-
Tweets401
-
Followers2K
-
Following250
-
Likes248
@execveat The original Potato vulnerability for local privilege escalation actually worked for quite a while before it got fixed! It was mostly just the implementation of some of @tiraniddo's research that had been marked "WontFix" by MS.
@shortxstack Is that graphic available anywhere? It's really cool.
@tqbf It's a bit older but this book is worth a read on the subject amazon.ca/Structure-Scie…
@steventseeley I also noticed "paste-from-file" with some binary files was breaking recently. Had to use curl.
Just uploaded the pdf slides of my talk "whoami /priv" @hackinparis #HIP19 github.com/decoder-it/who…
This paper is *the* resource for abusing tokens on Windows for privilege escalation. I especially appreciate the level of detail @dronesec and @breenmachine go into to explain the token ecosystem, permissions, past attacks, etc. 10/10 would read again. github.com/hatRiot/token-…
Nice!
A small gift from S2anta: @breenmachine showed how to abuse JasperReports for RCE (foxglovesecurity.com/2016/10/14/hac…) - now here's a single .JRXML file to achieve the same thing if no .JAR's are allowed: gist.github.com/v-p-b/dd95c72c…
Hey so we're stoked to welcome @jstnkndy @breenmachine and @brandonprry from @foxglovesec to the AtrediFam. We've been calling it "The Hat Trick".
I'm releasing with @Giutro Juicy Potato, another Local Privilege Escalation tool from a Windows Service Accounts to SYSTEM by abusing the golden privileges (decoder.cloud/2018/08/10/jui…)
#UnpopularOpinion conferences should more heavily vet talks and reject those that are subpar because those speakers often get an inflated sense of skill and spread misinformation.
@Rhynorater np, glad it's still useful!
Custom version of C++ Rotten Potato along with some observations ;-) decoder.cloud/2018/01/13/pot…
@ifsecure uploaded the privilege escalation I wrote (with @halvarflake size coding) for the WPAD blog. bugs.chromium.org/p/project-zero… Small footprint and uses RPC libs instead of parsing the RPC traffic like Rotten Potato /cc @breenmachine
#RottenPotatoNG - New version of #RottenPotato as a C++ DLL and standalone C++ binary by @breenmachine github.com/breenmachine/R…
@jensvoid @foxglovesec I believe you maintain the printer hacking wiki? Great resource, was very useful during this project. If you have any questions or would like to add some of this material to the wiki, I'd be interested in assisting.
HP has released the security bulletin which addresses the vulnerability described in our blogpost support.hp.com/nz-en/document…
@cninja321 @foxglovesec @BrotherOffice Ouch, that doesn't sound good.
We think HP should be more concerned with foxes than wolves - "A Sheep in Wolf's Clothing - Finding RCE in HP's Printer Fleet" by @breenmachine - foxglovesecurity.com/2017/11/20/a-s…
Abusing delay load DLLs for remote process injection hatriot.github.io/blog/2017/09/1…
Dropping @breenmachine and @dronesec latest Windows privilege escalation project - For exploit devs and pentesters - foxglovesecurity.com/2017/08/25/abu…
Oddvar Moe @Oddvarmoe
19K Followers 1K Following Red Teamer @TrustedSec | MS MVP | Speaker | Security Researcher | Blogger | Total n00b & always learning | UNC1194 | Tinkerer | Gamer I try to inspire!
ϻг_ϻε @steventseeley
23K Followers 557 Following Artist disguised as a logician. Pwn2Own Winner. Spiritual Alchemy. An adept in the making.
Greg Linares (Laughin... @Laughing_Mantis
37K Followers 2K Following 20+ yrs in Infosec. Malware Influencer. I turn Malware into Art and Music. Art @MalwareArt. 4x Pwnie Nominee. 𝕍𝕏. GameDev. Autistic.
Andrea P @decoder_it
9K Followers 319 Following Security Consultant @semperistech . Independent Security Researcher. Cyclist & Scubadiver. MSRC MVR 2022. "So di non sapere"
Marcello @byt3bl33d3r
30K Followers 819 Following CyBeRsEcUrItY | Not afraid to put down with some THICC malware on disk | AI Research @PaloAltoNtwks | former purple team | Ex @spacex
n00py @n00py1
14K Followers 966 Following Retweeter of InfoSec/Offsec/Pentest/Red Team. Occasional blogger/Independent security research.
shubs @infosec_au
58K Followers 2K Following Co-founder, security researcher. Building an attack surface management platform, @assetnote
Justin Bollinger @Bandrel
6K Followers 2K Following hacker, finder of EKUwu (CVE-2024-49019) https://t.co/XQuqk8n8Qy
Nate @nnwakelam
43K Followers 1K Following
Rob Fuller @mubix
78K Followers 25K Following Dad / Husband / Marine / Student / Teacher / @Hak5 / @NoVAHackers / @SiliconHBO / @NationalCCDC / @MARFORCYBER Auxiliary
Panos Gkatziroulis �... @ipurple
27K Followers 826 Following Red/Purple Teamer | Blogger | Ex-Director @pentestlabltd | Mod @ https://t.co/1nzjl9KpSH | https://t.co/mIM1GA1mN4
Mohamed Aziz Hidri @0xh1dr1
5 Followers 469 Following
秋风 @q1uf3ng
2K Followers 292 Following |Bug Bounty Hunter|Security Researcher|CTFer@W&M|公众号:秋风的安全之路|19yo|
CeruleanNomad @CeruleanNomad
1 Followers 159 Following
万象 @shu_kuang13
1 Followers 114 Following
Yair Cheredman @YCheredman48738
0 Followers 34 Following
Ahmed Abdel Rasoul�... @0xbartita
1K Followers 2K Following Penetration Tester & Bug Hunter | eWPTX | eCPPT | eMAPT | CVE-2026-23524
0xZox @ZiadHossam74
3 Followers 367 Following
Cdipp3r @Hayakaw99918572
0 Followers 77 Following
Lokage @xCyberKage
8 Followers 116 Following
Ankur @Ankuryogi11
243 Followers 6K Following
Mahmoud Sherif @Mahmoudp90
340 Followers 2K Following Penetration Tester💻 | Don’t tell people your plans. Show them your results.
Akash P @akash_p1989
48 Followers 2K Following
Cyber Security Pengui... @CySecPenguin
63 Followers 3K Following Cyber security information is collected.
cr0m @cr0Mss
1 Followers 65 Following
mr_whitehat @mrwhitehat9
6 Followers 195 Following
Moad Akhraz @mdakh404_
50 Followers 2K Following I like computers, security and everything in between.
Vasanth Vanan @vasanth__vanan
14 Followers 106 Following
santaclaus223344 @santaclausPak
0 Followers 83 Following
wxqazgzpt @wxqazgzpt
0 Followers 3 Following
Mr. c @smail_xyz
3 Followers 130 Following
(\/)@$3 @Th8vEJKYfFcxDWN
14 Followers 478 Following
Aviel Zecharia @ZechariaAviel
2 Followers 119 Following
Jeremi M Gosney @jmgosney
7K Followers 521 Following Distinguished Engineer at GEICO Cyber. Affiliated: @Hashcat @PasswordVillage @Hushcon @BSidesLV. 💍 @baybe_doll . Still Coviding.
Chris Zheng @Chris_ZAST
67 Followers 542 Following Co-Founder of https://t.co/Vswo7BOQgg – An AI agent that discovers and verifies vulnerabilities with auto-generated PoCs | report is cheap, show me the POC!
Stishy @cyberStishy
84 Followers 531 Following Red Team. Definitely don't waste too much money on computer hardware. https://t.co/Yvlx0bypjM
Neil Desai @0x617075
194 Followers 1K Following
Adam Hassan @Adamkadaban
195 Followers 623 Following https://t.co/Q84BarVxwd Security Engineer @ Microsoft (MORSE)
Nurlan @0xsecweb
7 Followers 572 Following Nurlan Bolayev (王博文) \r\n Trying not to get lost in the World Wild Web
Akobe-Ajibolu Emmanue... @aa__emmanuel
331 Followers 153 Following Christian | Entrepreneur | Innovation | Cyber Security
WHOAMI @wh0amitz
770 Followers 156 Following Red Team / Offensive Security, Cameo in @StrawHat_CTF for pentest. Web Security / Windows / Active Directory / Post Exploitation
m4ki3lf0 @m4ki3lf0
10 Followers 212 Following
Lok3.sh 🇮🇳 @lokesh_bhade
114 Followers 722 Following Application Security / Red Teaming #OSCP #CRT0 #CRTP #CEH
ϻг_ϻε @steventseeley
23K Followers 557 Following Artist disguised as a logician. Pwn2Own Winner. Spiritual Alchemy. An adept in the making.
Greg Linares (Laughin... @Laughing_Mantis
37K Followers 2K Following 20+ yrs in Infosec. Malware Influencer. I turn Malware into Art and Music. Art @MalwareArt. 4x Pwnie Nominee. 𝕍𝕏. GameDev. Autistic.
Andrea P @decoder_it
9K Followers 319 Following Security Consultant @semperistech . Independent Security Researcher. Cyclist & Scubadiver. MSRC MVR 2022. "So di non sapere"
James Forshaw @tiraniddo
49K Followers 336 Following Security researcher in Google Project Zero. Author of Attacking Network Protocols. Tweets are my own etc. Mastodon: @[email protected]
Halvar Flake @halvarflake
45K Followers 3K Following Choose disfavour where obedience does not bring honour. I do math. And was once asked by R. Morris Sr. : "For whom?" @[email protected]
Rob Fuller @mubix
78K Followers 25K Following Dad / Husband / Marine / Student / Teacher / @Hak5 / @NoVAHackers / @SiliconHBO / @NationalCCDC / @MARFORCYBER Auxiliary
Robin @digininja
25K Followers 229 Following Hacker, coder, climber, runner. Co-founder of SteelCon, freelance tester, author of many tools. Always trying to learn new things. @hacknotcrime Advocate
Panos Gkatziroulis �... @ipurple
27K Followers 826 Following Red/Purple Teamer | Blogger | Ex-Director @pentestlabltd | Mod @ https://t.co/1nzjl9KpSH | https://t.co/mIM1GA1mN4
Atredis Partners @Atredis
3K Followers 1K Following Atredis is a 100% worker-owned team of world-class security researchers and consultants. We do risk-centric, research-driven security testing and consulting.
Eric Evenchick @ericevenchick
2K Followers 481 Following Embedded systems, security, cars, planes, (bi|uni)cycles. Co-founder at @tetrelsec https://t.co/ydJhi7zLmE
Maxime Chevalier @Love2Code
19K Followers 299 Following 💖 ➞ λ: CS PhD, into compiler design, programming languages, music, simulation, ML/AI, robotics. Follow me code code reviews, stock picks and dating advice.
Presence Global 🌐 @Presence_Global
57 Followers 629 Following Your Online information makes you vulnerable. Manage your Online information using Presence. https://t.co/IptU8ZVNjr https://t.co/4KPx6Nqk5Y
pyn3rd @pyn3rd
15K Followers 721 Following Security researcher with over a decade of experience in network&application&cloud security. Speaker at BlackHat, HITB, CanSecWest and TyphoonCon.
Wu-Tang Financial �... @Wu_Tang_Finance
159K Followers 2K Following PUBLIC FIGURE. DERIVATIVE INVESTMENTS RULE ERRTHING AROUND ME #DiversifyYoBonds ***CLEARLY NOT INVESTMENT ADVICE JFC*** PROTECT YA ASSETS (Parody tho)
Whitney Champion 🍪... @shortxstack
29K Followers 11K Following security architect / cofounder @Recon_InfoSec / cofounder @DDI_training / ♥️♥♥ == @eric_capuano, nerdery, rainbows, sweatpants | she/her 🤍🌿🍄🌈🫶
william caput @norcalpromo
251 Followers 367 Following Extroverted introvert. Master of the Internets. #norcon | founder | speaker | #hacker | #dc530 | USMC
Alex Ionescu @aionescu
47K Followers 2K Following Chief Technical Innovation Officer @crowdstrike. Windows Internals author and trainer. He/Him. RTs are not endorsements, opinions are my own.
Jens Müller @jensvoid
1K Followers 219 Following Hack the Planet! On a #yolo trip around the word during a pandemic. Involved in https://t.co/UATbdfU5vH, #efail, #pdfex. Raw tech. No chit-chat.
Solar Designer @solardiz
13K Followers 1K Following @Openwall founder, @oss_security maintainer, @lkrg_org co-author, @CtrlIQ Linux security engineer. RTs don't imply agreement with points of view.
REcon @reconmtl
18K Followers 708 Following REcon: Annual reverse engineering and security conference held in Montreal.
Marya @c0ntrarya
75 Followers 365 Following Humane tech sellout. Wannabe shredder. Closet hippie lawyer. Bookworm. Miserable human at predictable times of the month.
John Lambert @JohnLaTwC
42K Followers 819 Following Corporate Vice President, Security Fellow, Microsoft Security Research, johnla(AT)https://t.co/3dGtq71Nby
Donald J. Trump @realDonaldTrump
111.6M Followers 53 Following 45th & 47th President of the United States of America🇺🇸
corin.bsky.social @corintxt
4K Followers 2K Following Data journalist @AFP | previous: reporter @verge & @themarkup, researcher @witnessorg, civic innovation fellow @dlicornelltech
ANYCon @anyconsec
473 Followers 494 Following Albany New York's only Hacker Conference 2024 Dates TBA
Leet Cyber Security @leetsys
281 Followers 223 Following Hacking You Before They Do | Vulnerability Assessment · Penetration Testing · Red Teaming | Hosts of @anyconsec & CyBeer Meetup | https://t.co/NKBiR5G24w
Jeff Pearson @GIS_DOG
3K Followers 968 Following CEO @ Radial Spatial | GIS & GeoDev | #SDVOSB | #ArcGISEnterprise | Ethical Hacker | Geographer | Air Force Vet | BJJ Life
Holly Graceful @HollyGraceful
12K Followers 839 Following PenTesting @AkimboCore. “Not all thoughts have to be noises Hollister” — @_mormaid
Spiros Fraganastasis @m3g9tr0n
14K Followers 2K Following Team @hashcat! Eternal n00b and knowledge seeker! Age is just a number and motivation is the fuel! Whatever you do in your life, do not forget to be humble.
Ben Gras @bjg
2K Followers 1K Following Security researcher at Intel. Proud dad & husband. Loves hacking & building. PhD in systems security from @vu5ec. https://t.co/fm0WTj0bkU
Sen. Bernie Sanders @SenSanders
11.6M Followers 2K Following Sen. Sanders of Vermont, Ranking Member of U.S. Senate Committee on Health, Education, Labor & Pensions, longest-serving independent in congressional history.
VUSec @vu5ec
4K Followers 138 Following Systems and Network Security Group @VUamsterdam. Co-led by @herbertbos @c_giuffrida @EKouwe
Kav @kavehrazavi
2K Followers 278 Following Dad, scientist, teacher, prof @ETH_en. Hardware/software security at COMSEC: https://t.co/WGPNNFvz7S
MachinePix @MachinePix
207K Followers 76 Following Amazing feats of engineering. Tweeted by @kane and https://t.co/c2bRClqVy5.
NOT ALT WORLD @NotAltWorld
696K Followers 2 Following #HOLDTHELINE #BlackLivesMatter #BlockTheTrolls The Original Alt National Park Service Resistance account handed down from the Elders
Erik Bosman @brainsmo... @brainsmoke
5K Followers 524 Following PhD student @ @vu5ec / hardware bugs / LEDs / active account at @[email protected]
Andrew Weaver @AJWVictoriaBC
25K Followers 803 Following Climate scientist. Professor in SEOS @UVic; Former MLA for Oak Bay-Gordon Head.
Green Party of Canada @CanadianGreens
178K Followers 2K Following Official page of the GPC | A voice for the voiceless. If you want change, join @ElizabethMay and vote for it! 🟢 En français @LesVertsCanada
Justin Trudeau @JustinTrudeau
6.7M Followers 876 Following Father, former Prime Minister of Canada. | Papa, ancien premier ministre du Canada.
Elizabeth May @ElizabethMay
282K Followers 7K Following @CanadianGreens MP-Saanich-Gulf Islands, Activist, Author & Mother. GPC Leader. En français: @MayElizabeth (she/her)
StopOleoducOutaouais @StopOleoducO
76 Followers 80 Following Stop oléoduc Outaouais est un rassemblement citoyen dédié à protection de notre environnement et du climat. Nous sommes opposés au projet Énergie Est.
Divest McGill @DivestMcGill
2K Followers 454 Following We’re calling on @McGillU to divest from the fossil fuel industry and be a leader in climate justice.
Parley @parleyforoceans
17K Followers 289 Following Where creators, thinkers, and leaders come together to raise awareness for our oceans & collaborate to end their destruction. Join: #ParleyAIR #fortheoceans
Sea Shepherd SA @SeaShepherdSA
10K Followers 33 Following You have not lived until you have found something worth dying for!
Captain Paul Watson F... @CaptPaulWatson
119K Followers 386 Following Captain Paul Watson Foundation - Tweets don't mean endorsements.
GREMM @GREMM_
1K Followers 70 Following Organisme à but non lucratif voué à la recherche scientifique sur les baleines du Saint-Laurent et à l’éducation pour la conservation du milieu marin.




























