erin morgenstern @erinmorgenstern.bsky.social Author of The Night Circus (2011) & The Starless Sea (2019), creator of The Phantomwise Tarot (2022). she/her. Ask me about my cat. https://linktr.ee/erinmorgenstern
Orkfotografie @orkfotografie.bsky.social Dutch photographer based in Utrecht, but often found in random woods anywhere
Luke vdB @thebarse.bsky.social Senior Writer and Editor at Failbetter Games. Art creature. Half-asleep. I don't hate you, my face just looks like that. 'barse' online. They/Them.
Matt Lees @mattlees.bsky.social SU&SD / Video Tech Goblin
Mathy Vanhoef @vanhoefm.bsky.social Prof. @KU_Leuven | Research in Network & Software Security | Known for WPA2 KRACK attack, Dragonblood, and FragAttacks | Open to consultancy | Ex-Postdoc NYU
Alex Chapman @ajxchapman.bsky.social Full Time #BugBounty Vulnerability Researcher
https://blog.ajxchapman.com
Edwin van Andel @yafsec.bsky.social http://Zerocopter.com | CTO | Speaker | Security | Hacking | ALT-S Organizer | נקר ירוק | Last Unicorn Con | Defcon 003120 | @iamthecavalry | @yafsec@mastodon.online
Piotr Bazydło @chudypb.bsky.social Principal Vulnerability Researcher at the watchTowr | Previously: @thezdi | https://chudypb.github.io
Troy Hunt @troyhunt.com Founder & CEO of @haveibeenpwned.com, the most trusted name in data breach intelligence. Speaker, blogger, Microsoft Regional Director. Gold Coast, Australia.
Dave Aitel @daveaitel.bsky.social
Orange Tsai @orange.tw This is 🍊
Alyssa Milburn @noopwafel.bsky.social I hate computers (but also enjoy their cursed natures) and love people. (You can find my occasional posts over on Mastodon.)
@bz2.bsky.social @bz2.bsky.social
Daan Keuper @daankeuper.bsky.social Security researcher @defionlabs.bsky.social
Bas Bosschert @asby.org Penetration Tester, Red-Teaming, Escape Room Designer (https://cybersecurity-escaperoom.com/), CTF organizer (ebCTF, SHA2017, MCH2022, WHY2025)
Khaled Nassar @notkmhn.bsky.social
Alex Plaskett @alexplaskett.bsky.social Security Researcher | Pwn2Own 2018, 2021, 2022, 2024 | Posts about 0day, OS, mobile and embedded security.
Wessel Hissink @wessec.bsky.social Things I say on Twitter are personal opinions and views.
Team Blue | DFIR | Bug bounties
Full time Blood Glucose manager (T1D)
https://blog.wesselhissink.nl
metlstorm @metlstorm.risky.biz Unix berserker, retired hacker-con organiser (Kiwicon!) and now technology-editor-slash-sysadmin-janitor at Risky.biz.
Was @metlstorm on Twitter, am metlstorm@infosec.exchange on Masto.
DEFION Research Labs @defionlabs.bsky.social We are the security research division of
DEFION Security, formerly known as Sector 7 from Computest
https://defion.security/en/research-labs/
David van der Sluis @davidvdsluis.bsky.social Security specialist (hacking/managing/engineering), Developer
Tijs Hofmans @tijshofmans.nl Chef nieuwsredactie en redacteur privacy/security bij @tweakers.net | Feestdagenexpert @ FijneDagVan.nl | Ik wil mijn sponsor SouthVPN bedanken voor het mogelijk maken van deze bio | www.TijsHofmans.nl
Paul Arendt @misterarendt.bsky.social Art Director at Failbetter Games & Creative Director of Sunless Skies. FIlm & theatre nerd. Occasional actor.
Also at instagram.com/misterarendt/
Mikey @0xmachos.com Former @AbertayHackers Vice Gaffer. Purveyor of macOS security & rum. @warstudies postgrad Terrorism, Radicalisation & British intelligence.
Cas van Cooten @casvancooten.com @chvancooten on the bird app 🐦
---
Benevolently malicious offensive security enthusiast || OffSec Developer & Malware Linguist || NimPlant & NimPackt author || @ABNAMRO Red Team
Thomas Bosboom @thomasbosboom.bsky.social Dutch (import #010) guy working in a London based team of a US company. Talks about Apple, Security, Tech.
Remember: outrage and panic are common content engagement tactics.
Joost Schellevis @schellevis.net journalist @ NOS
Daniël Verlaan @daniel.verlaan.xyz journalist RTL Nieuws ☎️ 06 2089 8142 📫 daniel.verlaan@rtl.nl 🏆 winnaar Wie is de Mol, Tegel & Loep 📕🎙️🍿 boek, podcast en docu ‘Ik weet je wachtwoord'
SinSinology @sinsinology.bsky.social Pwn2Own 20{22,23,24,24.5}, i look for 0-Days but i find N-Days & i chase oranges 🍊
https://summoning.team/
Armin Briegel @scriptingosx.com MacAdmin, Consultant, and Author, writes on scriptingosx.com and macadmins.news
cts @gf256.bsky.social Hacker and meme enjoyer
Gareth Heyes @garethheyes.co.uk Web security researcher at PortSwigger. Author of JavaScript for Hackers, Shazzer and Hackvertor.
https://garethheyes.co.uk/#latestBook
buherator @buherator.bsky.social "I'm interested in all kinds of astronomy."
https://scrapco.de
Mostly cross-posting from Fediverse: @buherator@infosec.place
dragosr @dragostech.bsky.social Autonomous Carbon Based LLM with 42 years of tuning on Information Attack and Defense.
Host of CanSecWest, and PacSec.
Security audits, code, IR, LLM, red team consulting.
Specialize in Firmware, and RF.
VA7MOV
HD Moore @hdm.io runZero & Metasploit
jduck @jduck.me Continuously learning about computer security through research and development.
Izobashi @izobashi.bsky.social Security researcher at the ZDI
Izobashi.info
Matthias Kaiser @matthiaskaiser.bsky.social Vulnerability Researcher. 0xACED. Ex-Apple. Posts are my own.
jiska @naehrdine.bsky.social ɿɘɘniϱnɘ ɘƨɿɘvɘɿ
🎦 youtube.com/@jiskac
📝 naehrdine.blogspot.com
🐥 twitter.com/naehrdine
🎓 hpi.de/classen
📱 reversing.training
Tijme Gommers @tijme.bsky.social Offensive Security at ABN AMRO Bank 🏦. Red Teaming, Malware Development & Reverse Engineering 🐙. Cyber Cyber Cyber ⚡️.
ϻг_ϻε @steven.srcincite.io Hermetic Initiate. Exploring conscience and the nature of reality. I also hack things.
The Dustin Childs @dustinchilds.bsky.social Just a simple information security gnome trying to make his way through the universe. Part-time patch wrangler. Tweets are just my opinion and such. Got questions about patches or bug bounties? My DMs are open. Signal: DustinChilds.17
Ricky Mondello @rmondello.com 💚 Friend
🏳️⚧ Trans, nonbinary, they/them
😷 Caring, careful
🔑 Passkeys & passwords
🧛🏻♀️ It’s not a phase
🦔 Speedrunner
Jeff Moss @thedarktangent.bsky.social thedarktangent@defcon.social
Gergely Orosz @gergely.pragmaticengineer.com Writing The Pragmatic Engineer (@pragmaticengineer.com), the #1 technology newsletter on Substack. Author of The Software Engineer's Guidebook (engguidebook.com). Formerly at Uber, Skype, Skyscanner. More at pragmaticengineer.com
OffensiveCon @offensivecon.bsky.social OffensiveCon is a highly technical international security conference focused on offensive security only. Organized by Binary Gecko GmbH.
NinjaLikesCheez @ninjalikescheez.bsky.social Destroyer of dreams. Maintainer of dissident's shitty code. Clutch Developer. Security & Tech mainly, with a hint of personal rage.
stacksmashing @stacksmashing.bsky.social Security researcher with a focus on hardware & firmware. I occasionally publish stuff on YouTube. Co-founder of
hextree.io. Contact: contact@stacksmashing.net
Phil Stokes ⫍🐠⫎ @philofishal.bsky.social macOS security researcher espousing no one's opinions but my own. Dogged follower of #lufc, at least until the world stops going round (IYKYK).
philastokes.com
Mr. Macintosh @mrmacintosh.bsky.social macOS Platform Engineer🧑💻 I tweet about macOS +New & Old Macs 🖥️ OCLP Evangelist 💻 http://MrMacintosh.com 📺 http://youtube.com/@Mr.Macintosh 🌳 http://linktr.ee/mrmacintoshblog
Tom Bridge @tombridge.com Bluesky for Chaos. Current CTO, Former Non-Profit Founder. Music is rad, do lots of it. Go see the show.
Dirk-jan @dirkjanm.io Hacker at outsidersecurity.nl. Researches Entra ID, AD and occasionally Windows security. I write open source security tools and do blogs/talks to educate others on these topics. Blog: dirkjanm.io
James Kettle @jameskettle.com Director of Research at @portswigger.net
Also known as albinowax
Portfolio: https://jameskettle.com/
Stef @stefvandop.nl KPN redteam, member of a hackerspace in amsterdam, bla bla.
He/him. I believe that climate change is real and that vaccines are good.
Mostly here for infosec stuff.
Check us out for next year: https://orangecon.nl/
XPN @xpnsec.com Hacker for hire at @specterops.bsky.social
Blog: https://blog.xpnsec.com
Yarden Shafir @yardenshafir.bsky.social A circus artist with a visual studio license
Thijs Bosschert @thice.bsky.social Allround Security, IR & SOC professional. Escape room, CTF & game creator. Organizer WHY2025 CTF. Mediocre lockpicker. CTF teams: Eindbazen, Jobless Hackers and Spotless.
https://cybersecurity-escaperoom.com/
https://thice.nl/
https://ctf.why2025.org
James Forshaw @tiraniddo.dev Security researcher in Google Project Zero. Author of Attacking Network Protocols. Posts are my own etc.
OrangeCon @orangecon.nl The Dutch Cybersecurity Conference! Experience the Hackers Community in Amsterdam, on June 4th 2026!
Csaba Fitzl @theevilbit.bsky.social macOS Security -- Trail running 🏃 -- Mountains ⛰ -- Tolkien fan
Olaf Hartong @olafhartong.nl Security researcher with a camera | @FalconForce.nl | Microsoft MVP | Snow man role model | https://youtube.com/@olafhartong
Huib Modderkolk @huibmodderkolk.bsky.social Onderzoeksjournalist Volkskrant
Going dark
h.modderkolk at volkskrant.nl
Signal: hmodderkolk.20
Failbetter Games | Wishlist Mandrake on Steam! @failbettergames.com Posts by @itshannahflynn.bluesky.com, communications director. Mandrake is a narrative rural life sim, coming to Steam Early Access. Also Fallen London, Sunless Sea, etc. Press: press at failbettergames.com
TrendAI Zero Day Initiative @thezdi.bsky.social TrendAI Zero Day Initiative™ (ZDI) is a program designed to reward security researchers for responsibly disclosing vulnerabilities.
Matthew Garrett @mjg59.eicar-test-file.zip Former biologist. Actual PhD in genetics. Security, OS security teaching at https://www.ischool.berkeley.edu.
Blog: https://codon.org.uk/~mjg59/blog
Signal: @mjg.59
He/him
Opinions expressed here are mine, not my employer's
Alex Ionescu @ionescu.bsky.social Windows Internals Author, Developer, Reverse Engineer, Security Researcher, Speaker, Trainer, and most recently Nation State Hacker.
Core OS Platform Developer at Apple, Hyper-V Vendor at Microsoft, Chief Architect at CrowdStrike and now Director at CSE.
Selena Larson @selenalarson.bsky.social loves dogs, sports, memes. she/her. podcaster. "bluesky's humblest resident nailfluencer 💅" - Jerry
my heart is in the west 🌵🌊 views mine.
Tom Uren @tom.risky.biz Author of the Seriously Risky Business cyber security newsletter
Łukasz @maldr0id.bsky.social Military-grade reverse engineer @ Google, working on Android malware
Got mistaken for a member of Project Zero once.
Everything here is my own opinion
he/him ✨🌈🦄
Mark Dowd @mdowd.bsky.social Internet hacker
Patrick Gray @patrick.risky.biz https://risky.biz/
Zack Whittaker @zackwhittaker.com Security editor, TechCrunch
Signal: zackwhittaker.1337
My stories: techcrunch.com/author/zack-whittaker
My newsletter/blog: this.weekinsecurity.com- R Ronald Volgers @rvolgers.bsky.social
Alex Stamos @stamos.org CPO/CSO of Corridor.dev, teaching at Stanford.
Meredith Whittaker @meredithmeredith.bsky.social President of Signal, Chief Advisor to AI Now Institute
Accidental CISO @accidentalciso.net I accidentally became the CISO. I didn't want this job, but the job chose me. I'm scared, and I want to go home.
https://www.accidentalciso.net
Chris Bing @chrisbing.bsky.social Cyber, natsec and foreign affairs. Formers with ProPublica, Reuters and CyberScoop
https://bing-chris.medium.com/how-to-contact-me-d2fd4bd3ed7b
Maddie Stone @maddiestone.bsky.social Security Researcher at Google Project Zero. 0-days all day. Love all things reverse engineering. she/her
Catalin Cimpanu @campuscodi.risky.biz ☆ Cybersecurity reporter
★ Newsletters at Risky Business
#infosec #cybersecurity
https://risky.biz
Matthijs R. Koot @cyberwar.nl IT, privacy, security, democracy. PhD. PGP: 51F9 8FC9 C92A 1165 (http://keybase.io/mrkoot). Employed as IT security specialist.
Mastodon: @mrkoot@infosec.exchange
LinkedIn: /in/mrkoot
Lennaert89 @lennaert89.bsky.social Interested in infosec / hacking / osint / dfir / bugbounty!
Formerly Zerocopter.com, currently Head of Triage at Intigriti.com
Head CSIRT over at divd.nl
Hacknotcrime Advocate
Aut viam inveniam aut faciam.
Matt Burgess (WIRED) @mattburgess1.bsky.social Security writer @wired.com
Cybercrime, privacy, surveillance, and more.
Signal: mattburgess.20 | Email: matt_burgess@wired.com
Marcus Hutchins @malwaretech.com threads.com/@malwaretech
https://linkedin.com/in/malwaretech
https://marcushutchins.com
Lesley Carhart @hacks4pancakes.com I am eminently qualified to speak from experience about a variety of dumpster fires.
ICS DFIR at Dragos, martial artist, marksman, humanist, level 14 Neutral Good rogue, USAF retired. I post *very serious* things about infosec. Thoughts my own. Enby. 🏳️🌈
Rob Joyce @rgblights.bsky.social Cyber guy. Former NSA cybersecurity director and chief of TAO. Lover of memes. Warning - occasional outrageous Christmas light content.
Will Dormann is on Mastodon @wdormann.bsky.social I play with vulnerabilities and exploits.
While this site initially showed promise, I've grown tired with its lack of improvement.
You'll find me @wdormann@infosec.exchange on Mastodon.
Lily Hay Newman @lhn.bsky.social Security reporter for WIRED Magazine. she/her/my man. Signal +1 (347) 722-1347
Patrick Howell O’Neill @patrickhowelloneill.com Journalist at Bloomberg News in DC. Signal: @howelloneill.01, email: patoneill1@bloomberg.net https://www.bloomberg.com/authors/AXb8dLPHBFc/patrick-howell-oneill
Kevin Collier @kevincollier.bsky.social I cover digital threats for NBC News. Tip me! @kevincollier.01 on signal, kevin.collier@nbcuni.com. NYC, from West Virginia.
Jack Rhysider @jackrhysider.bsky.social Creator of Darknet Diaries.
Verification: https://twitter.com/JackRhysider/status/1675298532406984707
Jen Gentleman @jenmsft.bsky.social I work on the Windows engineering team at Microsoft and help with feedback for Start menu, Settings, taskbar, input + more
You can find me on most of the other social media apps including Twitter and reddit with the same account name @jenmsft
Ray [REDACTED] @rayredacted.com Past: Host of "Tribe of Hackers"; Assoc. Producer "Darknet Diaries."
Current: Cybersecurity researcher and executive. Also, father of the fastest climber who has ever lived. Seriously.
Warning: I talk about my son ALOT
“Ut scandis, alios subleva.”
Kevin Beaumont @doublepulsar.com cybersecurity weather man. scanning the horizons for cloudy cyber. Expert at nothing except computer rubbish. Anti-ransomware since 2015.
Azeria @azeria-labs.com Founder of Azeria Labs, Trainer, Author of Blue Fox: Arm Assembly Internals & Reverse Engineering
Chris Krebs @thekrebscycle.bsky.social Aka @c_c_krebs over there
Kim Zetter @kimzetter.bsky.social Journalist - cyber/natn'l security. Speaker. Georgetown adjunct prof. Author - COUNTDOWN TO ZERO DAY: Stuxnet and the Launch of the World's First Digital Weapon
Signal: KimZ.42
https://www.zetter-zeroday.com
Tarah Wheeler @tarah.org CSO of TPO.group ♦️ EFF Board of Directors♦️she/her ♦️ bestselling author but only that one time
Ian Coldwater 🧊🚫 @lookitup.baby Kubernetes SIG Security Co-Chair. Minneapolis. They/them. Stay punk 🏴
MSP feed info: https://bsky.app/profile/amityf.bsky.social/post/3mrv36uo4pc2a
Dmitri Alperovitch @dmitri.silverado.org Geopolitics, Russia, China, Cyber
Chairman @silverado.org
Author of WorldOnTheBrink.com
Host GeopoliticsDecanted.com podcast
Founder Alperovitch Institute for Cybersecurity Studies at Johns Hopkins SAIS
Co-Founder CrowdStrike
@DAlperovitch elsewhere
cje @cje.io founder @bugcrowd && co-founder @disclose_io || hacker, entrepreneur, executive, advisor || عصا موسى || #w00w00