K Following The cybersecurity home for the latest #BlueTeam, #DFIR, and #ThreatHunting news and tools.
Carlos Gallo @GalloDu
811 Followers 2K Following #DFIR & #PeríciaForense 🔎 | #DFIRFit 🧗♂️ & Montanha ⛰️ | #Corinthians ⚽️ | TV & Cinema 🎥 | Pelúcia 🐈 | *Opiniões próprias
Simson Garfinkel @xchatty
2K Followers 2K Following Computer scientist & journalist, specializing in AI, privacy, ethics, big data, usability and security. My opinions here. ORCID 0000-0003-1294-2831
Lennaert @lennaert89
2K Followers 3K Following Follow for #infosec #hacking #osint #dfir #bugbounty! | Head Triage @intigriti | ex. @zerocopter | Also do things at @divdnl @hacknotcrime @OrangeCon_nl
skrappy0x4a @skrappy0x4a
420 Followers 2K Following Lead on Cyber Defense | GWOT | Dad | НОРД | 🏍| ◧◧◧ | 🌲
Moutaz Alsheikh @malshiekh
228 Followers 2K Following DFIR | Threat Hunter | Cyber Threat Intelligence | OSINT| ISO27k Standards . 🥷合気道施術者
Haus @sokre_haus
82 Followers 183 Following DFIR trainer and investigator. All in computers, forensics, hacking, crypto, mobile, drone, car, scripting stuff 🤖
Brandon_E @Brandon_E_8630
281 Followers 183 Following Video forensics examiner, researcher, trainer. In the words of Brothers Osborne “I’m good for some, but I’m not for everyone....” #DFIR #truthinvideo
Cody Bryant @cody_bryant34
269 Followers 566 Following Director of Product @MagnetForensics, extreme sports junkie, tech nerd and proud father. All views are my own.
Brad Garnett @brgarnett
1K Followers 378 Following Founder & Principal | Commercial Pilot | Flight Instructor | Former @TalosSecurity #DFIR biz leader | @TEDx Speaker --Opinions expressed here are mine alone.
Belkasoft @Belkasoft
11K Followers 431 Following Belkasoft is a global leader in digital forensics technology, known for their sound and comprehensive forensic tools used in 130+ countries all over the world.















