optional (@optionalctf) 's Twitter Profile
optional

@optionalctf

The proud owner of two brain cells.

HTB with @barctf | OSCP, CRT, CRTO

ID: 1085362079559753730

linkhttps://youtube.com/c/optionalctf calendar_today16-01-2019 02:24:19

1,1K Tweet

4,4K Takipçi

273 Takip Edilen

SteelCon (@steel_con) 's Twitter Profile Photo

We are still looking for crew for July, if you fancy getting behind the scenes access to the con, and all the perks that go with it, sign up here: docs.google.com/forms/d/e/1FAI…

Logan Goins (@_logangoins) 's Twitter Profile Photo

I jumped heavily into learning about SCCM tradecraft and wrote a detailed write-up with custom examples, covering the most interesting vulnerabilities that combine commonality and impact from low-privilege contexts, and what you can do to prevent them :) logan-goins.com/2025-04-25-scc…

Panos Gkatziroulis 🦄 (@netbiosx) 's Twitter Profile Photo

AMSI Bypass via RPC Hijack (NdrClientCall3) This technique exploits the COM-level mechanics AMSI uses when delegating scan requests to antivirus (AV) providers through RPC github.com/andreisss/Ghos…

John Hammond (@_johnhammond) 's Twitter Profile Photo

HELLO NAHAMCON 2025 CTF IS MAY 23 TO MAY 25 BEN ASKED ME TO HELP PROMOTE AND I FORRGOOTTT PLEASE REGISTER AND PLAY OUR GAME jh.live/nahamcon-ctf I WILL CONTINUE TO SPAM UNTIL SHOWTIME AND DURING EVENT SORRY BUT IT WILL BE FUN I PINKY PROMISE

HELLO
NAHAMCON 2025 CTF IS MAY 23 TO MAY 25
BEN ASKED ME TO HELP PROMOTE AND I FORRGOOTTT
PLEASE REGISTER AND PLAY OUR GAME
jh.live/nahamcon-ctf
I WILL CONTINUE TO SPAM UNTIL SHOWTIME AND DURING EVENT SORRY BUT IT WILL BE FUN I PINKY PROMISE
Zero-Point Security (@zeropointsecltd) 's Twitter Profile Photo

ZPS has a new site with some pretty cool changes to pricing, labs, and exams. Read more here: zeropointsecurity.co.uk/blog/new-site-…

kepano (@kepano) 's Twitter Profile Photo

if you're looking for a Pocket replacement, I built Obsidian Web Clipper — it's open source and works with any app that supports Markdown (not just Obsidian)

Beau Bullock (@dafthack) 's Twitter Profile Photo

I'm teaching an intro to cloud security workshop on July 11th. This is a pay what you can course so you can take it for free. I'll also be teaching the full version of my Breaching the Cloud course at Wild West Hackin' Fest in October. Registration links below: Workshop:

Filip Dragovic (@filip_dragovic) 's Twitter Profile Photo

Today MSRC fixed two vulnerabilities I reported a couple months ago. EoP in Windows Update service (affects only windows 11/10 with at least 2 drives) msrc.microsoft.com/update-guide/v… EoP in Microsoft PC Manager msrc.microsoft.com/update-guide/v… PoC for CVE-2025-48799: github.com/Wh04m1001/CVE-…

Adam Chester 🏴‍☠️ (@_xpn_) 's Twitter Profile Photo

PSA to anyone struggling, don't be told that "you're just worried", "you're just feeling sad", "you're overthinking things"... depression, anxiety, OCD, ADHD, Autism are killers. Talk, and advocate for yourself!

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

Happy Friday! We're ending the week by publishing our analysis of Fortinet's FortiWeb CVE-2025-25257.... labs.watchtowr.com/pre-auth-sql-i…

RedTeamVillage (@redteamvillage_) 's Twitter Profile Photo

💻 ModuleOverride – Changing a Tyre Whilst Driving – zer0phat & kreep teach process injection using existing memory sections to run malicious shellcode. Hands-on demos and detection strategy discussions at @redteamvillage_ during DEF CON 33! ⚡

💻 ModuleOverride – Changing a Tyre Whilst Driving – <a href="/zer0phat/">zer0phat</a> &amp; <a href="/kreepsec/">kreep</a> teach process injection using existing memory sections to run malicious shellcode. Hands-on demos and detection strategy discussions at @redteamvillage_ during <a href="/defcon/">DEF CON</a> 33! ⚡
Adam Langley (@buildhacksecure) 's Twitter Profile Photo

Here’s my slides from today’s “Regex For Hackers” talk at DEFCON with Ben Sadeghipour, bookmark this for some exciting news in the near future docs.google.com/presentation/d…

kreep (@kreepsec) 's Twitter Profile Photo

Had an awesome time at #DefCon 33. Lots of new discoveries, first time speaking at the #redteamvillage along with zer0phat and met lots of cool people. Looking forward to the next one!

Had an awesome time at #DefCon 33. Lots of new discoveries, first time speaking at the #redteamvillage along with <a href="/zer0phat/">zer0phat</a> and met lots of cool people. Looking forward to the next one!
Jord (@0xlegacyy) 's Twitter Profile Photo

Developing a scriptable (pwndbg-like) debugger for windows. Few more things we need to iron out but will be releasing soon 🐸

Developing a scriptable (pwndbg-like) debugger for windows. Few more things we need to iron out but will be releasing soon 🐸
SpecterOps (@specterops) 's Twitter Profile Photo

PDQ SmartDeploy versions prior to 3.0.2046 used static, hardcoded encryption keys for cred storage. Low-privileged users could potentially access admin creds from registry or deployment files. Garrett unpacks his testing in his latest blog post. ghst.ly/4mjyuvw