-
Tweets983
-
Followers444
-
Following434
-
Likes194
Making security by design lovable for humans to keep AI agents on track appsecmatters.com/threat_modeling
This is the way: "Observing such direct payoff from previous hardening work was even more rewarding than finding and fixing more bugs" hacks.mozilla.org/2026/05/behind…
Let's try something else with bug bounty programs before deciding to suspend them appsecmatters.com/bug_bounty_fut…
A paradigm change cannot be addressed by minor iterations, even with many of those: "The traditional response is to add more scanning, more automation, more patching" "You can't close that gap by reacting faster to something that's already too fast" chainguard.dev/unchained/ship…
One of the biggest impacts of AI that goes kind of unnoticed is that we’re about to see an explosion of poorly built applications. Specifically, applications built completely by AI with no thought of security whatsoever. 🧵
My big takeaways from this discussion: 1. It’s largely that many applicants don’t have the skills to do the work 2. Few companies are looking to train anyone 3. Recruiting/HR is a big part of the problem because they are a non-expert and inefficient middleman to the process 4. Another big part of the problem is the entire process around hiring, interviews and how little time hiring managers have to do it right— assuming that even know what that is So to simplify and exaggerate it—most applicants are under-skilled, and the entire ecosystem around hiring is wasteful and broken.
Why are there so many open infosec jobs while so many are looking for infosec work?
While brainstorming on how to best combine in my daily work genuine security/confidentiality with meaningful business impact, becandid.tech was born. More than excited by this mission to foster mutual and honest feedback, starting with the salary expectations use case.
Given Microsoft has pretty large security teams, and a newfound focus on security: How did Recall pass security review - if it even did? Details coming out make it seem like while building this cool-sounding AI feature, there was no emphasis on common-sense security and privacy.
Why are there so many open infosec jobs while so many are looking for infosec work?
22 years have passed and making "security a top priority in practice" is still an unsolved problem: microsoft.com/en-us/security… vs wired.com/2002/01/bill-g…
Imagine a bank got robbed and now they are blaming the cleaning lady who allegedly forgot to close a window. This is effectively IT security's reaction to ransomware incidents after somebody clicked on a link. Also: We had a blast at #SCS23 yesterday! The Human Factor is key.
Black Alps 2023 is next week! We can't wait to gather the community and have a great time again! If you don't already have your conference ticket, jump on board and get it! blackalps.ch/ba-23/
Interesting. Looks like a rebellion has started.
🎉 Exciting news! Zed Attack Proxy (ZAP) is now a founding member of the @swsecproject (SSP)! Join us in supporting open source security projects at softwaresecurityproject.org. #Cybersecurity #SSP #ZAPROXY
Are you looking forward to @gopherconuk? We certainly are and so is @securingapps, one of our speakers for this year's event. They'll be giving a talk on 'Go security pitfalls: 2 lessons from the battlefield at Grafana Labs'. Grab your tickets here - buff.ly/2wWLe6K
Hey folks! We are happy to announce that #GreHack23 will take place on November 17th and 18th, in Grenoble. Stay tuned, more information coming soon!
The Grafana Labs Bug Bounty Program is intended to encourage ethical hackers to help find and responsibly report security vulnerabilities in our software. grafana.com/blog/2023/05/0…
@h0ng10 @1ns0mn1h4ck x.com/securingapps/s…
Here are the slides of my talk at Insomni'Hack "Go security pitfalls: 2 lessons from the battlefield At Grafana Labs" @1ns0mn1h4ck #INS23 securingapps.com/blog/Go_securi…
The @1ns0mn1h4ck talk "Go Security Pitfalls" from @securingapps is now available and it is really good. Highly recommended if you are dealing with Golang code. youtube.com/watch?v=NoFRUy…
#SaveTheDate #BSidesZH IS BACK!🥳 Coming on 9th Sept, with our usual particular format: bsideszh.ch/call-for-paper… hosted again by @OntinueMXDR We are also opening our #CfP, check deadlines👇 1/2 #PleaseRT #DFIR #InfoSec #ThreatIntel #ThreatHunting @SecurityBSides
@rationalpsyche Thank you ! The corresponding slides: securingapps.com/blog/Go_securi…
Here are the slides of my talk at Insomni'Hack "Go security pitfalls: 2 lessons from the battlefield At Grafana Labs" @1ns0mn1h4ck #INS23 securingapps.com/blog/Go_securi…
Christophe Tafani-Der... @christophetd
6K Followers 1K Following 302 Location: https://t.co/tP3JTD3HQp
Pascal Junod @cryptopathe
3K Followers 2K Following cryptographer - certified nerd god - founder @modulo_p_sa - ex-@snap - co-founder @strong_codes - has-been professor - trail runner - kayaker - aidjolat
joernchen @joernchen
8K Followers 518 Following Your mom's favorite hacker. Also at @[email protected]
Christian Folini @ChrFolini
3K Followers 983 Following Author of the #ModSecurity Handbook 2ed, forme OWASP @CoreRuleSet project co-lead and trainer. Program chair @SwissCyberStorm and board National Cyber Strategy
Axelle Ap. @cryptax @... @cryptax
6K Followers 288 Following Mainly about security, OS, mobile phones. The postings on this page are solely my own opinion and do not represent my employer.
GreHack @GrehackConf
5K Followers 1K Following GreHack is a hacking & scientific infosec conference in Grenoble, France. Nov. 28 & 29, 2025
Sébastien Fanti @sebastienfanti
9K Followers 8K Following LEXING: GLOBAL NETWORK OF ATTORNEYS SPECIALIZED IN EMERGING TECHNOLOGY LAW:#IT #IP #PRIVACY #FINTECH #AI LAWYER&aDATA PRIVACY COMMISSIONER,CIPP/E🏀BearsBBCM
Nicolas Rémond @nremond
3K Followers 993 Following Hacker, snowboarder and crypto enthusiast. CTO at @swissborg.
aissa saghro @SaghroAiss24566
0 Followers 60 Following
FoodCloud @FoodCloudInc
0 Followers 2 Following
Swarrth @Kyurem__
32 Followers 547 Following
Catherine Cecil @C_Cecil520
77 Followers 2K Following Investor | Digital Assets | Europe & US I saved my business by investing during the pandemic.
Natacha perrier @NatachaPe89648
26 Followers 503 Following
Cecilia Logan @logan_ceci69588
3 Followers 172 Following Recruiting webshell engineers to penetrate websites, with a monthly salary of up to $100,000. If interested, please contact https://t.co/W6PUBZ2ZBc
Nikhil Sahoo @nikhilsahoo1232
41 Followers 318 Following Security Engineer @ Microsoft | Application Security | Pentester | SAST | DAST
Phesliski @phesliski95070
7 Followers 113 Following
Flo @flol178
11 Followers 36 Following
kolten @Merl1ng
72 Followers 4K Following
Luhan Meireles @MeirelesLuhan
6 Followers 150 Following
Cloud Dev Chris @clouddevchris
497 Followers 6K Following I like AI \ science \ cloud native tech \ devops \ machine learning \ infosec \ codification \ applied technology \ automation and whimsical prose.
GopherCon UK @gopherconuk
6K Followers 4K Following GopherCon UK is the annual event for Go developers. Join us in London, 11–13 August 2026, for three days of the latest #golang training.
n1nja007 @n1nja007
79 Followers 4K Following
Plasma @b1tw1z4rd
0 Followers 5K Following
Hans-Martin Münch @h0ng10
1K Followers 874 Following CEO of MOGWAI LABS GmbH. I play CTF with powerpuffpwn.
dcrt @d3c4r7
132 Followers 1K Following
Alexandre Duc @ocalex86
55 Followers 72 Following Cybersecurity professor at HEIG-VD, HES-SO, Switzerland Cryptographer
Alvaro Muñoz @pwntester
13K Followers 511 Following Security Researcher with @XBOW. CTF #int3pids. Opinions here are mine! bluesky: https://t.co/9HRRzpBECt
mayur gupta🇮🇳 @RisingHunter_
410 Followers 856 Following I like to do bug bounty and explore myself | member of @synackredteam | @bugcrowd | @hackerone
Reasonable_In🖊 @TranslationInLo
302 Followers 5K Following Billionaire bros, Anti - { Liberal, Feminist, Colonist, Communist, Sugardaddy, Protagonist, Capitalist, Socialist} Group of 34 guys using same acc😂bonito sor
Olivier Mengué @omengue
503 Followers 1K Following Passionate software engineer: #golang, #Perl, jq (and many more tools). #OpenAPI. Trekker, skier, traveller. French. #Mastodon: @[email protected]
pspaul @pspaul95
1K Followers 859 Following source code connoisseur @Sonar_Research | CTF @FluxFingers | @[email protected]
Marcos Oliveira @Marcosrogeriol
20 Followers 321 Following Eu sou Jesus. Eu sou família. Eu sou flamengo. I am Jesus Christ. I am family man. I am Flamengo.
m1tz @_m1tZ
238 Followers 925 Following Web Security Expert | Bug Hunter | Käferjäger | https://t.co/DT86afEp4J https://t.co/WzdEqXoJv9
Garrot Thibault @ThibaultGarrot
11 Followers 155 Following
𝑾𝒊𝒛𝒌 @wizkkkkk
154 Followers 3K Following
gomez @gmzzpt
61 Followers 1K Following
João G. @Warri0rJ0hnny
71 Followers 919 Following Do security officers dream of electric sheep? My opinions are just my own and, any meanings inferred are driven by your own interpretation - just yours.
a.m. @ffonhope18
1 Followers 75 Following
secaouse onyibe @SecaouseO
0 Followers 7 Following
MaximeLionel @MaximeLionel1
5 Followers 216 Following
so long and thanks fo... @ant0inet
3K Followers 0 Following
SwiftOnSecurity @SwiftOnSecurity
412K Followers 9K Following computer security person. former helpdesk.
Pascal Junod @cryptopathe
3K Followers 2K Following cryptographer - certified nerd god - founder @modulo_p_sa - ex-@snap - co-founder @strong_codes - has-been professor - trail runner - kayaker - aidjolat
Matthew Green @matthew_d_green
156K Followers 1K Following I teach cryptography at Johns Hopkins. Mostly on BlueSky these days at https://t.co/GI4QlxYTdk.
@mikko @mikko
225K Followers 948 Following Researcher and a best-selling author. Keynote talks at RSA, Black Hat & DEF CON. TED Speaker. Chief Research Officer at Sensofusion.
Torkel Ödegaard @torkelo
4K Followers 296 Following Grafana Labs Co-Founder, Grafana creator & and tech lead. Avid book reader, SciFi fan, coder, guitar player.
Grafana @grafana
72K Followers 163 Following ☁️ Open observability cloud ☁️ Join the Grafana community 👇
joernchen @joernchen
8K Followers 518 Following Your mom's favorite hacker. Also at @[email protected]
Adriana Porter Felt @__apf__
67K Followers 963 Following I like writing silly Tweets, but that doesn't pay so I build things at @googledeepmind. Principal Engineer. ex-@googlechrome. volunteer @2ndharvest. 🇺🇸🇨🇷
Cooper @Ministraitor
5K Followers 234 Following I do software, a tiny bit of hardware and a lot of security. I got carried away with my conference filming hobby and now film over 30 cons each year.
Christian Folini @ChrFolini
3K Followers 983 Following Author of the #ModSecurity Handbook 2ed, forme OWASP @CoreRuleSet project co-lead and trainer. Program chair @SwissCyberStorm and board National Cyber Strategy
Insomni'hack @1ns0mn1h4ck
9K Followers 40 Following Security conference and hacking contest founded and organized by @orangecyberch since 2008 in Lausanne, Switzerland. CFP is now LIVE!
ph0wn @ph0wn
945 Followers 77 Following smart devices CTF, 24-25 novembre 2023 Mastodon: @[email protected]
Ange @angealbertini
25K Followers 918 Following Reverse engineer, file formats expert. Corkami, CPS2Shock, PoC||GTFO, Sha1tered, Magika... Security engineer @ Google. He/him.
thaddeus e. grugq @thegrugq
128K Followers 420 Following Hacker :: researcher :: PhD candidate @warstudies @KingsCollegeLon :: [email protected] :: PGP https://t.co/dYipV8y3bo
ANSSI @ANSSI_FR
84K Followers 54 Following Compte officiel de l'Agence nationale de la sécurité des systèmes d'information (ANSSI) | Retrouvez les alertes de #cybersécurité sur le compte @CERT_FRBaldanos @Baldanos
752 Followers 109 Following
GovCERT.ch @GovCERT_CH
14K Followers 22 Following National Cyber Security Centre (NCSC), Computer Security Incident Response Team of the Swiss Government (https://t.co/S9JncbbeYk)
Axelle Ap. @cryptax @... @cryptax
6K Followers 288 Following Mainly about security, OS, mobile phones. The postings on this page are solely my own opinion and do not represent my employer.
Philippe Oechslin @tradeoph
231 Followers 150 Following
BugBunny.ai - Continu... @BugBunny_ai
3K Followers 5 Following AI pentesting at scale. Real findings, validated PoCs. N°1 on HackerOne. 89+ confirmed CVEs across Google, Python, Meta, OpenAI, etc.
@[email protected]... @OttiliaW
310 Followers 421 Following bye x/twitter/whatnot 👋 hacker engagement manager @ intigriti https://t.co/PzLHBG3VNm https://t.co/crwcoNV0QT
Bentley Systems, Inc @BentleySystems
18K Followers 2K Following Advancing Infrastructure throughout the world.
The Software Security... @swsecproject
439 Followers 0 Following
GopherCon UK @gopherconuk
6K Followers 4K Following GopherCon UK is the annual event for Go developers. Join us in London, 11–13 August 2026, for three days of the latest #golang training.
Adam Berman @adamberman_13
182 Followers 415 Following Ultimate Frisbee, SF sports, and sometimes security/technical leadership. Eng director @ https://t.co/JiiqL4GQny
Hans-Martin Münch @h0ng10
1K Followers 874 Following CEO of MOGWAI LABS GmbH. I play CTF with powerpuffpwn.
Alexandre Duc @ocalex86
55 Followers 72 Following Cybersecurity professor at HEIG-VD, HES-SO, Switzerland Cryptographer
Sonar Research @Sonar_Research
11K Followers 5 Following Cutting-edge security research by @SonarSource to educate the world about code security across all software. We're also at @[email protected] 🦣
pspaul @pspaul95
1K Followers 859 Following source code connoisseur @Sonar_Research | CTF @FluxFingers | @[email protected]
Nicolò Fornari @rationalpsyche
51 Followers 52 Following Penetration Tester. Art passionate. Friends call me "grandpa".
Crash Override @crashappsec
3K Followers 228 Following The only developer productivity insights platform with code-to-cloud visibility through deep build inspection.
Sam Curry @samwcyo
101K Followers 1K Following
Gergely Orosz @GergelyOrosz
346K Followers 3K Following Writing @Pragmatic_Eng, the #1 software engineering newsletter on Substack. Author of @EngGuidebook. Formerly Uber & Skype.
EOS @SadFaceSmith
153 Followers 1K Following platform security engineer @grafana // retweets as a service
alokmenghrajani @alokmenghrajani
797 Followers 931 Following Ex-Security Engineer at Block and Meta. Maker of CTFs, code golfer, author of HackLang, Bitcoin cold storage, and TLS at scale. Maker of https://t.co/OXgnI8I7ij.
David Trejo @dtrejo@i... @ddtrejo
553 Followers 105 Following Eng @ https://t.co/EAIj9F2lEW. Past clients @CreditKarma @Aconex @Triple_Byte @NeoInnovate @BrownCSDept @Voxer @Cloudera @VAVetBenefits. Opinions mine.
Nicolas Berrod @nicolasberrod
64K Followers 10K Following Journaliste @le_Parisien, chef de service adjoint santé&climat. 📘 Auteur du livre Urgence vitale https://t.co/E0FtcJHY6Y
Sébastien Boisgérau... @boisgera
67 Followers 458 Following 🦉 Mathematics for Humans 🖥️ Software Engineering 🚀 Technology 🎓 Higher Education 🏦 Mines Paris – PSL
Jay Freeman (saurik) @saurik
389K Followers 135 Following I developed Cydia for jailbroken iOS devices, was a (local) politician in California, and focus on security issues for decentralized computation and networking.
Sandesh Anand @JubbaOnJeans
2K Followers 634 Following AppSec since before it was cool. Building @seezo_io · BoringAppSec pod+newsletter. Currently overthinking Security in the AI SDLC. Bangalore.
Valentin Hervieu @ValentinHervieu
205 Followers 215 Following Product Engineer living in the French Riviera. I enjoy building, especially building the right thing right.
Graham Neray @grahamneray
1K Followers 1K Following Cofounder/CEO at @osohq. Prev @MongoDB. Amateur boxer. Husband of @meghanpgill, dad of 3. He/him. https://t.co/ptp8Hu2zcP
yan @bcrypt
74K Followers 332 Following security engineering @brave / helped build Let's Encrypt, Privacy Badger, and HTTPS Everywhere @eff / physics alum @mit / rabbit enthusiast
Lewis Ardern @LewisArdern
2K Followers 636 Following Security Researcher @Semgrep & Host of @SecuriTnC. Application Security is my 🍞 & 🧈.
SecuriTEA & Crumpets @SecuriTnC
193 Followers 60 Following Talking all things security with professionals, hosted by @LewisArdern Upcoming Guest: Gareth Heyes - PortSwigger Join the community! https://t.co/6m1KmgQENr
Crystal Hirschorn @cfhirschorn
3K Followers 1K Following VP Engineering @ Zoa (green energy for all ♻️💚). Tech Committee member @CitizensAdvice. Avid runner. #ResilienceEngineering (she/her)
vixentael 🛡🇺�... @vixentael
25K Followers 2K Following I do software security, security engineering and applied cryptography | problem-solver @cossacklabs | she | Ukraine
Dinesh Bolkensteyn @DBolkensteyn
325 Followers 551 Following Vulnerability Researcher @GitLab; Ex @SonarSource; Loves running all kind of experiments; Enjoying the Digital Nomad lifestyle as a family!
Azeria @Fox0x01
120K Followers 623 Following Sneaky bit flipper | CEO @azeria_labs | Author of “Arm Assembly Internals & RE” @BlueFoxBook | Adjunct Professor @SAISHopkins | Forbes 30u30
Maddie Stone @maddiestone
62K Followers 796 Following Security Researcher. Previously Google Project Zero and TAG | 0days all day. Love all things bytes, assembly, and glitter. she/her.
Juho Nurminen @jupenur
1K Followers 461 Following OSS product security. “𝑅𝑒𝑡𝑤𝑒𝑒𝑡 𝑐𝑒𝑙𝑒𝑏𝑟𝑖𝑡𝑦 𝑓𝑜𝑟 𝑎𝑙𝑙 𝑡ℎ𝑒 𝑤𝑟𝑜𝑛𝑔 𝑟𝑒𝑎𝑠𝑜𝑛𝑠” and “𝑝𝑟𝑜𝑏𝑎𝑏𝑙𝑦 𝑎 𝑓𝑎𝑙𝑠𝑒 𝑎𝑙𝑎𝑟𝑚”, really.
Jenn @dreamsindigitaI
178 Followers 276 Following Application Security @Shopify. CTFs, video games 🎮, general funsies.
Luke O'Malley @dlukeomalley
284 Followers 351 Following Founder @semgrep, making it expensive to exploit software. Prev @PalantirTech and @MIT. Opinions are my own.
Mathias Payer @gannimo
8K Followers 383 Following Securitatis inquisitor and professor at @EPFL_en leading the #HexHive 🐝 group, focusing on system/software security. @[email protected] (he/him)
𝐋𝐚𝐤𝐬𝐡 ... @laraghavan
526 Followers 322 Following Founder of Cyb3rSyn Labs | Helping accelerate the transition away from mainstream management practices!































