Hacking the Cloud @hackingthe.cloud An open source encyclopedia of offensive security techniques that can be used in cloud environments. Created and maintained by @frichetten.com
Chris Farris @jcfarris.bsky.social Cloud Security Nerd
https://www.chrisfarris.com
https://www.primeharbor.com
techy @techy.detectionengineering.net Creator of Detection Engineering Weekly (https://detectionengineering.net), Sec Research/Intel/Detection @ Datadog
Greg Foss @gregfoss.com Security Research Leader @ Datadog
Views are strictly my own
David Behroozi @rootothez.bsky.social Solo developer. Doing the impossible; faster. https://speedrun.cc AWS Community Builder.
Fred Baguelin @udgover.bsky.social Security Researcher @Datadog.
Matt Fuller @matthewdfuller.bsky.social Building https://wut.dev (a better AWS console). Cloud Security EM @Stripe. Ex-Founder @CloudSploit_, acquired by @AquaSecTeam. Ex-Adobe.
jstnkndy @jstnkndy.bsky.social Infosec professional, beverage snob, and fantasy book consumer. Vice President @ Atredis Partners. Forever terrified of Kithicor.
Marco Lancini @marcolancini.it 💼 Director of Security
🏠 MarcoLancini.it
📬 CloudSecList.com
📚 CloudSecBooks.com
💬 I write about security strategy, technical leadership, and cloud security.
OWASP® Foundation @owasp.org We improve the security of apps with community-led open source projects, 260 local chapters, and tens of thousands of members worldwide. Famous for OWASP Top 10
PortSwigger Research @portswiggerres.bsky.social Web security research from the team at PortSwigger.
James Kettle @jameskettle.com Director of Research at @portswigger.net
Also known as albinowax
Portfolio: https://jameskettle.com/
Yan Cui @theburningmonk.com I help engineers build better software faster with serverless | AWS Serverless Hero
Newsletter: https://theburningmonk.com/subscribe
Matthew Conway @mattreduce.com 🔍 Threat Intelligence @ Remitly
✍️ CTI newsletter and blog @sourcesmethods.com
Kyler Middleton @letsdodevops.com Cloud Security Chick | LetsDoDevOps.com | Microsoft MVP (DevOps) | AWS Community Builder x3 (AI Engineering)| Day Two DevOps Podcast Host | Former Hashi Ambassador | Open Source Zealot
pip0 @pipzero.bsky.social Information security practitioner.
All things cti collection.
MorattiSec @lizzie.coffee I do cloud security. I blog semi-annually with Dopamine Driven Development. Co-author on TunnelVision.
https://blog.lizzie.coffee
XPN @xpnsec.com Hacker for hire at @specterops.bsky.social
Blog: https://blog.xpnsec.com
Jonathan Walker @promptinjection.bsky.social I enjoy security in all of its forms but mostly cloud security. Enjoy golang, vuejs, terraform, aws, kubernetes, docker, and hacking together interesting tools.
Eric Hammond @esh.dev Startup builder.
Startup investor.
AWS enthusiast.
AWS Hero.
Disclosure: Long $AMZN
{he/him}
Jason Geffner @geffner.bsky.social Senior Principal Engineer for AI & Product Security at Workday. Formerly at Google, Microsoft, and Amazon.
Jake Williams @malwarejake.bsky.social Breaker of software, responder of incidents, IANS Faculty, VP R&D Hunter Strategy.
Silas Cutler @silascutler.bsky.social You may know me from your server logs.
#Malware, Hacks, Internet Scanning, #CTI
@droner.bsky.social @droner.bsky.social researcher. exploit dev. pdx. hacking @ atredis
https://dronesec.net/
Tracebit @tracebit.bsky.social Assume Breach using Security Canaries | https://tracebit.com
Black Hills Information Security @bhinfosecurity.bsky.social Specializing in pen testing, red teaming, and Active SOC. We share our knowledge through blogs, webcasts, open-source tools, and Backdoors & Breaches game.
blackhillsinfosec.com & poweredbybhis.com
Datadog Security Labs @securitylabs.datadoghq.com Read our Security Labs blog: https://securitylabs.datadoghq.com
Subscribe to our monthly newsletter: https://securitylabs.datadoghq.com/newsletters/
ThinkstCanary @thinkstcanary.canary.tools Know. When it matters.
https://canary.tools
Red Siege @redsiege.com Penetration Testing, Purple Team, Red Team & Adversary Emulation.
Let our Offense, Prepare your Defense. https://redsiege.com
#weareoffensive
Electronic Frontier Foundation @eff.org We're the Electronic Frontier Foundation. We're a nonprofit that fights for your privacy and free speech online. Find all of EFF's social media accounts at eff.org/social.
MITRE ATT&CK @attack.mitre.org MITRE ATT&CK® - A knowledge base for describing the behavior of adversaries. Replying/Following/Reposting ≠ endorsement.
GreyNoise @greynoise.io GreyNoise analyzes Internet background noise. Use GreyNoise to remove pointless security alerts, find compromised devices, or identify emerging threats.
TrustedSec @trustedsec.com End-to-end Cybersecurity consulting team leading the industry, supporting organizations, and giving back. #HackThePlanet
https://trustedsec.com/
Security Onion @securityonion.bsky.social By defenders. For defenders.
Peel back the layers of your network and make your adversaries cry.
https://www.securityonion.com
Graylog @graylog.bsky.social 🌍 Trusted Threat Detection & Incident Response solutions. Experience the difference with our unmatched capabilities. #SIEM #APISecurity #LogManagement #InfoSec
Cloudflare @cloudflare.social Cloudflare is the world’s leading connectivity cloud, and we have our eyes set on an ambitious goal — to help build a better Internet.
Ars Technica @arstechnica.com Original news, reviews, analysis of tech trends, and expert advice on the most fundamental aspects of tech.
Datadog HQ @datadoghq.com Datadog is the monitoring and security platform for cloud applications.
@matt-muir.bsky.social @matt-muir.bsky.social Security Researcher @ Datadog
Mainly malware analysis and cloud security
Josh Grossman (tghosth 👻) @joshcgrossman.com Friendly AppSec Ghost 👻
https://appsecg.host
hotnops @hotnops.bsky.social Does stuff at @specterops
Cloud security research
Ian Kretz @ikretz.bsky.social Security Research @ Datadog
IAMTrail (Previously MAMIP) @iamtrail.bsky.social AWS silently updates Managed IAM policies all the time.
We catch every single change (Policies, Endpoints, GuardDuty)
Learn more at IAMTrail.com
Matthew Green @matthewdgreen.bsky.social I teach cryptography at Johns Hopkins. https://blog.cryptographyengineering.com
@theyhack.bsky.social @theyhack.bsky.social infosec | security research: https://theyhack.me/cve/
Opinions are mine.
fwd:cloudsec @fwdcloudsec.org Non-profit, community-based cloud security conference.
Mike @theomegabit.xyz AWS Pro | Cloud | Security @trek10.com | Tech enthusiast Musically trapped between a metallic headbang and a bass wobble | Photographer (bsky): @betapixels.photography
Katie Knowles @siigil.bsky.social Security Researcher @ Datadog. 🐶 Head in the (Azure) clouds.
Sometimes blogging, always curious. Aim to be, rather than to seem.
Blogs at https://kknowl.es.
Nick Frichette @frichetten.com Staff Security Researcher @datadoghq | DEF CON/Black Hat USA main stage speaker | he/him | OSCP OSWE | I turned hacking AWS into a career | Tweets are my own | Created https://hackingthe.cloud
vx-underground (automated mirror) @vxundergroundre.bsky.social The largest collection of malware source code, samples, and papers on the internet.
Password: infected
(unofficial, this is a bot! Maintained by a private individual, the bot can't handle retweets or replies, support soonish)
AWS Cloud Security Weekly @aws-cloudsec.bsky.social http://aws-cloudsec.com/about
Bluesky @bsky.app official Bluesky account (check username👆)
Bugs, feature requests, feedback: support@bsky.app