reversebrain @reversebrain
Penetration Tester | Red Team Operator | Incident Response Operator | CTF player with @mhackeroni reversebrain.github.io /dev/null Joined March 2012-
Tweets593
-
Followers2K
-
Following581
-
Likes2K
New writeup from @_specters_ and I: we're finally allowed to disclose a vulnerability reported to Kia which would've allowed an attacker to remotely control almost all vehicles made after 2013 using only the license plate. Full disclosure: samcurry.net/hacking-kia
Ever heard about cross-queries? 👀 During a recent penetration test, I uncovered the powerful capabilities of cross-queries in PostgreSQL. Discover how this feature can be exploited to dump tables in complex scenarios: reversebrain.github.io/2024/09/19/Cro…
Firmware 1.0 released! 🔥 What’s new: Apps catalog, JavaScript support, New NFC subsystem, 2X faster Bluetooth, External radio module support and more! 🤩 Read the blog post: blog.flipper.net/released-firmw…
Now that we're all back and caught up on sleep it's @defcon CTF @Nautilus_CTF wrap-up time! 🐚🚩 we managed a great 6th place in a tough competition with conventional pwnage, GenAI-powered spaceships, and LiveCTF duels
And that's it for this year @defcon #CTF: your favorite Italian team got 6th place after 3 intense days of !sleeping. Thanks to the organizers @Nautilus_CTF and all the amazing teams that competed with us in this backdoor-sharing event! See you next year! ♥️ #defcon #defcon32
Some of you may already be aware but due to extenuating circumstances we've made an early award! The 2024 Pwnie for Epic Fail goes to @CrowdStrike for the CRWD2K bug! 🦃
I don't do Windows but here are some (initial) details about why the CrowdStrike's CSAgent.sys crashed Faulting inst: mov r9d, [r8] R8: unmapped address ...taken from an array of pointers (held in RAX), index RDX (0x14 * 0x8) holds the invalid memory address @_JohnHammond
Job 1 in repairing CrowdStrike.. get access to computer.
This is the reality for IT Admins hit by @CrowdStrike hope they send an invoice for their time and downtime.
🔥 XSS on any website with missing charset information? 😳 Attackers may leverage the ISO-2022-JP character encoding to inject arbitrary JavaScript code into a website. Read more in our latest blog post: sonarsource.com/blog/encoding-… #appsec #security #vulnerability
My latest blog about my discovery for Evernote Client All-platform RCE via PDF.js font-injection to preload.js exposed ipcRenderer-BrokerBridge-boron.actions bypassing Electron's nodeIntegration | context-isolation; Enjoy reading! 0reg.dev/blog/evernote-…
JULIAN ASSANGE IS FREE Julian Assange is free. He left Belmarsh maximum security prison on the morning of 24 June, after having spent 1901 days there. He was granted bail by the High Court in London and was released at Stansted airport during the afternoon, where he boarded a plane and departed the UK. This is the result of a global campaign that spanned grass-roots organisers, press freedom campaigners, legislators and leaders from across the political spectrum, all the way to the United Nations. This created the space for a long period of negotiations with the US Department of Justice, leading to a deal that has not yet been formally finalised. We will provide more information as soon as possible. After more than five years in a 2x3 metre cell, isolated 23 hours a day, he will soon reunite with his wife Stella Assange, and their children, who have only known their father from behind bars. WikiLeaks published groundbreaking stories of government corruption and human rights abuses, holding the powerful accountable for their actions. As editor-in-chief, Julian paid severely for these principles, and for the people's right to know. As he returns to Australia, we thank all who stood by us, fought for us, and remained utterly committed in the fight for his freedom. Julian's freedom is our freedom. [More details to follow]
📢 Calling all Sponsors! Get mhackeroni to the DEF CON 32 CTF finals 🚩🍝 Would you like to be a part of moving the kitchen to Las Vegas this summer & secure a spot for your logo in our highly-demanded t-shirt? Contact us! Your favourite Italian Acheri™️ need your help!
Windows Defender doesn't like it when you name your Hyper-V VM "Invoke-Mimikatz"
The most sophisticated exploit we've ever seen. Thank you to @wdormann for bringing this to our attention. This is basically Stuxnet. 2.0
the xz sshd backdoor rabbithole goes quite a bit deeper. I was just able to trigger some harder to reach functionality of the backdoor. there's still more to explore.. 1/n
This new book has finally arrived. Thank's to @nostarch as well as @billpollock for making it happen as well as @Lee_Holmes as my tech reviewer.
Btw, you don't need a Flipper Zero to "hack" dumb radio protocols. The piece of wire is enough. Check out how to receive and decode 433MHz radio signal just with a PC sound card.
WHY I LEFT THE "HACK THE BOX" COMMUNITY... a thread about "dying a hero vs. living long enough to become the villain". 1/8
Gabriele @Gabry89
5K Followers 4K Following Read-only account • Follow me on https://t.co/Pnx3zyQtrQ 🦋
Andrea (Drego) Draghe... @AndreaDraghetti
7K Followers 3K Following aka Drego. Head of Cyber Threat Intelligence at @D3LabIT! @PhishingArmy, #meioc is my projects and @backbox_org dev! My passions are #F1 and #Running!
David Puente @DavidPuente
63K Followers 2K Following Fact-checker journalist. Deputy editor @Open_gol @OpenFactCheck (@factchecknet verified signatory) https://t.co/cqolXJidOU
John Smith @JohnSmithhmw8
5 Followers 272 Following
Khaing Myo Lin @KhaingMyoLin8
2 Followers 300 Following
fjsqicksap @fjsqicksap
0 Followers 137 Following
Monica Garcia @MonicaGarc91639
0 Followers 123 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/ZfeIqRW1wH
Look at my homepage @cole_meyer43343
21 Followers 3K Following Virtual currency game platform, deposit and get 50% bonus, recruit agents to earn 100,000 USDT per month, contact us https://t.co/j3jdAz4niL
Chase Fitzgerald @AsymmMeasures
77 Followers 633 Following Research Math | Neuro-Cognitive Warfare | Intelligence https://t.co/fv0KRfwMh0
. @offthewidow
1 Followers 79 Following
Chris Isaias @_call_gate
145 Followers 3K Following Penetration Testing & Reverse Engineering. . . Phd(c), Msc (RHL), NATO, ESDC & RIPE fellow, IEEE snr, FIRST liaison, CISSP, CRTO, PNPT
Blawplaw @BlawplawBz7oz
0 Followers 116 Following
Gabriele Biondo @gb700823
152 Followers 639 Following CISSP, CISM, ITIL, OPST, ISO 27 Lead Auditor, and cyberpunk inside. Interested into ICTSecurity, Math, and Sushi.
Axel @antrax090
1 Followers 128 Following
xss0r @xss0r
7K Followers 3K Following xss0r Deploying an alert box in a web app is like having a tiny pop-up comedian shout 'Surprise!' whenever you least expect it! #xss0r #ibrahimXSS #Blindxss0r
Andrea Braschi @AndreaBraschi
145 Followers 1K Following
rachit @rach1tarora
316 Followers 2K Following
uguxbjf952 @uguxbjf952
1 Followers 116 Following
الله اكبر @joj1996jojo
3 Followers 493 Following
j0wzin @j0wzin
1 Followers 73 Following
anonymix @anonymix139841
0 Followers 270 Following
ch @chybeta
14K Followers 5K Following open to bug bounty collaboration @HackenProof Security Researcher Just dm https://t.co/VVU1OV5yz6
Paolo Stagno (VoidSec... @Void_Sec
5K Followers 2K Following Director of Research @Crowdfense. Windows Vulnerability Researcher and Exploit Developer, ex-@XI_Research
Irene @womack_irene36
260 Followers 3K Following
j@ser18 @jser181
19 Followers 89 Following
Tayfun Yelim @TayfunYelim
200 Followers 1K Following Vulnerability Researcher | Telco Security | @METU_ODTU | @marmara1883
Frans @frans_initroot
1K Followers 2K Following Security fanatic... COO @ Risk X Opinions are my own and have no affiliation with my employer.
serioton @seriotonctf
856 Followers 285 Following
Martin Mielke @xct_de
6K Followers 939 Following Red Teaming • Vulnerability Research • Exploit Dev • 🇩🇪|🇯🇵
Sergio Mazariego @s3rgiomazari3go
1K Followers 3K Following Security Researcher, I write about Cybersecurity 🛡️, Digital Forensics, Offensive Security and Web 3.0.
︎ @0xocdsec
4K Followers 8K Following ︎ 🏴☠️ 🇪🇺 💚 🇺🇦 | computers & features | 💚 🏴☠️ party | 603,628 km² https://t.co/F5dgX7AEoL
Lorenzo Leonardini @_lorenzo_leo
134 Followers 185 Following Computer scientist, cybersecurity guy, wannabe musician CTF player with @ZenHackTeam and @aboutblankets
Giorgio Campiotti @giorgiofox
1K Followers 997 Following #linux, #security, #hacking, #sdr, #penetrationtesting DM open
Vulnlab @vulnlab_eu
6K Followers 1K Following Labs & Training by @xct_de | You are welcome to join the community @ https://t.co/p5R9zGJYHw Vulnlab is now part of Hack The Box.
Vincenzo @tanuki_no_neiri
137 Followers 2K Following
ch347 @ciccio_bi_
3 Followers 46 Following
Paolo Viale Marchino @MarchinoPa6436
0 Followers 2 Following
syselement @syselement
101 Followers 467 Following Geek 👨💻 | IT & CyberSec Enthusiast 📚 | SysAdmin 💻 | DevOps ☁️
vx-underground @vxunderground
438K Followers 359 Following The largest collection of malware source code, samples, and papers on the internet. Password: infected
Paolo Attivissimo @Attivissimo_me
375K Followers 15 Following Account segnaposto. ATTENTI A IMITATORI E IMPOSTORI: questo è il mio unico account su X. Autenticazione: https://t.co/SuhmGdcCW3
Matteo G.P. Flora @lastknight
35K Followers 2K Following Narrative #Governance & #AI Safety // Professor Adj, Founder, Investor // On TV and Podcast talking #TechPolicy
cts🌸 @gf_256
67K Followers 982 Following founder and hacker @zellic_io @v12sec @pb_ctf yt https://t.co/nlNai6iQCn
Stefano Zanero @raistolo
19K Followers 2K Following Tinkerer, security geek, recovering entrepreneur, full professor @polimi, frequent flyer, pilot (follow https://t.co/19HknsE6EE). He/him 🏳️🌈
Intigriti @intigriti
209K Followers 667 Following Bug bounty & VDP platform trusted by the world’s largest organisations! 🌍
Lercio.it @lercionotizie
933K Followers 31 Following 🚩Lercio. Lo sporco che fa notizia! (crediti immagini sul sito https://t.co/C4inq6HvhA)
Simone Margaritelli @evilsocket
48K Followers 2K Following Music, cybersecurity, open source and AI • Author of bettercap, pwnagotchi, opensnitch, bleah, legba and a few other things. Chief Architect @ 🥷
Flipper Devices @flipper_net
105K Followers 152 Following A portable multi-tool device in a toy-like body for pentesters and hardware geeks. Buy worldwide here ➡️ https://t.co/n09EKVnYgQ
Gabriele @Gabry89
5K Followers 4K Following Read-only account • Follow me on https://t.co/Pnx3zyQtrQ 🦋
Troy Hunt @troyhunt
249K Followers 1K Following Creator of @haveibeenpwned. Microsoft Regional Director. Pluralsight author. Online security, technology and “The Cloud”. Australian.
Andrea (Drego) Draghe... @AndreaDraghetti
7K Followers 3K Following aka Drego. Head of Cyber Threat Intelligence at @D3LabIT! @PhishingArmy, #meioc is my projects and @backbox_org dev! My passions are #F1 and #Running!
LiveOverflow 🔴 @LiveOverflow
160K Followers 1K Following wannabe hacker... he/him 🌱 grow your hacking skills @hextreeio
MalwareTech @MalwareTechBlog
272K Followers 1 Following Not here anymore. Profiles: https://t.co/sFoOuGmYK2
pwnthem0le @pwnthem0le
1K Followers 35 Following Academic CTF Team - Politecnico di Torino | m0leCon Security Conference & CTF organizers | @aboutblankets
Claudia @signorina37H
6K Followers 375 Following behavioral #cybersecurity & reputation strategist · social engineer · OSINT/SOC/HUMINT · COBOL programmer · nerd · co-founder @ransomNews
Cronache di un Sistem... @ITSquOd
3K Followers 18 Following Un account per trovarli, un account per controllarli, un account per raccontarli, e nel disagio per sempre fissarli. Cerchiamo adepti, ritwittaci.
Antonio Bianchi @anton00b
2K Followers 42 Following Associate Professor at Purdue. Former DefconCTF organizer. Hiring interns/PhDs/PostDocs in Mobile Security/Authentication/IoT/Trustzone/Binary Analysis
Pwnie Awards @PwnieAwards
12K Followers 23 Following An annual awards ceremony celebrating and making fun of the achievements and failures of security researchers and the wider security community.
Dark Web Informer @DarkWebInformer
217K Followers 76 Following One guy. Global cybercrime. Tracked so you don't have to. Ransomware, data breaches, dark web activity, darknet markets, IOCs & emerging threats. Stay informed!
Pwned Labs @PwnedLabs
2K Followers 68 Following Learn the skills to execute and evaluate agentic-assisted cybersecurity workflows across cloud, hybrid and AI-enabled environments. 🔗 https://t.co/184lAzbd09
Dark Web Intelligence @DailyDarkWeb
192K Followers 0 Following We work in the dark to bring clarity to the light.
Frost @fr0s7_
5K Followers 1K Following
HackTricks @hacktricks_live
15K Followers 204 Following HackTricks offers free quality hacking resources in 17 languages: https://t.co/O1TVFk5r9q, https://t.co/0RhWRaaPIm Paid certs by HT-Training: https://t.co/2C0w8pkq6v
Tib3rius @0xTib3rius
73K Followers 658 Following Cybersecurity Content Creator | UwU-Anointed Wapp King | DEF CON Gameshow Host | Ex-Brit | https://t.co/04RRExvxXj (he/him) 🇺🇸 @TheRealC3rul34n is bae 🥰
Charlie Clark @exploitph
5K Followers 1K Following
NiNi @terrynini38514
3K Followers 643 Following Security Researcher at @d3vc0r3 / Pwn2Own Master of Pwn (Toronto 2022) / CTFer @balsnctf
ACE Responder @ACEResponder
18K Followers 227 Following Practice threat hunting & detection engineering in a real SIEM with real attacks. Join us and become the best.
j00ru//vx @j00ru
37K Followers 821 Following (Mostly) Windows hacker & vulnerability researcher. Google Project Zero. @DragonSectorCTF
Matteo Rizzo @_MatteoRizzo
3K Followers 587 Following Not used anymore, you can find me on Mastodon at @[email protected]
Andrew @4ndr3w6S
3K Followers 3K Following Detection Engineering @HuntressLabs | Prev. Practice Lead, TAC (Purple Team) @TrustedSec | @SpursOfficial Super Fan - COYS!
Calle Svensson @ZetaTwo
7K Followers 722 Following Security Engineer @ XTX. MSc in eng. physics & CompSci, dev & gamer. ❤️ music & long distance running. Wanna do a PhD sometime. Same U/N on all other sites
Microsoft Security @msftsecurity
344K Followers 321 Following Be first to know about AI, threats, and new tools. Quick hits, expert tips, and real-time security news—follow for smarter, safer ops.
Traceix @usetraceix
17K Followers 407 Following We eliminate blind trust in threat intelligence | Operated by @PerkinsFund
Will Schroeder @harmj0y
49K Followers 972 Following Researcher @SpecterOps. Coding towards chaotic good while living on the decision boundary.
Brandon Fisher @Shad0wCntr0ller
205 Followers 259 Following Security Consultant @ Rapid7 Likes/comments/posts from this account does not represent my employers views.
SEKTOR7 Institute @SEKTOR7net
17K Followers 350 Following Homo Aptus. Vincit qui se vincit - Publilius Syrus. Consulting, Training, Technology, Cyber domain, and more... @x33fcon founder.
MalDev Academy @MalDevAcademy
20K Followers 8 Following Providing specialized, module-based security training and resources designed for cyber security professionals
Perri Adams @perribus
7K Followers 987 Following @Dartmouth ISTS Fellow & @SAISHopkins Adjunct Prof., inter alia. Former @DARPA, @DEFCON CTF, etc. @DistrictCon, @hexacon_fr, @LABScon_io CFP Review Boards
DEF CON A&E @defcon_music
4K Followers 119 Following Official twitter account for @defcon's Arts & Entertainment Team // https://t.co/nLQ35TUMWP We do the official parties!
No Security @nos3curity
364 Followers 1K Following Offensive AI & Red Team @Google @Mandiant | OSWE, OSCP, OSEP
Natalie Silvanovich @natashenka
45K Followers 2K Following Tamagotchi Hacker. Google Project Zero. She/her.
mpgn @mpgn_x64
18K Followers 236 Following Flibustier du net ̿ ̿̿'̿'\̵͇̿̿\=(•̪●)=/̵͇̿̿/'̿̿ ̿ ̿ ̿ Podcast Hack'n Speak @hacknspeak / https://t.co/GyACSFg9mw
RedTeamVillage @RedTeamVillage_
37K Followers 1K Following Red Team Village | Join us on https://t.co/ILZhRFw4Y7 . Check our next events at: https://t.co/fJwIUSTI16
Cristian Assaiante @cristianrichi3
221 Followers 268 Following PhD student in Engineering in CS @DIAGsapienza | CTF player @TheRomanXpl0it/@mhackeroni | Trainer @cyberchallengIT | Guitarist | Compilers | Rock Climber |
Shellphish @shellphish
7K Followers 46 Following Capture the Flag Team from UC Santa Barbara's SECLAB and Arizona State University's SEFCOM. DARPA Cyber Grand Challenge 3rd Place. Phrack author. Let's hack!
Carola Frediani @carolafrediani
16K Followers 4K Following Infosec Technologist @hrw. Former global security @Amnesty. @guerredirete cofounder. Last book: #Cybercrime. @[email protected]
justCatTheFish @justCatTheFish
3K Followers 54 Following Polish ctf team. Captain: @disconnect3d_pl Vice: @haqpl https://t.co/pJy694x44H
hxp @hxpctf
2K Followers 0 Following hxp - CTF Team This account is inactive. Follow hxp at https://t.co/RdKo3BWaKi
Vulnlab @vulnlab_eu
6K Followers 1K Following Labs & Training by @xct_de | You are welcome to join the community @ https://t.co/p5R9zGJYHw Vulnlab is now part of Hack The Box.







































