☠ Román Medina-Heigl Hernández (@roman_soft) 's Twitter Profile
☠ Román Medina-Heigl Hernández

@roman_soft

CyberSecurity junkie since 1993. Manager, strategist/advisor and engineer. CTF player (#int3pids). Occasional researcher. Ex-Founder #RootedCon. Always learning

ID: 94132134

linkhttp://www.rs-labs.com calendar_today02-12-2009 17:22:57

14,14K Tweet

7,7K Followers

687 Following

Bobby Cooke (@0xboku) 's Twitter Profile Photo

Loki C2 blog drop! Thank you for all those who helped and all the support from the community. Big shoutout to Dylan Tran and chompie for all their contributions to Loki C2! IBM IBM Security X-Force securityintelligence.com/x-force/bypass…

Frogy (@iamthefrogy) 's Twitter Profile Photo

My entire month is dedicated to my project. github.com/iamthefrogy/fr… External ASM Tool for Bug-Hunters/Pentesters and Red-Teamers. #cybersecurity #infosec #informationsecurity #bughunting #bugbounty #bugbountytips #bugbountytip

My entire month is dedicated to my project.

github.com/iamthefrogy/fr…

External ASM Tool for Bug-Hunters/Pentesters and Red-Teamers.

#cybersecurity #infosec #informationsecurity #bughunting #bugbounty #bugbountytips #bugbountytip
Cookie Connoisseur (@browsercookies) 's Twitter Profile Photo

How do you catch a DPRK actor you ask? Here are a few things to think about; 1. They love to use a VPN when applying for jobs. Check your HR system.

☠ Román Medina-Heigl Hernández (@roman_soft) 's Twitter Profile Photo

Who said #retro is useless? Being not a "prepper" (my bad), this old walkman (with radio) and some batteries allowed me being informed during yesterday's power black-out here in Spain. In my case, 10h "isolated" (no comms at all, neither voice nor data). What a nice "experience"!

Who said #retro is useless? Being not a "prepper" (my bad), this old walkman (with radio) and some batteries allowed me being informed during yesterday's power black-out here in Spain. In my case, 10h "isolated" (no comms at all, neither voice nor data). What a nice "experience"!
Sean Heelan (@seanhn) 's Twitter Profile Photo

I wrote-up how I used o3 to find CVE-2025-37899, a remote zeroday vulnerability in the Linux kernel’s SMB implementation. Link to the blog post below 👇

ManuelMartin-Vivaldi (@mm_vivaldi) 's Twitter Profile Photo

En 1995 demosceners de toda España se juntaron con sus ordenadores #Amiga y algún PC en la (piscina de la) Posadas Party a 50 grados. 30 años después... #AmigaLives #PosadasParty #DinoSceners #hot #scene

En 1995 demosceners de toda España se juntaron con sus ordenadores #Amiga y algún PC en la (piscina de la) Posadas Party a 50 grados.
30 años después...
#AmigaLives #PosadasParty #DinoSceners #hot #scene
☠ Román Medina-Heigl Hernández (@roman_soft) 's Twitter Profile Photo

After 6 long years, LaCon priv8 securiry congress is coming back to the (h/p/c/v) scene near you. Under Chatham House rules, feel free to disclose whatever you want and prepare to meet nice (and sexy?) guys. RFP: blog.48bits.com/lacon2k25-call…

watchTowr (@watchtowrcyber) 's Twitter Profile Photo

🚨A SharePoint zero-day (CVE-2025-53770) is under active exploitation, with attackers stealing MachineKey secrets to forge __VIEWSTATE and maintain RCE. No patch exists. If you expose SharePoint to the Internet, assume breach. Reach out to via our website if you need support.

🚨A SharePoint zero-day (CVE-2025-53770) is under active exploitation, with attackers stealing MachineKey secrets to forge __VIEWSTATE and maintain RCE. No patch exists.

If you expose SharePoint to the Internet, assume breach. Reach out to via our website if you need support.
h-c0n (@h_c0n) 's Twitter Profile Photo

🚀H-C0N returns in 2026! Abierto CFP Los próximos 6 y 7 de febrero en Madrid volvemos con una nueva edición de H-C0N. ¿Quieres impartir una charla o taller y convertirte en uno de los ponentes de esta sexta edición? No lo dudes y mándanos tu propuesta a docs.google.com/forms/d/e/1FAI…

🚀H-C0N returns in 2026! Abierto CFP

Los próximos 6 y 7 de febrero en Madrid volvemos con una nueva edición de H-C0N.

¿Quieres impartir una charla o taller y convertirte en uno de los ponentes de esta sexta edición? No lo dudes y mándanos tu propuesta a docs.google.com/forms/d/e/1FAI…
☠ Román Medina-Heigl Hernández (@roman_soft) 's Twitter Profile Photo

I hadn't noticed that Hex-Rays SA's IDA 9.2 introduced new feature similar to "dereferencing" plugin. Well, the plugin is still better (for instance, in dereferencing in stack view) and the good news is that the plugin is compatible with IDA 9.2 with qt6 shim enabled