harisec @harisec.bsky.social Interested in web security, bug bounties, machine learning and investing. SolidGoldMagikarp
terjanq @terjanq.me security enthusiast that loves hunting for bugs in the wild. co-founder and player of @justCatTheFish.
infosec at @google. opinions are mine.
From: https://twitter.com/terjanq
Lukas Weichselbaum @webappsec.dev Leading Google's web security team.
Passionate about web security and making secure-by-default web development the norm. Contributed to web platfom security features like CSP, Fetch Metadata, COOP and Trusted Types.
Gerald Benischke @beny23.github.io Maker, breaker and fixer of software. Adventures in #appsec and #agile: beny23.github.io he/him
Nicolas Grรฉgoire @agarri.fr Web hacker ๐
Burp Suite Pro trainer ๐จโ๐ซ
Maintainer of @mastering-burp.agarri.fr ๐ ๏ธ
Liran Tal @lirantal.com ๐ฆ Node.js Secure Coding: http://nodejs-security.com
๐ @GitHub Star
๐
@OpenJS Pathfinder award for Security
๐ฅ DevRel at @snyksec
Tanya Janca | SheHacksPurple @shehackspurple.bsky.social Secure Code Trainer - Best-selling author of Alice and Bob Learn Secure Coding & Alice and Bob Learn Application Security. #AppSec she/her
https://shehackspurple.ca ๐ป
Daniel Cuthbert @dcuthbert.bsky.social Ageing hacker, long time documentary photographer. Black Hat Review board. Now sitting on numerous government cyber security boards so I guess that means Iโve grown up right?
garethr @garethr.bsky.social VP Product @snyksec. @openpolicyagent Conftest maintainer. Developer, designer, product. Open source geek. Devops Weekly. @gdsteam alum. he/him.
Gareth Heyes @garethheyes.co.uk Web security researcher at PortSwigger. Author of JavaScript for Hackers, Shazzer and Hackvertor.
https://garethheyes.co.uk/#latestBook
Josh Grossman (tghosth ๐ป) @joshcgrossman.com Friendly AppSec Ghost ๐ป
https://appsecg.host
Tib3rius @tib3rius.bsky.social Web App (mostly) Hacker | Cybersecurity Educator | Content Creator | Ex-Brit | Links: http://linktr.ee/tib3rius (he/him) ๐บ๐ธ A mostly unserious person. @therealc3rul34n.bsky.social is bae ๐ฅฐ
James Kettle @jameskettle.com Director of Research at @portswigger.net
Also known as albinowax
Portfolio: https://jameskettle.com/
Robin @digi.ninja Hacker, coder, climber, runner, triathlete.
Always learning.
Co-flounder of SteelCon
OWASPยฎ Foundation @owasp.org We improve the security of apps with community-led open source projects, 260 local chapters, and tens of thousands of members worldwide. Famous for OWASP Top 10
Rory McCune @mccune.org.uk Security geek, Containers, Kubernetes, Golang/Ruby, hillwalking
Home Page :- https://www.mccune.org.uk
Blog:- https://raesene.github.io
Simon Bennetts @psiinon.bsky.social ZAP Project Lead
ZAP by Checkmarx @zaproxy.org The Worlds Most Popular Web App Scanner.
kingthorin_rm @kingthorin.bsky.social IT Sec guy, zaproxy co-lead, WSTG co-lead, VWAD co-lead, OWASP Ottawa volunteer, Hacโบ3r, supporter of oxford commas, #INTJ. (Opinions == mine) ๐
OWASP Juice Shop @owasp-juice.shop Probably the most modern and sophisticated insecure web application. Only we offer a 100% @owasp.org Top Ten incompliance guarantee! Skeets by @bkimminich.bsky.social
OWASP London Chapter @owasplondon.bsky.social #OWASP London Chapter
Follow us on X/Facebook/Meetup/Eventbrite/LinkedIN/YouTube. Mastodon: https://infosec.exchange/@owasplondon
๐ Webpage: https://owasp.org/london
๐ Meetup: https://meetup.com/OWASP-London
๐บ YouTube: https://youtube.com/OWASPLondon
OWASP Ottawa @owaspottawa.bsky.social The OWASP Chapter for Canada's Capital region.
https://owasp.org/ottawa/
Join us for monthly meetups discussing a variety of security topics.
PortSwigger Research @portswiggerres.bsky.social Web security research from the team at PortSwigger.
PortSwigger @portswigger.net We are a leading provider of software and learning on web security. We make Burp Suite and the Web Security Academy.
Dafydd Stuttard @dafyddstuttard.bsky.social Founder and Chief Swig at PortSwigger. Creator of Burp Suite and the Web Security Academy. Author of The Web Application Hacker's Handbook.
David Paterson @djpaterson.dev Software Engineer at PortSwigger and Man City season ticket holder
Sam Stepanyan @securestep9.bsky.social OWASP London Chapter Leader. #OWASP Global Board Member. OWASP #Nettacker Project Leader. #AppSec Consultant, #CISSP. Follow me on Twitter/X and Mastodon https://twitter.com/securestep9 https://infosec.exchange/@securestep9
Dominique Righetto @righettod.eu ๐จโ๐ป AppSec enthusiast | ๐ถ Addicted to Shetland Sheepdogs | ๐ Open Source/AppSec/OWASP junkie | ๐ OWASP Secure Headers Project Leader.
๐ฉ Opinions mentioned are mine.
garthoid @garthoid.bsky.social Father,Husband,Software Security Architect, Ethical Hacker,Musician,& Karate Geek.OWASP Ottawa Chapter Leader. Trying to learn Kendo. Devious-Plan.com founder. He/Him
Mastodon is better @garthoid@infosec.exchange
๐๐จ๐ฆ
Mastering Burp Suite @mastering-burp.agarri.fr Tips and tricks for Burp Suite Pro ๐ ๏ธ
Not affiliated with @portswigger.net ยฉ๏ธ
Managed by @agarri.fr ๐ซ๐ท
Additional free resources ๐
http://hackademy.agarri.fr/freebies
Bjรถrn Kimminich @bkimminich.bsky.social IT Product Group Lead at Kuehne+Nagel; @owasp-juice.shop Project Leader; @owasp-de.bsky.social Chapter Co-Leader; @owasp.org Project Committee Chair; @magic.wizards.com Amateur Player @mull2five.bsky.social
Erlend Oftedal @webtonull.bsky.social Security researcher at Crosspoint Labs. AppSec. Tweets are my own and do not express the opinion of my employer. OWASP. retire.js
Jeremy Long @ctxt.bsky.social Builder, infosec, SCA and SAST enthusiast, blue team.
Founder of OWASP dependency-check.
https://github.com/sponsors/jeremylong
Dan @basic-123.bsky.social
SeanWrightSec @seanwrightsec.com Principal Application Security Engineer focused on all things #AppSec. Occasionally dabble in my own research. Also keen gamer and aspiring photographer.
Soroush Dalili ๐๐ @irsdl.bsky.social Hacker (ethical), web appsec specialist, trainer, tools builder & apps breaker, X: @irsdl
https://secproject.com/
https://soroush.me/
https://burpsuite.ninja/
Adriana Porter Felt @apf.bsky.social I like writing silly skeets, but that doesn't pay so I also make Google Chrome. mamรก, Eng Director, volunteer at Second Harvest. ๐บ๐ฒ๐จ๐ท
Twitter: @__apf__
Emily Stark @estark.bsky.social Encryption, HTTPS, certificates, web security, security UX, software engineering and management, TMI about parenting. Opinions are my own.
Eiji Kitamura / ใใผใ @agektmr.com Google Chrome DevRel Identity Tech Lead - Anything about browser identity features: passwords, OTPs, passkeys, identity federation, digital credentials, etc
Philippe De Ryck @philippederyck.bsky.social I help developers protect companies through better web security
Web Security Academy @websecacademy.bsky.social Free web security training from PortSwigger.
Koto @kkotowicz.bsky.social Security ninja wannabe / board game geek / photon catcher
Michal ล paฤek @spazef0rze.bsky.social In your web, securing your app. Hacker, webdev, speaker, engineer. Security shoptet.cz, ex-report-uri.com, ex-teenager. HTTPS = How To Transfer Private Sh๐ฉ. Also https://infosec.exchange/@spazef0rze
Marco Squarcina @minimalblue.bsky.social Senior Scientist @TU Wien / Web & Mobile Security / #drumandbass DJ
๐ฉ with @mhackeroni.bsky.social We_0wn_Y0u kukhofhackerei Team Austria
๐ https://minimalblue.com/
Michele Spagnuolo @miki.it ๐ผ: Staff Information Security Engineer at Google. ๐ ๏ธ: Rosetta Flash, BitIodine. ๐: web security, โ , โฟ, finance. Data is the most dangerous form of opinion.
Ben Stock @benstock.bsky.social Tenured Faculty @c-i-s-p-a.bsky.social Helmholtz Center for Information Security
Dag Flachet @dagflachet.bsky.social Co-founder of Codific. Professor and board member of the Geneva Business School. Doctorate in behavioral psychology. Entrepreneur and Appsec champion.
Louis Columbus @louiscolumbus.bsky.social VentureBeat contributor on cybersecurity; husband & dad; writer and speaker on AI, cybersecurity, ERP, and zero trust.
LinkedIn: https://www.linkedin.com/in/louiscolumbus/
VentureBeat: https://venturebeat.com/author/louis-columbus/
Sandy Carielli @sandycarielli.bsky.social VP & Principal Analyst at Forrester, covering #appsec. Post about security, the Muppets, #NHLBruins, my beagle. All opinions are my own. she/her
Grant Ongers @rewtd.bsky.social AppSec guy, OWASP member for life and general beardness.
Brixes @brixes.bsky.social Co-founder at a data company.
d4d @zakfedotkin.bsky.social Zak Fedotkin
All thought are mine and mine alone
Orange Tsai @orange.tw This is ๐
Datadog Security Labs @securitylabs.datadoghq.com Read our Security Labs blog: https://securitylabs.datadoghq.com
Subscribe to our monthly newsletter: https://securitylabs.datadoghq.com/newsletters/
Eslam Salem @netcodex.bsky.social Manager, security research @ Datadog | he/him | Chess lover | Blackhat speaker |
ex Sqreen.io, Shieldfy.io | my website: https://eslam.io
Kennedy Toomey @kennedytoomey.bsky.social Application Security | Security Research and Advocacy @ Datadog
Phillip Wylie @phillipwylie.bsky.social Offensive Security Professional | Phillip Wylie Show Podcast Host | The Pentester Blueprint coauthor | TribeOfHackers Red Team | https://linktr.ee/phillipwylie
LiveOverflow ๐ด @liveoverflow.bsky.social wannabe hacker... he/him
๐ฑ grow your hacking skills https://hextree.io
pwneip @pwneip.bsky.social Principal RTO @F500, SANS Instructor & #SEC565 Red Team Ops Author, Red Team Village lead, former Bishop Fox, US Air Force. Tweets are my own, memes are stolen
Adam Shostack @adamshostack.bsky.social Threat modeling. BH Review Board. Affiliate Professor, UW. Fixed autorun. Helped create CVE.
Not sure why we're building graphs on yet another (effectively) centralized system. https://infosec.exchange/@adamshostack
Taggart @taggart-tech.com @mttaggart@infosec.exchange. Displaced Philly boy. Executive Director of @ifin-intel.org. Threat hunter. Educator. Dad. General in the AI Resistance.
taggartinstitute.org
wtfbins.wtf
linktr.ee/mttaggart
@lodrina.bsky.social @lodrina.bsky.social "liberal arts section of the computer underground" -j. menn
Azeria @azeria-labs.com Founder of Azeria Labs, Trainer, Author of Blue Fox: Arm Assembly Internals & Reverse Engineering
Jake Williams @malwarejake.bsky.social Breaker of software, responder of incidents, IANS Faculty, VP R&D Hunter Strategy.
Fancybutt ๐ @bluescreenofwin.bsky.social Founder of Glass Security Consulting. Official DEF CON trainer. Principal Security Engineer and Cybersecurity Researcher.
Jay Beale @neutrino.bsky.social @InGuardians CEO, Bustakube, Peirates, BastilleLinux, #kubernetes @BlackHatEvents Trainer,#neurodivergent fam, he/him, jaybeale@infosec.exchange
Christopher Peacock @securepeacock.bsky.social I find weird things on networks.
#PurpleTeam | Ex Raytheon MSSP, SCYTHE, & GD | Taught at BlackHat & DEFCON | #100DaysofSigma | Keep exploring, keep learning, and stay curious.
K @turb0yoda.com DFIR @ Mandiant | Ex-CrowdStrike - Ex-Cylance | Mekanik | This bsky consists of my personal views | Also found on other social media near you
John Hammond @johnhammond.bsky.social Hacker. Friend. Cybersecurity Researcher at Huntress.
Conrad @ericconrad.com SANS Fellow, CTO of Backshore Communications, GIAC GSE #13, SABR member, golden age arcade restorer. Peaks Island, Maine
Lenny Zeltser @lennyzeltser.com Builder of security products and programs. Teacher of those who run them.
https://zeltser.com
Tim Medin @timmedin.bsky.social Kerberoast Guy โข RedSiege CEO โข Hater of Pants โข Former SANS 560 Author, Senior Instructor โข Packers owner โข Work Req: http://redsiege.com/contact
Mike Saunders ๐บ๐ฆ @hardwaterhacker.bsky.social Photographer. Lover of the outdoors. Musician.
Red Siege Principal Consultant so I can pay for my hobbies.
#PhotographersUnited <- Check out this great community!
IG: https://www.instagram.com/hardwaterhacker/
Jeff McJunkin @jeffmcjunkin.bsky.social IT generalist with an infosec slant. Testing out the new hotness over here.
Phil Hagen @philhagen.com DFIR, security, networking, all things tech, OneWheel, Radinn, travel, LEGO, and probably a whole lot more in small and sporadic bits. (Squirrel!)
Fierce and unapologetic ally. He/him/his.
Lee Whitfield @dfirlee.bsky.social DFIR, LEGO, Manchester United, Marvel, Technology, xLights
Phill Moore @phillmoore.bsky.social
Carlos Perez @thedarkoperator.bsky.social - Cybersecurity since 1998
- Information Security jack of all trades
- Hacker
https://www.darkoperator.com
DDI Training @digitaldefenseinstitute.com Advanced Cybersecurity Training provider focusing on security operations, threat hunting, digital forensics, and incident response. Learn more: https://digitaldefenseinstitute.com
Markus @mascho.bsky.social ๐ป Blue Team Training @ Blue Cape Security
Mike Cohen @mikec415.bsky.social Not that other guy. iOS and Mac developer since 1984. Music (especially Wilco, The Clash, and the Talking Heads), theater, cats, and life in San Francisco. he/him ๐ณ๏ธโ๐
Mehmet Ergene @cyb3rmonk.bsky.social https://academy.bluraven.io
Threat Hunting & Research, Detection Engineering | Microsoft Security MVP
#KQL #DFIR #DataScience
All is one.
Opinions are my own
http://posts.bluraven.io
https://github.com/Cyb3r-Monk/Threat-Hunting-and-Detection
Adam Harrison @harrisonamj.com Digital Forensic Investigator, Incident Responder, HAM, ambassador for flip-flops and purveyor of fine Dad Jokes. #DFIRFit
Alexis Brignoni๐ชซ @abrignoni.com ๐ค Digital forensics nerd.
๐น Mobile forensics is my passion.
๐ก Opinions are mine and subject to change.
๐๏ธ Co-host of The Digital Forensics Now Podcast
๐ค He/Him
๐ abrignoni.github.io
James LV @jamesleytevidal.bsky.social SANS Principal Instructor. IT Security practitioner. GSE 209. Gamer and runner in my abundant spare time. Likely being sarcastic. Florida Man as a Service. He/Him
Medium.com/@james.leyte.vidal
Jessica Hyde @b1n2h3x.bsky.social DFIR, USMC Vet, she/her
Gerald Auger, PhD @geraldaugerphd.bsky.social Passionate About Cybersecurity | Sharing Passion to Help Individuals Discover, Engage, and Level Up A Cyber Career | Tweets Sharing Cyber Tips, Tools, Love๐ Go to SimplyCyber.io
Richard Davis @davisrichardg.bsky.social DFIR Investigator at Microsoft and part-time YouTuber. Follow @13Cubed for 13Cubed updates.
Ali Hadi | B!n@ry @binaryz0ne.bsky.social DFIR and Adversary Simulation
13Cubed @13cubed.bsky.social The official Bluesky account for 13Cubed. Follow @davisrichardg for my personal account.
Tyler @secshoggoth.bsky.social Incident Response, Forensics, Malware Analysis, Reverse Engineering, Cyber Security, RPG, Geek, Nerd, #DFIR
Opinions are my own and not those of my employer.
Chris Sanders ๐ ๐ง @chrissanders88.bsky.social Digital Forensic Analyst, Researcher, Author
Ed.D.
Founder Applied Network Defense and Rural Tech Fund
Former Mandiant, InGuardians, DoD
Author: Intrusion Detection Honeypots, Practical Packet Analysis, Applied NSM
The Taggart Institute @taggartinstitute.org The Taggart Institute exists to provide low-cost, high-quality technology training to everyone in a welcoming, supportive community.
We believe you can succeed. The hardest step is the first one. Join us and find out.
https://taggartinstitute.org
Rot26 ๐บ๐ธ๐ค๐บ๐ฆ @rot26.wtf Infosec. Professor. Studies Conflict, Cyber, and Influence Operations. Also, Emergency Management, Community Resilience and Weather. Optimist. Christian, but not a jerk about it. Fella from way back. Tries to be a helper. He/Him
Bryson Bort ๐ฆ๐ด @brysonbort.bsky.social ๐ฆ
Olaf Hartong @olafhartong.nl Security researcher with a camera | @FalconForce.nl | Microsoft MVP | Snow man role model | https://youtube.com/@olafhartong
Joe FitzPatrick @securelyfitz.bsky.social Trainer and Researcher, SecuringHardware.com
Joe Grand @joegrand.bsky.social Hardware hacker, computer engineer, former L0pht member and juvenile delinquent, sometimes known as Kingpin. https://joegrand.com
stacksmashing @stacksmashing.bsky.social Security researcher with a focus on hardware & firmware. I occasionally publish stuff on YouTube. Co-founder of
hextree.io. Contact: contact@stacksmashing.net