Shielder (@shieldersec) 's Twitter Profile
Shielder

@shieldersec

InfoSec boutique.
Owning things since 2014.
We love to go for the extra mile, where we usually find the best 🦟🐞🪲🪳🐛🐜🕷 the others miss.

ID: 2601330848

linkhttps://www.shielder.com calendar_today03-07-2014 09:03:07

456 Tweet

1,1K Takipçi

2 Takip Edilen

smaury (@smaury92) 's Twitter Profile Photo

👋🏿 hackers! I'm looking for an #AppSec 🥷🏿/🧙🏿 to join our team at Shielder! If you are looking for a chill company which will invest in you and give you paid #research time, please hit me up! #hiring #vr More info ⬇️ (RT appreciated) romhack.io/job-opportunit…

Shielder (@shieldersec) 's Twitter Profile Photo

Attending TheSAS2025 in the beautiful Bali🏝️? Make sure not to miss Pit's talk about his novel research on the macOS 🍎 sandbox and how to bypass it. 🗓️ Wednesday, October 23 - 15:10

Attending <a href="/TheSAScon/">TheSAS2025</a> in the beautiful Bali🏝️?
Make sure not to miss <a href="/suidpit/">Pit</a>'s talk about his novel research on the macOS 🍎 sandbox and how to bypass it.
🗓️ Wednesday, October 23 - 15:10
Shielder (@shieldersec) 's Twitter Profile Photo

🚨 New Open Source Audit Alert! 🚨 Shielder, with OSTIF Official & CNCF, audited Karmada: 🔍 6 issues found (1 high, 1 medium, 2 low, 2 info) ✔️ Most fixed, others planned. 🗣️ to Pit and TheZero 🍉 on BlueSky Full details in the blog post! shielder.com/blog/2025/01/k…

OSTIF Official (@ostifofficial) 's Twitter Profile Photo

#Karmada showed camaraderie with their security audit! Navigated with support from the CNCF and auditing by Shielder, the work is now available publicly- read on below! 👇

#Karmada showed camaraderie with their security audit! Navigated with support from the <a href="/CloudNativeFdn/">CNCF</a> and auditing by <a href="/ShielderSec/">Shielder</a>, the work is now available publicly- read on below! 👇
Shielder (@shieldersec) 's Twitter Profile Photo

In Lausanne for Insomni'hack? Don’t miss the chance to meet our very own Francesco Enrietti! If you're into cursed OAuth hacking techniques or breaking mobile apps, find a comfy spot -- you might be there for a while!

In Lausanne for <a href="/1ns0mn1h4ck/">Insomni'hack</a>? Don’t miss the chance to meet our very own <a href="/not4nhacker/">Francesco Enrietti</a>! If you're into cursed OAuth hacking techniques or breaking mobile apps, find a comfy spot -- you might be there for a while!
Shielder (@shieldersec) 's Twitter Profile Photo

Last week Apple released MacOS 13.4 which contains a fix for a vulnerability Pit exploited to escape the Sandbox. Update now and stay tuned for the technical details! Ref: support.apple.com/en-us/122373

Last week <a href="/Apple/">Apple</a> released MacOS 13.4 which contains a fix for a vulnerability <a href="/suidpit/">Pit</a> exploited to escape the Sandbox. 
Update now and stay tuned for the technical details!
Ref: support.apple.com/en-us/122373
TheZDIBugs (@thezdibugs) 's Twitter Profile Photo

[ZDI-25-657|CVE-2025-54440] Samsung MagicINFO 9 Server MagicInfoWebAuthorClient Unrestricted File Upload Remote Code Execution Vulnerability (CVSS 9.8; Credit: Paolo Cavagli, Abdel Adim Oisfi, and Nicola Davico of Shielder) zerodayinitiative.com/advisories/ZDI…

TheZDIBugs (@thezdibugs) 's Twitter Profile Photo

[ZDI-25-655|CVE-2025-54438] Samsung MagicINFO 9 Server downloadChangedFiles Directory Traversal Authentication Bypass Vulnerability (CVSS 9.8; Credit: Paolo Cavagli, Abdel Adim Oisfi, and Nicola Davico of Shielder) zerodayinitiative.com/advisories/ZDI…

smaury (@smaury92) 's Twitter Profile Photo

👋🏿 Hackers! Are you a Red Teaming Wizard 🧙🏿 looking for a new challenge? Shielder is hiring a Red Teaming Lead to join our crew! More info ⬇️ (share appreciated) #hiring #redteaming romhack.io/job-opportunit…

Shielder (@shieldersec) 's Twitter Profile Photo

Attending #TheSAS2025? Don't miss our gangster Paolo Cavaglià pull off a credential heist, taking down a PAM and going from no info to full infra compromise!

Shielder (@shieldersec) 's Twitter Profile Photo

Attending #theSAS25? Meet Paolo Cavaglià for his PAM pwnage talk! It won't be recorded and it might *wink wink* contain a cool drop you don't want to miss 👀