Tomás F. @tomasfg
... on construction ... 127.0.0.1 Joined January 2009-
Tweets423
-
Followers77
-
Following461
-
Likes56
2026 reality check on privacy The FBI openly buys your location history from data brokers, no warrant needed, just cash for commercially available tracking data. Confirmed in Senate hearings this year. Meanwhile, massive breaches keep dumping SSNs, health info, and addresses (CarGurus: 12M+ users; others hitting millions monthly). Privacy teams are shrinking while AI quietly infers your health risks, politics, and future behavior from scraps of data. We now have more “privacy controls” than ever, toggles, consents, laws in dozens of states and the EU AI Act. yet actual privacy is collapsing. Smart devices listen. Cameras scan faces in public. Your data trains models you never consented to. This isn’t conspiracy. It’s policy, economics, and apathy meeting at scale. Governments and corporations treat personal information as a resource to buy, sell, or weaponize. Once your digital shadow exists, retracting it is nearly impossible. The dangerous shift: We’ve accepted constant surveillance as the cost of modern life. Every “allow” click normalizes it further. If privacy becomes a luxury only the paranoid or wealthy can afford, the rest of us live in a monitored panopticon by default. Concrete steps still matter: Use signal/encrypted tools where possible, minimize app permissions, support actual privacy-by-design defaults instead of theater, and question tools that demand your life story to function. But individual habits won’t fix systemic collection. Without real pushback, stronger defaults, limits on inference and brokering, accountability for buyers like law enforcement, privacy doesn’t “erode.” It gets deliberately dismantled one dataset at a time. What specific tracking have you noticed getting worse this year?
Ladies and gentlemen - here is a Notepad* RCE you've always wondered whether it was possible. msrc.microsoft.com/update-guide/v… *Well, the modern, AI-powered one.. Who could have thought that with more features you bring more bugs.
In our new blogpost, @noraj_rawsec shows how one can abuse Unicode characters to bypass filters and abuse shell globbing, regexp, HTTP query parameters or WAFs when #MySQL strict SQL mode is off 👇 synacktiv.com/en/publication…
The S is for Security. How to use WinRMS as a solid NTLM relay target, and why it’s less secure than WinRM over HTTP. By @Defte_ Writeup: sensepost.com/blog/2025/is-t… PR to impacket: github.com/fortra/impacke… Demo: youtu.be/3mG2Ouu3Umk
NetExec v1.4.0 has been released! 🎉 There is a HUGE number of new features and improvements, including: - backup_operator: Automatic priv esc for backup operators - Certificate authentication - NFS escape to root file system And much more! Full rundown: github.com/Pennyw0rth/Net…
GOADv3 🏰 is almost ready ! You can now try the v3-beta version 🥳 📂 Repository : github.com/Orange-Cyberde… 📖 Documentation : orange-cyberdefense.github.io/GOAD/ What's new ? 🧵👇
Find every sync users without privileged roles who own a privileged group : MATCH p = (u:AZUser)-[r:AZOwns]->(g:AZGroup) WHERE NOT (u)-[:AZMemberOf|AZHasRole*1..]->(:AZRole) AND (g)-[:AZMemberOf|AZHasRole*1..]->(:AZRole) AND u.onpremisesyncenabled RETURN p You'll thank me later
#FakePotato (CVE-2024-38100) post is out! Check out the short write-up on this unexpected vulnerability 😅 decoder.cloud/2024/08/02/the…
Excellent analysis from Santander's security team on fake SSH (CVE-2024-6387) exploits. The Wild West of Proof of Concept Exploit Code (PoC) santandersecurityresearch.github.io/blog/sshing_th…
One year ago, @T00uF and I did a talk at @_leHACK_ about DPAPI and #DonPAPI. Well, we've completely rewritten it to add a lot of new features. DonPAPI 2.0 available now 🚀 ▶️github.com/login-securite…
🎟️ ¡Las entradas para el Congreso Navaja Negra están a punto de salir a la venta! El 4 de junio, asegura tu lugar y aprovecha los DESCUENTOS EARLYBIRD para la edición Nº 12. ¡No te quedes fuera! #NN12ED 🖤💛
Goad small update ! 🏰 🥳 i added scenarios to complete some compromise path. - files with secrets in shares - gmsa account - asrep account on essos - write dacl on container - unconstrained delegation on user - protected user - sensitive user - ppl github.com/Orange-Cyberde…
Excellent research work for anyone interested in Wi-Fi security MiTM by exploiting cross-layer interactions between WPAs and ICMP csis.gmu.edu/ksun/publicati… #wifi #infosec #cybersecurity #wireless
Releasing a complete rewrite of "Understanding Windows Lateral Movements" - 71 more slides - Better explanations - Less errors and bad assumptions If you liked the 2019 version, you should check this one out Available at attl4s.github.io
Major GOAD refactor and update today 🥳 Add RDP bot user Add Webdav support Ansible inventory was refactored, you can now find it on the lab folder (ad/sevenkingdoms.local/inventory). And now you can easily build your own lab from the template : github.com/Orange-Cyberde…
Mindmap upgrade version 2023_02 thx to @Jenaye_fr and @DaahtK for the help. Full quality here : orange-cyberdefense.github.io/ocd-mindmaps/i…
(1/5) New kid in town 🔓 Following last week sudden regain of interest in KeePass trigger system abuse, I decided to prepone the release of KeePwn: an Impacket-based script dedicated to KeePass discovery and secret extraction for red teamers! github.com/Orange-Cyberde…
Looking for AD pentesting methodology ? Start with the great blogpost series from @M4yFly, a must read !
Goad writeup part 11 is up. This one is about acl/ace exploitation. mayfly277.github.io/posts/GOADv2-p…
Goad writeup part 11 is up. This one is about acl/ace exploitation. mayfly277.github.io/posts/GOADv2-p…
In this post @Sant0rryu shows an attack chain where you can abuse ADCS to escalate from a Virtual Account / Service account to local SYSTEM. As homage to other *potato tools, it could even be called CertPotato. 👀 sensepost.com/blog/2022/cert…
Ossama @0x3lk
14 Followers 56 Following Just doing offsec stuff @Orangecyberdef | Maldev & Binary exploitation | Tweets are my own
Natalie Nguyen @0jSujb6AE4NTB
21 Followers 1K Following Ex-Wall Street pro’s top stock picks. Free, weekly, high returns. Join today: @nahuel321rojas
James Atack | @jamesa... @JamesAtack
450 Followers 897 Following Cyber defender with an offensive name. Managing your attack surface CTO @onyphe Opinions : all mine Special skill : machine empathy Gone from here
Varys @_ChezDaniela
3K Followers 6K Following Somewhere in between foodie, wine lover and security geek Python 💙|Personal tweets|GSNA/GPEN/GCFR | cancer survivor
Shoughpsosh @shoughpsos25364
75 Followers 7K Following Behind every successful woman is a team of other successful women.
@belette_timorée @belettet1m0ree
118 Followers 286 Following ✒️tester 🏃🏾♂️Run.. Run with It!! Pick up Something Start to run with it!🏃🏾♂️
French_AMC_APE @YassineCorse_
76 Followers 419 Following 🇫🇷 French 🇫🇷 - IT Manager and Owner of organic store. I like the #AMC stock, 🍋 and 🍌
Thomas Seigneuret @_zblurx
3K Followers 403 Following Red Teamer & Security researcher Maintainer of #NetExec, #DonPAPI, dploot, certsync, and all the stuff on my github repo bsky: https://t.co/zISpgvDSWc
Hocine @Sant0rryu
489 Followers 524 Following
Lorenzo Tecnohervás @tecnohervas1
16 Followers 125 Following
Buffy @Buffy45560107
70 Followers 5K Following 💞💟 My name is Buffy!🐰 Heге is mу album and my naked pics!)) Vote fоr mе, babу:💙 https://t.co/q8tNTH4J10
Aurélien Chalot @Defte_
4K Followers 484 Following Hacker, sysadmin and security researcher @OrangeCyberdef 💻 Calisthenic enthousiast 💪 and wannabe philosopher https://t.co/SqDDhIGGGh 📖 🔥 Hide&Sec 🔥
Mayfly @M4yFly
7K Followers 790 Following Former Dev and DevOps| Pentester and red teamer at orange cyberdefense | OSCE³| Tweet are my own| discord: m4yfly
Geektle @_geektle
102 Followers 859 Following Algo épico se acerca, nada sera igual después de que Geektle haya llegado. #Juegosdemesa, #wargames, #juegosdecartas, #comics y libros inundaran tu casa.
The Hackers Garage @Hackers_Garage
1K Followers 750 Following Monthly subscription box with assorted gadgets and DIY hacking projects. Check out our website to know more about us!
CarmenT @CarmenTeresita
20 Followers 2K Following
Giovanni Conto' @ContoGiovanni
49 Followers 280 Following
Ndiaye Cheikh @ndiayecheikh16
18 Followers 191 Following
Rubén Asensio Díaz @Rub_Asensio
404 Followers 1K Following Periodista en constante ebullición, madrileño de nacimiento, zaragozano de adopción.
María Rojo @mariairojo
558 Followers 349 Following CEO y Fundadora de @EnthecSolutions 🤖 | Una de las liantes de @WeAreCyberGirls | Hacker a ratos libres 😈 |
Carlos García @cg_sanchez
857 Followers 1K Following Researching on security IT. #teacher #dev #fotografía Deportista y apasionado del mundo de las emergencias.
Hack&Beers @hackandbeers
23K Followers 15K Following Ponencias gratuitas para interesados en la seguridad informática. Ambiente distendido y acompañando las charlas con unas Beers. ¡Únete a la comunidad H&B!
Final Contact @FinalContactSim
26K Followers 73K Following Final Contact Space Simulator Fighter Adventure Game Coming to Steam, IOS, Android, WindowsPhone, and PC Platforms
dolar blue hoy @dolar_blue_hoy
41 Followers 701 Following
OJE_TV @OJE_TV
199 Followers 68 Following Sigue las noticias de la OJE en OJE TV. Perfil de la Escuela Nacional de Radio, TV. y Nuevas Tecnologías de la OJE
Gaspar Antonio Torre @gtorres522
3 Followers 36 Following
OSTEO EVENT @OSTEO_EVENT
117 Followers 137 Following OSTEO EVENT, l'Ostéopathie au cœur de l'événement.
Gemma #IP @gemmademarzo
5K Followers 3K Following Contando mis experiencias como piloto y como mamá de #pequepiloto. Viajando por el mundo,aprendiendo de todos,☁️ retratando nubes
Elie A. @elieah
530 Followers 553 Following Lead Data Science - Data Wizard and #RecSys geek full-time #DataScience #MachineLearning #AI #BigData @ApacheSpark #Scala @elastic Evangelist
wattaa @wattaa911
36 Followers 122 Following
Ante Bellum Films @AnteBellumFilms
91 Followers 222 Following we are directors. we are based in paris. we are under the gorilla's command and we love to work with people who start their activities and/or careers.
juguetetradicional @JuguetesT
687 Followers 2K Following Tienda online de juguetes y juegos de mesa de gran calidad. ¡Empieza la diversión!
Microsoft SwiftKey @SwiftKey
182K Followers 106K Following Smart tech for fast & easy typing. Android: https://t.co/dOxKaZhSx0 iOS: https://t.co/yUyMVBZfh4 Founded in 2008, SwiftKey was acquired by Microsoft in 2016.
Christophe Prieuur @twytof
660 Followers 601 Following data, algorithms, code, networks… people. Cela dit, depuis la séquence covid, musk, 7 octobre, je ne viens plus trop par ici…
BlackRoomSec @blackroomsec
40K Followers 505 Following Hacker. Former CISO, Cybersecurity Lead for DA's Office. My book on cybersecurity compliance: https://t.co/luimEfAj83
Ossama @0x3lk
14 Followers 56 Following Just doing offsec stuff @Orangecyberdef | Maldev & Binary exploitation | Tweets are my own
Orange España @orange_es
158K Followers 31K Following Cuenta oficial de Twitter de Orange España. Si necesitas ayuda te atendemos: L-D de 9h. a 23h.
ᴅᴀɴɪᴇʟ ᴍɪ... @DanielMiessler
158K Followers 1K Following Building AI that upgrades humans and companies. - PAI: https://t.co/16YCTsCgOu - Human 3.0: https://t.co/PpczU49ANh - Surface: https://t.co/mDwZirfm0A
Steffen Buck @buck_steffen
136 Followers 153 Following
Florian Roth ⚡️ @cyb3rops
221K Followers 3K Following Head of Research @nextronsystems #DFIR #YARA #Sigma | detection engineer | creator of @thor_scanner, Aurora, Sigma, LOKI, YARA-Forge | always busy ⌚️🐇 | vi/vim
Peter Girnus 🦅 @gothburz
191K Followers 590 Following The Cyber Populist | Hacker. Writer. Heretic. | Reverse engineering narratives, systems, and power. Holding the pen.
Hope Walker @Icemoonhsv
1K Followers 170 Following Senior Security Researcher at @SpecterOps. All opinions are my own.
LaurieWired @lauriewired
155K Followers 292 Following researcher @google; serial complexity unpacker; https://t.co/Vl1seeNgYK ex @ msft & aerospace
Waterbomb_Official @waterbomb_seoul
17K Followers 11 Following WATERBOMB SEOUL 2026 📅2026.07.24(FRI)-07.26(SUN) 📍KINTEX OUTDOOR GLOBAL STAGE 🎤 Top artist performances & 하이라이트 콘텐츠 🔥 팔로우하고, 워터밤을 먼저 만나보세요!
Joe Mondloch @jmkfoofus
16 Followers 7 Following
Pantomima Full @Pantomima_Full
425K Followers 362 Following Hemos perdido la contraseña de @PantomimaFull. No conseguimos recuperarla. • Contacto: [email protected]
Emeric Nasi @EmericNasi
5K Followers 422 Following CyberSecurity researcher and founder of BallisKit. I have a passion for all infosec subjects especially redteam and writing offensive tools!
Gabs @constrainterror
6K Followers 1K Following Tweeting security. Hardware Hacking enthusiast. ES | ENG ⚡️Crafting things on @glitchyhw⚡️
Markus Wulftange @mwulftange
3K Followers 207 Following Principal Security Researcher and Pâtissier at @codewhitesec
OtterHacker @OtterHacker
8K Followers 77 Following Professional redteamer and malware development enthusiast ! I will share some tips and experiences. Look at my work here : https://t.co/cxLBvW7pcI
Adrien Linuxtricks �... @_adriend_
6K Followers 217 Following Sysadmin + Formateur LINUX - Contributeur : @fedora @AlmaLinux - Youtube https://t.co/sWk2e3cvMM - Partenaire Twitch https://t.co/iGqCnWXmVv - BSky https://t.co/XtY6NM6TXK
DEFCON GROUP Paris @dcgparis
2K Followers 11 Following A reboot of the DEFCON GROUP Paris group. Free bimonthly meetups. If you would like to give a talk, contact us here: [email protected]
Jayson E. Street 💙... @jaysonstreet
67K Followers 402 Following ➡️Hacker - Helper - Human ⬅️ . . . Also Author. Speaker & Scientific Hooligan! A bona fide teachable moment for hire! he/him
James Atack | @jamesa... @JamesAtack
450 Followers 897 Following Cyber defender with an offensive name. Managing your attack surface CTO @onyphe Opinions : all mine Special skill : machine empathy Gone from here
Fox_threatintel @banthisguy9349
16K Followers 286 Following Just a person who is against cyber crime and dictators like Putin
Varys @_ChezDaniela
3K Followers 6K Following Somewhere in between foodie, wine lover and security geek Python 💙|Personal tweets|GSNA/GPEN/GCFR | cancer survivor
Xavier Tytelman @PeurAvion
92K Followers 2K Following Ex aviateur militaire, consultant aéronautique & défense, youtubeur et double diplômé @ihedn @enacfrance. Fan d'#OSINT kaki et appeau à trolls.
Ignacio Navarro @IgNavarro1
384 Followers 319 Following
Joytide @j0y71d3
196 Followers 502 Following French engineer sustaining a non-healthy and unrequited love for cybersecurity. Pentester @ Cogiceo. Founder @ DaVinciCodeCTF.
David | Real Estate &... @DavidRealStocks
33K Followers 427 Following Economía | Actualidad | Inversión inmobiliaria | Construyendo https://t.co/dsc6J3ikA8
C @CemCARFIL
4K Followers 3K Following Ex#DSI #CollTerr (@Dammarie_LesLys) #Radioamateur F4CGU TB1LQV KM4LQV #SécuritéCivile
1377 High-yield Nukes @buptsb
2K Followers 1K Following
lesptitskipik @lesptitskipik
2K Followers 170 Following Les P’tits Kipik se donne pour objet de mettre en œuvre des actions de nature à promouvoir la sauvegarde des hérissons
Matthias Kaiser @matthias_kaiser
7K Followers 1K Following Vulnerability Researcher. 0xACED. Ex-Apple. Now @matthiaskaiser.bsky.social
SinSinology @SinSinology
13K Followers 735 Following Pwn2Own 20{22,23,24*2,25*3,26*2}, i look for 0-Days but i find N-Days & i chase oranges 🍊
dosdude1 @dosdude1
19K Followers 46 Following Apple Enthusiast, iOS and macOS Software Developer, enjoy collecting, repairing, and upgrading Macs and other Apple products.
🦔 Erinaceus France @ErinaceusFrance
11K Followers 444 Following Compte fermé. Rendez-vous sur nos autres réseaux sociaux : https://t.co/onYdvwFZzE https://t.co/Qf7d5PoRQw Merci !
Thales Cybersecurity ... @Thales_Cyber
12K Followers 5K Following We ensure cybersecurity of our customers to guarantee their digital sovereignty and build a future we can all trust.
Cybermalveillance.gou... @cybervictimes
47K Followers 136 Following Compte officiel du dispositif national d'#assistance aux #victimes de #cybermalveillance et de #sensibilisation aux risques #numériques - GIP #ACYMA 🇫🇷
SEKTOR7 Institute @SEKTOR7net
17K Followers 350 Following Homo Aptus. Vincit qui se vincit - Publilius Syrus. Consulting, Training, Technology, Cyber domain, and more... @x33fcon founder.



































