Elastic @elastic.co Elastic is The Search AI Company. We bring together the precision of search and the intelligence of AI to accelerate results that matter.
https://www.elastic.co/
Wiz io @wiz.io Secure everything you build and run in the cloud
Sam Thomas @xorpse.ghost.sh Program Analysis / Reverse Engineering
Website: https://xv.ax
Julien | MrTuxracer @mrtuxracer.bsky.social CEO @rcesecurity.com | Full-time #BugBounty | @hacker0x01.bsky.social H1-Elite | $1,500,000 Overall Bounties | ❤️ IDA Pro | Mobile Hacker
pspaul @pspaul95.bsky.social
Jorian @jorianwoltjer.com Normalize being weird.
Naaash @naaash.bsky.social I get paid to break stuff!!
Andreas Zeller @andreaszeller.bsky.social Software researcher at https://cispa.de, working on #Fandango, #S3, #FuzzingBook, #DebuggingBook. Testing, debugging, analyzing, and protecting software for a better world. Find me at https://andreas-zeller.info/
Meysam @r00tkitsmm.bsky.social Security Researcher.
Marcel Böhme @mboehme.bsky.social Software Security @ MPI for Security and Privacy
PhD @NUS, Dipl.-Inf. @TUDresden
Research Group: http://mpi-softsec.github.io
Rowan @novafacing.bsky.social fuzzing enjoyer
@novafacing@haunted.computer
Carl Smith @rwx.page Security @Google, Personal Account.
Cornelius Aschermann @is-eqv.bsky.social Fuzzing & stuff https://hexgolems.com
Advanced Fuzzing League @aflplusplus.bsky.social We want to make fuzzing better and better
Follow for updates on AFL++ & LibAFL
Adrian Herrera @adrianherrera.bsky.social Security researcher with an interest in formal methods.
B̶u̶i̶l̶d̶i̶n̶g̶ breaking things @ Interrupt Labs |
Teaching @ Australian National University
https://adrian-herrera.com- K kHz @khz.bsky.social melee, cybersecurity, leftism
Sönke @soenke.d-64.social Privacy Researcher based in Göttingen, Germany, previously working on Kernel Fuzzing @ TU Darmstadt.
Brendan Dolan-Gavitt @moyix.net AI researcher at XBOW. Security, RE, ML. PGP http://keybase.io/moyix/
434b @434b.bsky.social Vulnerability researcher | Fuzzing | Anything low-level excites me | Admin @ https://0x00sec.org | My tweets are my own | Blog: https://0x434b.dev
Michal Melewski @carste1n.bsky.social Security Engineer @ Cloudflare,
ex-Google ISE,
I use bad software and bad machines for the wrong things.
My writing: https://carstein.github.io
jiska @naehrdine.bsky.social ɿɘɘniϱnɘ ɘƨɿɘvɘɿ
🎦 youtube.com/@jiskac
📝 naehrdine.blogspot.com
🐥 twitter.com/naehrdine
🎓 hpi.de/classen
📱 reversing.training
Moritz Schloegel @mu00d8.bsky.social Faculty @CISPA Helmholtz Center doing software security, program analysis, and fuzzing
Previously at SEFCOM lab @ASU and @RUB
Marco @handle.invalid Computólogo 🇦🇷
Liikt @liikt.bsky.social CTF player for ENOFLAG and PHD student at TU Berlin
lukas seidel @pr0me.bsky.social Firmware Security • Embedded Systems • AI x Infosec •
Researcher @binarly • PhD Candidate @TUBerlin •
Capturing Flags with ENOFLAG
plonk @plonk.bsky.social Berlin. Does things with computers and phones.
stacksmashing @stacksmashing.bsky.social Security researcher with a focus on hardware & firmware. I occasionally publish stuff on YouTube. Co-founder of
hextree.io. Contact: contact@stacksmashing.net
Hasnain Lakhani @mhlakhani.bsky.social I try to learn everything. Views hopefully my own. Nerd (PL, Rust, security, AI, systems, …). Leftist. Covid conscious. AuDHD (probably). YIMBY. Free Palestine.
Samuel Groß @saelo.bsky.social Working on Project Zero, Big Sleep, and V8 Security. Personal account.
@khaledyakdan.bsky.social @khaledyakdan.bsky.social - M Jonathan Metzman @metzmanj.bsky.social I work on OSS-Fuzz
nSinus-R @nsinusr.bsky.social Captures flags with Tasteless. Assistant Professor at UoB and maintainer of FirmWire & avatar2.
maxammann @maxammann.bsky.social Security researcher and open-source enthusiast, volunteer at Digitalfabrik
Richard Johnson @richinseattle.bsky.social Fuzzing; Vulnerability Research;
Deep Learning; Reverse Engineering
Training & Publications @ http://fuzzing.io
Hacking the planet since 1995
Undercurrents.io BOFH
I'll stop the world and melt with you
Katie Paxton-Fear @insider.phd Dr, apparently. Security Adovcate @semgrep & Hacker. #BugBounty hunter & #infosec YouTuber. APIs & Interlinked OffSec, PhD in AI+Sec @hacknotcrime. she/her
James Forshaw @tiraniddo.dev Security researcher in Google Project Zero. Author of Attacking Network Protocols. Posts are my own etc.
Piotr Bazydło @chudypb.bsky.social Principal Vulnerability Researcher at the watchTowr | Previously: @thezdi | https://chudypb.github.io
realansgar (9009) @realansgar.dev 🧑💻 finding flags @fluxfingers.net
🔏 finding bugs @ Cure53
he/him
https://realansgar.dev
OrangeCon @orangecon.nl The Dutch Cybersecurity Conference! Experience the Hackers Community in Amsterdam, on June 4th 2026!
Reza Sahaf @rezasahaf.bsky.social Bug Hunter
RyotaK @ryotak.net Security researcher?
| Icon: https://twitter.com/MelvilleTw
| Keybase: http://keybase.io/ryotak
| Threads: http://threads.net/ryotkak
| Misskey: http://misskey.io/@ryotak
DEF CON Parrot🦜 @defconparrot.bsky.social Latest News, Fun Moments & Event updates from the DEF CON Community • Follow to stay updated!💛
#DEFCON33 Dates:🎉Aug 07 - Aug 10, 2025
Link of Links {
Resources🌍 •> https://linktr.ee/defconparrot
Updates🗞️ •> https://x.com/defconparrot
}
Tom Stacey @t0xodile.com Security researcher at PortSwigger. You can find all of my write-ups and research at https://thomas.stacey.se.
Luke Jahnke @nastystereo.com Blogging at https://nastystereo.com
Christian Folini @christian-folini.ch Web application security guy with a passion for OWASP's open source WAF projects and National Cyber Strategy.
Maintains "Swiss Cyber Security" starter pack and cherishes his small collection of medieval helmets.
d4d @zakfedotkin.bsky.social Zak Fedotkin
All thought are mine and mine alone
Aloïs Thévenot @techbrunch.fr Jack of all trades, master of some. CTO / Pentester
shubs @shubs.io Co-founder, security researcher. Building an attack surface management platform, @assetnote.io
erbbysam @erbbysam.bsky.social Software security, cryptography etc
CaidoIO @caido.io We help security professionals and enthusiasts audit web applications with efficiency and ease
https://caido.io
Corb3nik @atvh.dev Co-Founder @caido.io | Security Enthusiast | CTF Fanatic | Bug Bounty Hunter
d3fp4r4m @defparam.bsky.social Security Researcher
@defparam@infosec.exchange
Orange Tsai @orange.tw This is 🍊
Justin Gardner @rhynorater.bsky.social Christian | Full-time Bug Bounty Hunter | Host @ctbbpodcast.bsky.social | Advisor @caido.io | 3x LHE MVH | 🗣️ English, 日本語
ϻг_ϻε @steven.srcincite.io Hermetic Initiate. Exploring conscience and the nature of reality. I also hack things.
@gannimo.bsky.social @gannimo.bsky.social
Alex Plaskett @alexplaskett.bsky.social Security Researcher | Pwn2Own 2018, 2021, 2022, 2024 | Posts about 0day, OS, mobile and embedded security.
Bug Bounty Reports Explained @gregxsunday.bsky.social
Tal Skverer @taltechtreks.com Security Researcher | Blog writer | Hacker | DEFCON speaker | Gamer | Silly stuff lover.
https://taltechtreks.com/
Veer Singh @securityveer.bsky.social Principal Security Researcher @MSFT
Opinions are my own and do not reflect on my employer.
Dafydd Stuttard @dafyddstuttard.bsky.social Founder and Chief Swig at PortSwigger. Creator of Burp Suite and the Web Security Academy. Author of The Web Application Hacker's Handbook.
Shammah zealsham Agwor @zealsham.bsky.social Bugbounty hunter| Rust dev| The man of mankind | Application Security Engineer . OSCP in view , #Bitcoin-core contributor
R3V4N @r3v4n.bsky.social
ddǝɐuɐp @danaepp.bsky.social I help builders and breakers of code learn to find security vulnerabilities in their apps and APIs.
😈 Join 10K appsec hackers @ https://apihacker.blog/subscribe
Paedy @compr00t.bsky.social Hacking stuff at https://www.redguard.ch/
Zero ゼロ @zeroxfr.bsky.social Keyboard samurai
Sean Pesce @seanpesce.bsky.social https://seanpesce.blogspot.com
Kat Traxler @nanook.bsky.social Your Friendly Cloud Antagonist
Proficient at drawing the rest of the 🦉
exigent07 @exigent07.bsky.social Web Security Researcher | CTF Player @teambi0s
Ulises Gascón @ulisesgascon.com #OpenSource Maintainer (@nodejs.org, @expressjs.bsky.social, Lodash, Yeoman...), #TC39 Delegate and #Maker | He/Him
Rafael Gonzaga | Node.js @rafaelgss.dev Node.js Technical Steering Committee member
Socket @socket.dev Socket is the #1 software supply chain security platform. Next-gen SCA + SBOM + 0-day prevention. LOVED BY DEVELOPERS.
https://socket.dev
Mike Samuel 🟣 @mvsamuel.bsky.social Programming languages person focused on software systems problems.
Previously, first frontend engineer on Google Calendar, and was a security engineer who worked on the industrial-strength Mad Libs undergirding Gmail.
Pro-trans-rights is pro-family.
naugtur @naugtur.pl Working on supply chain security for JS. LavaMoat and Endo contributor. meet.js Poland organizer. Node.js user since v0.8.
TC39 noobie.
Addicted to teaching.
https://naugtur.pl
Matt Travi @matt.travi.org DivOps Engineer. OSS Maintainer: semantic-release, repository-settings, form8ion
bryan english @bengl.dev 🇨🇦
Staff Software Engineer - Datadog APM
(he/him/his)
Dad
Royal Oak, MI, USA
https://bryanenglish.com
Eslam Salem @netcodex.bsky.social Manager, security research @ Datadog | he/him | Chess lover | Blackhat speaker |
ex Sqreen.io, Shieldfy.io | my website: https://eslam.io
Jakub Andrzejewski @jacobandrewsky.bsky.social 💻 Fullstack Developer
🏎️ @GoogleDevExpert in Web Perf
💚 @nuxt.com EcosystemTeam
👥 Ambassador @Storyblok, @algolia, @cloudinary, @supabase
Adam Baldwin @evilpacket.net Hacker / Farmer / Builder / Breaker
clickity, hackity, pwned.™
More info: https://evilpacket.net
Guy Podjarny @guypo.com Founder of Tessl (and Snyk), reimagining software development for the AI era. Also a co-host of The AI Native Dev podcast, an angel investor, and an occasional speaker & writer.
Nicholas C. Zakas @humanwhocodes.com Creator of @eslint.org and @bredbox.app. Author. Speaker. Advisor. Coach. GitHub Star.
Mastodon: https://fosstodon.org/@nzakas
Blog: https://humanwhocodes.com
Coaching: https://humanwhocodes.com/coaching
Michaël De Boey @michaeldeboey.be 👨💻 Freelance full stack #JavaScript / @TypeScriptlang.org & @React.dev engineer 🤓
📈 Index fund investor #FIRE 🌱🔥
🎧 Drum&Bass DJ 🎛️
😻 catlover 😻
Michael Dowling @mtdowling.bsky.social Principal engineer at AWS where I work on Smithy
Michael Zasso @targos.dev
Marcin Hoppe @marcinhoppe.bsky.social I am a computer programmer. I enjoy maintaining software, fixing bugs and debugging. I also know a few things about information security.
Outside of work I am a family guy. I like good coffee. I play tennis.
Vladimir de Turckheim @v2t.dev Web, AI Agents and LLM - often Node.js diagnostics
Christophe Tafani-Dereeper @christophetd.fr Cloud and container security • Security research and open source at Datadog
🇨🇭🇫🇷
https://christophetd.fr
Ruy Adorno @ruyadorno.com Node.js TSC • Founder Engineer at @vlt.sh • Previously Google, GitHub, npm Inc. Opinions are my own.
📍 Montreal 🇨🇦
Scott Helme @scotthelme.bsky.social Hi, I'm Scott Helme, a Security Researcher, Entrepreneur and International Speaker. I'm the creator of Report URI and Security Headers, and I deliver world renowned training on Hacking and Encryption.
https://scotthelme.co.uk
Phillip Wylie @phillipwylie.bsky.social Offensive Security Professional | Phillip Wylie Show Podcast Host | The Pentester Blueprint coauthor | TribeOfHackers Red Team | https://linktr.ee/phillipwylie
Faction Security @factionsecurity.com Faction is an open-source tool for:
- Automated Pentest Reporting
- Track Vulnerability Remediation
- Collaborate With Your Team
- and more
https://www.factionsecurity.com
#appsec #redteam #securitytools #cybersecurity #infosec #hacking
@n3k0ng0.bsky.social @n3k0ng0.bsky.social
@digitalwarhead.bsky.social @digitalwarhead.bsky.social Success is not final; failure is not fatal: it is the courage to continue that counts.
https://darknetdiaries.com/
Guillaume | Freesec @freesec.bsky.social
Kevin Nyawakira @kerminal.bsky.social 📌That Hacker guy with a BMW (E46)
📌Application Security Engineer @TeamIrembo
📌 2018 @Cyberstarspro Winner
📌 Security Research | Generative AI
🇧🇮🇷🇼
smaury @smaury.bsky.social Co-Founder @shielder.com
CTF Player jbz.team
Cliff Jumping Lover (23mt max so far)
Burp Suite @burpsuite.bsky.social Burp Suite is the leading software for web security testing.
Frycos @frycos.bsky.social Private account! Red teamer @codewhitesec. @frycos@infosec.exchange @frycos@X
@jtof-fap.bsky.social @jtof-fap.bsky.social Freelance Professional Pentester
x1m @x1m.bsky.social hacker, founder Hacksclusive