Jens Müller @jensvoid
Hack the Planet! On a #yolo trip around the word during a pandemic. Involved in https://t.co/UATbdfU5vH, #efail, #pdfex. Raw tech. No chit-chat. nds.rub.de/chair/people/j… Planet Earth Joined March 2013-
Tweets228
-
Followers1K
-
Following219
-
Likes210
Lol. @HackenProof a reputable bug bounty platform sends out invites for their program to attack Russian critical infrastructure (SCADA, banks, energy). Crazy times & Happy hunting. #StandingWithUkraine hackenproof.com/ukraine-will-w…
Angreifer könnten digitale Unterschrift in LibreOffice und OpenOffice fälschen heise.de/news/Angreifer… #LibreOffice #OpenOffice
If you build #Ghostscript from source, apply this patch to counter the latest RCE (now known as CVE-2021-3781): git.ghostscript.com/?p=ghostpdl.gi…
0day RCE in #Ghostscript going wild. This issue was found independently by @emil_lerner and @jensvoid. Fun fact: GS is everywhere. Even LESS(1) is affected.
@RDerenzy @emil_lerner ImageMagick is *not* required (but can be used as a vector to call Ghostscript). The 9.50 to 9.54 releases are vulnerable. I don't use Windows.
@1AKDJ @emil_lerner Kali Rolling (less 551); likes to convert all kinds of obscure file types to plain text before displaying to the user; thereby increasing the attack surface
@lambdafu & @jurajsomorovsky evaluate the real-world attack surface of web browsers and widely-deployed email and FTP servers in lab experiments and with internet-wide scans in this #BHUSA Briefing informatech.co/3cy70QQ
@mniemietz @HGI_Bochum @HSNiederrhein Congrats Marcus, and thanks for shepherding me into @HGI_Bochum back in the days!
We found another flaw in the design of TLS! If you have servers that share certificates across services you might want to take a look at this: alpaca-attack.com. 🧵👇
New paper: "ALPACA: Application Layer Protocol Confusion -Analyzing and Mitigating Cracks in TLS Authentication" to be presented @USENIXSecurity '21. Joint work with @lambdafu @dr4ys3n @ic0nz1 @dues__ @jensvoid @jurajsomorovsky @JoergSchwenk. 1/
"PhD Defense" can finally be crossed off that to-do list. So long @HGI_Bochum, and thanks for all the fish!
@nitro_sam @Klose7 Please read your emails to [email protected] (RCE in Nitro Reader/Pro; never got an answer)
New paper on how to fix #efail style attacks against e2e encrypted email, including OpenPGP and S/MIME. Joint work with @JoergSchwenk @lambdafu @dues__ @jensvoid @jurajsomorovsky @seecurity. To be presented at @acm_ccs 2020. Thread:
Datenklau über Mailto-Links heise.de/news/Datenklau… #Datenklau #EMail
My fault. Even though Thunderbird removed the mailto:?attach feature, it still seems present in distros that apply xdg-email to parse mailto URLs. Thanks to @j_o_n__w and @Ug_0Security for all the debugging :). Original report for Thunderbird now public: bugzilla.mozilla.org/show_bug.cgi?i…
Have you ever heard of the mailto:?attach=~/… parameter? It allows to include arbitrary files on disk. So, why break PGP if you can politely ask the victim's mail client to include the private key? (1/4)
@j_o_n__w @Ug_0Security Sry, the line is "ATTACH=$(/bin/echo -e $(echo "$MAILTO" | grep '^attach='..." in the run_thunderbird() function of xdg-email. Thanks.
@j_o_n__w @Ug_0Security Can you confirm that you are using xdg-email (e.g., by commenting out line 51 in /usr/bin/xdg-email and then testing if it still works)?
@j_o_n__w @Ug_0Security This is bad. It had been fixed in/by TB in the past. But imho xdg-email re-opens the attack surface: gitlab.freedesktop.org/xdg/xdg-utils/…
E-Mail: Gefährliche Mailto-Links können Daten stehlen #mailto glm.io/150326?t
@JamesHenstridge @jensvoid Yes. See me other answer, for some reason this escaped KDE Security Team radar and i thought it had not been reported to KDE while it had indeed been.
Intigriti @intigriti
210K Followers 667 Following Bug bounty & VDP platform trusted by the world’s largest organisations! 🌍
Christian @CheariX
597 Followers 180 Following Web and Data Security Researcher Follow me here https://t.co/Amj2dsfG3j (Private Account)
Tuan Anh Nguyen⚡️... @haxor31337
16K Followers 2K Following 30 y/o Bug Bounty Hunter and Red Team Lead at Viettel Cyber Security. Brand Ambassador @Hacker0x01 - Researcher Spotlight @Bugcrowd
Gareth Heyes \u2028 @garethheyes
38K Followers 1K Following Web security researcher at PortSwigger. Author of JS for Hackers and Hackvertor. https://t.co/e0aNEbFb9D
Ange @angealbertini
25K Followers 918 Following Reverse engineer, file formats expert. Corkami, CPS2Shock, PoC||GTFO, Sha1tered, Magika... Security engineer @ Google. He/him.
Random Robbie @Random_Robbie
16K Followers 6K Following Hunting vulns. Exploits are real. Opinions are yours. Blame yourself, not me. Anything posted here is on you not me. #LFC
Shreyansh gami @Shreyansh_gami
20 Followers 793 Following
Adarsh Rajpoot @AdarshRajp80192
0 Followers 4 Following
timlake @timlake252160
1 Followers 2K Following
Tal Be'ery @TalBeerySec
11K Followers 2K Following Security Research Manager. Co-Founder, CTO @ZenGo. Advisor @ZeroNetworks. x-VP Research Aorato, acq by @Microsoft. 10 times @BlackHatEvents speaker.
Roxie Carter @RCarter18198
1 Followers 162 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/D6p8qe9Ia1
Arthur Verschaeve @Arthur_Versch
699 Followers 512 Following information security & open-source software
Manu Itutur @ManuItutur
44 Followers 329 Following
Abdallah Mahrous @amahrous79
215 Followers 599 Following Fulltime bug hunter | german speaker | just doing my part
Steve @Steve1607241875
0 Followers 47 Following
Umair 🇩🇪 @u_ahmedofficial
293 Followers 487 Following 24 | Security Engineer @HelloFresh | Crypto 💎🙌 | NUST'22 | @Synack @bugcrowd 🤑💰
Reza Sahaf @reza_sahaf
294 Followers 486 Following
m1tz @_m1tZ
235 Followers 926 Following Web Security Expert | Bug Hunter | Käferjäger | https://t.co/DT86afEp4J https://t.co/WzdEqXoJv9
Ali Mousavi (The𝕏n... @thexsecurity
52 Followers 568 Following Computers, trying to exploit myself, unofficially a hacker. @[email protected]
IRDA @irda_33
1 Followers 30 Following
Akash D. (アカシ�... @akro002
6 Followers 234 Following SDE | AI | SAAS | Encient pirate from one piece ☠️
Ruffle @ruffleduffl3
8 Followers 41 Following
sherif @0xCOD3
72 Followers 1K Following ”I have seen everything that is done under the sun, and behold, all is vanity and a striving after wind“
Hubert Poznański @PoznanskiH77916
1 Followers 142 Following
Jean Neige @jhonSnowSec
16 Followers 116 Following
Mikassa53 @Mikassa53
258 Followers 681 Following Ethical Hacker at @bugcrowd & @hacker0x01 & @intigriti
Golden Nutmeg @GoldenNutmeg
1 Followers 186 Following
ᅟ𝖎𝖑𝖑𝖜�... @xillwillx
3K Followers 567 Following I am whatever you say I am. ex-Mandiant red team hax0r former blue check
Wesley Santos @dk4trin
2K Followers 1K Following Campanha SaaS Security ➔ https://t.co/mesaJm9i0K @katrinasecteam Offensive Security | Penetration Testing | Bug Bounty
lucky narayani @luckynarayani
2 Followers 66 Following
jarom @_jarom_
351 Followers 622 Following Bug bounty hunter | Software engineer in security | Building & breaking with automation + AI | DEFCON fan | Sharing tips & weird bugs
TESS @ArmanSameer95
7K Followers 1K Following Application Security Researcher Securing Internet since 2018 Building @cybertessio
PHP and Python @PyWebEU
28 Followers 4K Following Using PHP regularly since the last millennium and Python occasionally since 2006, for ML & the Web (e.g. Django, MoinMoin, Trac). - Open Source: The 4 Freedoms.
pac0um_Sec @pac0um_Sec
47 Followers 126 Following Learning new stuff everyday in #cyber :)) and especially pentest 🥷
infosecMX @infosecmx3301
344 Followers 6K Following En esta cuenta se retuitean y tuitean temas relacionados al Infosec
Salem Nabeel Salem @isalem_nabeel
23 Followers 652 Following بسم الله الرحمن الرحيم❤ Bug Bounty Hunter🐞
Samuel @sam_trueskills
15 Followers 179 Following
plmi @plmi1337
13 Followers 255 Following
Madhan Raj @mr5562932
7 Followers 112 Following
Kobus Post @kobuspost
275 Followers 333 Following
Christian @CheariX
597 Followers 180 Following Web and Data Security Researcher Follow me here https://t.co/Amj2dsfG3j (Private Account)
Halvar Flake @halvarflake
45K Followers 3K Following Choose disfavour where obedience does not bring honour. I do math. And was once asked by R. Morris Sr. : "For whom?" @[email protected]
James Kettle @albinowax
84K Followers 102 Following Director of Research at @PortSwigger aka @Burp_Suite. Find my research, tools & contact details at https://t.co/vP6UbGmvl3
CCC Updates @chaosupdates
198K Followers 192 Following Der Chaos Computer Club ist eine galaktische Gemeinschaft von Lebewesen für Informationsfreiheit und Technikfolgenabschätzung. @[email protected]
Gareth Heyes \u2028 @garethheyes
38K Followers 1K Following Web security researcher at PortSwigger. Author of JS for Hackers and Hackvertor. https://t.co/e0aNEbFb9D
Ange @angealbertini
25K Followers 918 Following Reverse engineer, file formats expert. Corkami, CPS2Shock, PoC||GTFO, Sha1tered, Magika... Security engineer @ Google. He/him.
Nicolas Grégoire @Agarri_FR
28K Followers 628 Following Web hacker and Burp Suite Pro trainer Refer to https://t.co/D5tRH7U2hg for trainings Follow @MasteringBurp for free tips and tricks
Daniel Gruss @lavados
9K Followers 540 Following #InfoSec University Professor @ #TUGraz. #meltdown, #spectre, #rowhammer, cache attacks, sustainable security. Produced a side channel security sitcom.
Codean @CodeanIO
419 Followers 174 Following Ethical hackers rock and we think they do not get enough love (tool wise). So we are creating a tool for security analysts, by security analysts!
TicketLeap @ticketleap
5K Followers 2K Following We ❤️ to help people sell 🎟 to events. Need help fast? Email us at [email protected]. The Official TicketLeap account.
Patron Global Tech Lt... @patron_tech
24 Followers 100 Following We provide quality driven and value based services on these core values: INNOVATION, SIMIPLICITY, COMPETENCE AND AFFORDABILITY. +2348066499519,+2348150803845
TESS @ArmanSameer95
7K Followers 1K Following Application Security Researcher Securing Internet since 2018 Building @cybertessio
Caitlin Allison @caitlinnallison
2K Followers 431 Following Lead Community Manager, Live Hacking Events @ HackerOne #vExpert Non-tech gal in a tech world with a love for food
jarom @_jarom_
351 Followers 622 Following Bug bounty hunter | Software engineer in security | Building & breaking with automation + AI | DEFCON fan | Sharing tips & weird bugs
Issuu @issuu
79K Followers 4K Following Issuu empowers anyone, from independent creators to global brands, to transform static designs into high-performance content for every digital marketing channel
Worldstream - Solid I... @worldstream
687 Followers 260 Following Our transparent IT infrastructure hosted in Europe strengthens your IT landscape with predictable, scalable, and secure technology that grows with you.
iFixit @iFixit
131K Followers 1K Following 🧑🔧 Free repair guides for every thing, written by everyone 📸 Share your repair with #ifixit 🌏 In Europe and Asia: @ifixitDE + @ifixitFR + @iFixit_Japan
ctrip security @CtripSecurity
26 Followers 71 Following Ctrip Security Response Center。 email:[email protected] website:https://t.co/GcB3oRc3ef
sigabrt @sigabrt9
137 Followers 370 Following
Infowerk UK @Infowerk_uk
316 Followers 393 Following Online printing company, tweeting links & news about print, design, media and business. Imprint: https://t.co/7Wi08zM0dL
simplebooklet @simplebooklet
423 Followers 447 Following Convert PDFs, Documents, and Presentation into online web flip books you can publish, post, pin, tweet, share, email, embed and print.
SmartFile @SmartFile
2K Followers 2K Following Secure file management in the cloud, on-premise, or anywhere in-between.
KPulse @kpulse_app
50 Followers 140 Following Un outil moderne et intuitif pour gérer votre entreprise de A à Z. #CRM #SaaS #TPE #PME ⚡️
Sched @sched
7K Followers 2K Following Sched is a flexible and easy way for you to organize better events. 💫 Unlimited Events & FREE Small Events! Start a free trial 👉https://t.co/Mq3yBLblzL
HealthTap @HealthTap
35K Followers 2K Following Your personal doctor, one tap away. #telehealth #telemedicine #virtualhealth
vinaybhagat @vinaybhagat
858 Followers 75 Following Founder & CEO TrustRadius - Customer Voice Platform for B2B Tech. #TruthSells.
Photofeeler @Photofeeler
3K Followers 2K Following What are your photos saying about you? Test dating, business & social pics with real people. #1 photo feedback tool. Seen in Forbes, TIME & more!
Jumpshare @Jumpshare
647 Followers 1 Following Jumpshare lets you capture screen recordings, screenshots, and GIFs—all in one app to bring clarity, save time, and boost productivity. For Mac, Windows & iOS.
Scholar @cgscholar
407 Followers 608 Following Scholar: a peer-to-peer writing and feedback platform which utilizes multiple formative assessment tools to engage learners and increase educator effectiveness
YELLOW IMAGES 💛 @yellowimages
866 Followers 3 Following https://t.co/InkdLso08Q - the Largest Collection of PSD Mockups on the Internet 💛 https://t.co/q20HQy4hhx subscribe to our mockup feed @lumenor_ai @provisualapp
Multilizer @multilizer
1K Followers 1K Following Multilizer makes #localization and #translation tools for everyone. Follow @multilizer to learn more about translation and languages!
theAsianparent @theAsianparent
5K Followers 909 Following theAsianparent is a content and community platform that helps parents across Asia in their conception, pregnancy and in raising happy, healthy & confident kids.
CASETiFY @Casetify
107K Followers 3K Following We make accessories that elevate your everyday. Welcome G-DRAGON, as our inaugural global iCON. Available now ⬇️
ProtoShare @ProtoShare
1K Followers 1K Following ProtoShare is a collaborative, web-based prototyping tool that reduces interactive project rework while increasing profits.
Cage @cageapp
1K Followers 1 Following Media collaboration and project management for creative teams re-thought. Collaborate better. Celebrate sooner.
Brown Paper Tickets @BPTickets
26K Followers 17K Following Event ticketing and registration tools for any gathering. Improving the live entertainment industry, one ticket at a time.
FireDrum Email Market... @FireDrum
9K Followers 10K Following 🔥📨 FireDrum empowers businesses of all sizes by offering scalable email marketing solutions.
Coggno @coggno
4K Followers 2K Following Coggno is an online training marketplace & eLearning platform that brings together content creators, HR organizations, & employees in a cloud-based ecosystem.
Dash @Dash_app_
44 Followers 134 Following Dash is the beautiful & centralised home for your brand's content. We tweet tips to help you grow your small business 🚀 (Tweets by Amy, sometimes Barney)
Watsi @watsi
7K Followers 1K Following We're building technology to create a world where everyone has access to healthcare.
Vectorworks @Vectorworks
11K Followers 572 Following Official Twitter of global design & #BIM software provider Vectorworks. Serving AEC, landscape & entertainment industries. Blog subscribe: https://t.co/ik6bfKpoR3
The Tile Shop @TheTileShop
5K Followers 2K Following Your source for all things tile! Tile inspiration, trends and design tips can all be found at https://t.co/1vPOfthqCe
Specialty Food Founda... @SpecialtyFoodFn
1K Followers 2K Following Develops & activates tangible/lasting solutions by delivering programs that motivate industry members to change behaviors for community/business well-being.
Sinao - Facturation C... @SinaoFrance
156 Followers 344 Following 📊 Le logiciel de comptabilité et gestion pour les entrepreneurs 100% en ligne le plus simple ! #indépendant #TPE #startup #entrepreneuriat
PsPrint @PsPrint
5K Followers 541 Following If you need it, PsPrint can print it: full-color business cards, stickers, invitations, greeting cards, brochures, postcards, banners and more.
Overcast @Overcast_HQ
576 Followers 2K Following Cloud-native platform that saves you time and money on reviewing, approving, collaborating on and distributing video. #CreatorEconomy #AI #3D #mediamanagement
MangoApps @mangoappsinc
1K Followers 592 Following MangoApps is the hub of any digital workplace. It is the central location employees go to for fast and seamless access to all the tools they need everyday.
Office Chat @OfficeChatApp
114 Followers 2K Following Office Chat is an instant messaging & live chat for work - we help your business improve communication and solve problems quicker. #officechat #communications
Netframe @NetframeHQ
140 Followers 716 Following Flexible all-in-one workspace flexible to make productivity steps that suit your team and your way of doing things.
Kleisteen @InfoKleisteen
30 Followers 15 Following

























