#  @nickvangilder Nick VanGilder
Nick VanGilder posts on X about red, rizz, in the, crowdstrike the most. They currently have [-----] followers and [---] posts still getting attention that total [------] engagements in the last [--] hours.
### Engagements: [------] [#](/creator/twitter::119276278/interactions)

- [--] Week [------] -63%
- [--] Month [-------] -84%
- [--] Months [---------] +7,132%
- [--] Year [---------] +31,450%
### Mentions: [--] [#](/creator/twitter::119276278/posts_active)

- [--] Months [--] +159%
- [--] Year [--] +400%
### Followers: [-----] [#](/creator/twitter::119276278/followers)

- [--] Week [-----] +1.10%
- [--] Month [-----] +6.60%
- [--] Months [-----] +59%
- [--] Year [-----] +99%
### CreatorRank: [-------] [#](/creator/twitter::119276278/influencer_rank)

### Social Influence
**Social category influence**
[technology brands](/list/technology-brands) [stocks](/list/stocks) [celebrities](/list/celebrities) [countries](/list/countries) [travel destinations](/list/travel-destinations) [gaming](/list/gaming) [musicians](/list/musicians) [automotive brands](/list/automotive-brands) [nfl](/list/nfl)
**Social topic influence**
[red](/topic/red), [rizz](/topic/rizz), [in the](/topic/in-the), [crowdstrike](/topic/crowdstrike) #54, [okta](/topic/okta), [curated](/topic/curated), [list](/topic/list), [space](/topic/space), [ai](/topic/ai), [united states](/topic/united-states)
**Top accounts mentioned or mentioned by**
[@hackinglz](/creator/undefined) [@ukdanielcard](/creator/undefined) [@timb_machine](/creator/undefined) [@okta](/creator/undefined) [@ninjaparanoid](/creator/undefined) [@cyb3rops](/creator/undefined) [@jw4lsec](/creator/undefined) [@nick](/creator/undefined) [@daveksu](/creator/undefined) [@blackroomsec](/creator/undefined) [@jamieantisocial](/creator/undefined) [@securityweekly](/creator/undefined) [@tesla](/creator/undefined) [@elonmusk](/creator/undefined) [@travofoz](/creator/undefined) [@xpn](/creator/undefined) [@bknu](/creator/undefined) [@bsidespyongyang](/creator/undefined) [@avamander](/creator/undefined) [@xpyr0x](/creator/undefined)
**Top assets mentioned**
[Crowdstrike Holdings Inc (CRWD)](/topic/crowdstrike) [Microsoft Corp. (MSFT)](/topic/microsoft) [SwissCheese (SWCH)](/topic/swisscheese) [IBM (IBM)](/topic/ibm) [Tesla, Inc. (TSLA)](/topic/tesla) [New York Times Co. (NYT)](/topic/$nyt) [DoorDash Inc. (DASH)](/topic/doordash) [FilesCoins Power Cu (FILECOIN)](/topic/files)
### Top Social Posts
Top posts by engagements in the last [--] hours
"Red teamers: Are you struggling to conduct effective reverse proxy or AiTM-styled attacks against Okta to emulate adversaries like Scattered Spider Comment this post and Ill DM you my custom Evilginx phishlet that I wrote for Okta. Bonus it works with only ONE triggerso you can host it on an Azure VPS with a Microsoft-issued domain with only one certificate (e.g. your-subdomain-here.eastus2.cloudapp.azure dot com)which should help get you past most corporate proxies"
[X Link](https://x.com/nickvangilder/status/1722051913091309929) 2023-11-08T00:42Z [----] followers, 31.2K engagements
"Red teamers: Early on in my offensive security career I relied heavily on popular C2 frameworks like Metasploit PowerShell Empire Cobalt Strike etc. during my engagements. Im sure this is probably fairly common for many of us in this space. However somewhere along the way it began to bother me that I didnt really understand how C2 frameworks worked under the hood. So I set out to address that. For better or worse I decided that the solution to the problem was to write my own (very basic) C2 framework. I didnt do this because I felt that the community needed yet another C2 framework (it doesnt"
[X Link](https://x.com/nickvangilder/status/1722783185631596725) 2023-11-10T01:08Z [----] followers, 105.1K engagements
"With the amount of focus on @Okta by threat actors of late a key control that doesnt seem widely discussed is Oktas Behavioral Detection Policies. In short if an access token / session cookie has been stolen and replayed by an adversary a behavioral detection policy (if enabled/implemented) can check to see if the IP address that is replaying the cookie is different from the IP for which it was issued. If the answer is yes the policy would enforce another round of MFA (step-up authentication). Now ideally hardware security tokens or Okta FastPass would prevent this in the first place; however"
[X Link](https://x.com/nickvangilder/status/1722964267777786160) 2023-11-10T13:07Z [----] followers, [----] engagements
"@NinjaParanoid @cyb3rops @jw4lsec @Nick Thanks for clarifying Chetan"
[X Link](https://x.com/nickvangilder/status/1723159848823484663) 2023-11-11T02:04Z [----] followers, [---] engagements
"Ive been writing a blog post that Im considering titling Okta for Red Teamers - *Perimeter Edition*. So far in terms of content I have: techniques for finding a companys prod and test Okta portal building an Okta phishlet for Evilginx (working phishlet will be included) hosting your phishlet at Azure using an Azure domain (requires a phishlet that works with only [--] certificate) finding Okta-specific app URLs encountering Okta behavioral detection policies and a method for bypassing replaying cookies some OPSEC considerations what else am I missing or would you like to see"
[X Link](https://x.com/nickvangilder/status/1723734186467402093) 2023-11-12T16:07Z [----] followers, [----] engagements
"Just released a new blog post titled "Okta for Red Teamers - Perimeter Edition" to cover some strategies for targeting Okta OPSEC considerations prevention and detection ideas and more:"
[X Link](https://x.com/nickvangilder/status/1725624075979042994) 2023-11-17T21:16Z [----] followers, 57.8K engagements
"With Okta in the news again (surprise surprise) just a quick reminder to kick the tires on your Okta portal(s) and secure your shit. Blog post includes suggestions for securing"
[X Link](https://x.com/nickvangilder/status/1730029011714166985) 2023-11-30T01:00Z [----] followers, [----] engagements
"@DaveKSU Happy birthday And look at that view. Wow"
[X Link](https://x.com/nickvangilder/status/1733303861467594857) 2023-12-09T01:53Z [----] followers, [--] engagements
"A few pics of the solar storm from Nashville TN last night (taken using an iPhone [--] Pro Max with night mode). #Auroraborealis #Nashville"
[X Link](https://x.com/nickvangilder/status/1789325522175926281) 2024-05-11T16:03Z [----] followers, [---] engagements
"Regions Red Team is hiring We are looking for an experienced Red Team Operator to join our growing team to help us evaluate organizational resiliency and preparedness against modern attacks: Flexible on comp based on exp and skills. https://careers.regions.com/us/en/job/R83321/Red-Team-Operator https://careers.regions.com/us/en/job/R83321/Red-Team-Operator"
[X Link](https://x.com/nickvangilder/status/1806453181104210083) 2024-06-27T22:22Z [----] followers, [---] engagements
"A lot of operators are waking up wondering why their implants stopped working and why they lost access to their target environments"
[X Link](https://x.com/nickvangilder/status/1814299064390852837) 2024-07-19T13:59Z [----] followers, [---] engagements
"@HackingLZ You can just call an employee and ask. I know many hax0rs can be introverted and want to avoid these kinds of people interactions but just calling your targets and telling them what you need to do is simple and effective. No need to over complicate things"
[X Link](https://x.com/nickvangilder/status/1814720205001523260) 2024-07-20T17:53Z [----] followers, [---] engagements
"@blackroomsec Emm386 anyone Man this post takes me back. Thank for you posting this"
[X Link](https://x.com/nickvangilder/status/1832944705677484359) 2024-09-09T00:50Z [----] followers, [---] engagements
"Forget about stealthy implants and slick EDR bypasses I need an OST that programmatically fills up a sales reps calendar any time they send me a Calendly link"
[X Link](https://x.com/nickvangilder/status/1833477992921587819) 2024-09-10T12:09Z [----] followers, [---] engagements
"I realize there are many working in cybersecurity roles that absolutely despise going into a physical office to work and I wanted to share my perspective. Personally Im not required to go into an office to work. I dont force any staff on my teams to go in either; however I choose to go into the office on most days. I live just outside of Nashville and its about a 30-45 minute commute from our house to the office. I wear jeans conference t-shirts and hats. At my office and this is true at my last job too there are a lot of staff who are required to go into the officelike IT support. Many of"
[X Link](https://x.com/nickvangilder/status/1837299229603094730) 2024-09-21T01:14Z [----] followers, [---] engagements
"Red teamers or up and coming red teamers every week I share a curated list of new red team-specific jobs that caught my attention during the week. My goal is to assist job hunters in the offensive security space who might be looking to transition to something new or find their first role on a red team. I normally only do this on LI but thought Id test the waters here on X to cast the net a little further. π π π Note: There are [--] internship roles in this week's list due to many requests for more entry-level listings. π π π πΊ Company/Role: USAA Red Team Lead π Quick Insights: Onsite (TX"
[X Link](https://x.com/nickvangilder/status/1849417352237953438) 2024-10-24T11:47Z [----] followers, [----] engagements
"At this point I think Im mostly just looking forward to the calm that comes after a presidential election when the political signs start to come down we accept the results of the polls and essentially find far more healthier and positive things to talk about than crappy partisan politics. As citizens we deserve better than this. And ironically I think its well within our reach if we just decide to get on a different path as a nation. I really hope we can see the direction we seem to be headed and choose to make a concerted effort to move past this toxic brand of politics that only seems"
[X Link](https://x.com/nickvangilder/status/1854042687655096680) 2024-11-06T06:06Z [----] followers, [---] engagements
"What embarrassing red team or pen test war stories do you have to share"
[X Link](https://x.com/nickvangilder/status/1867954425802948976) 2024-12-14T15:26Z [----] followers, [---] engagements
"Ho ho ho Hackers. Every week I try to share a curated list of red team-specific jobs (and sometimes adjacent to) that caught my attention. My goal is to help job hunters in the offensive security space find a red team-specific role. Feel free to share or add to the list πCompany + Role: JUMPSEC Principal Cyber Security Consultant π Quick Insights: Hybrid (England Wales) Comp details posted (80 90k + benefits) Consulting Individual contributor π· Apply Here: (Scroll down to How to Apply) πCompany + Role: JUMPSEC Principal Cyber Security Consultant π Quick Insights: Hybrid (England Wales)"
[X Link](https://x.com/nickvangilder/status/1867976800992657723) 2024-12-14T16:55Z [----] followers, [---] engagements
"Obviously theres a ton of wild speculation regarding the recent drone sightings. So I figured why not play along and assess the situation from the perspective of a red teamer. With that in mind could the drones be part of a covert federal red team operation that is designed to assess and evaluate local federal and military defensive capabilities to detect and respond to advanced drone technology that we suspect other countries may have or can soon acquire For example could we be testing whether our radar technology can effectively detect the drones If so can we track and monitor them How far"
[X Link](https://x.com/nickvangilder/status/1869260591908433987) 2024-12-18T05:57Z [----] followers, [---] engagements
"@jamieantisocial #swisscheese"
[X Link](https://x.com/nickvangilder/status/1875056957515858388) 2025-01-03T05:49Z [----] followers, [--] engagements
"Over the Christmas break and at the request of our [--] boys (who are big gamers) I started playing Marvel Rivals (MR). Its quickly becoming the most popular game in our householdand I suspect this is might also be true in other households too. I read recently that MR has been able to retain 93% of its daily peak players which is absolutely insane if true. While the game is certainly fun (and definitely addicting) its presented some excellent opportunities to have meaningful conversations with the kids about teamwork proficiency self-critique and upskilling. Overall were already fairly competent"
[X Link](https://x.com/nickvangilder/status/1877818658887774679) 2025-01-10T20:43Z [----] followers, [---] engagements
"Big shoutout to all the C2 developers out there Thank you for what you do"
[X Link](https://x.com/nickvangilder/status/1886487918883000819) 2025-02-03T18:52Z [----] followers, [---] engagements
"Your red team outies preferred C2 framework is metasploit π #severance"
[X Link](https://x.com/nickvangilder/status/1900643677422125462) 2025-03-14T20:22Z [----] followers, [---] engagements
"@securityweekly Kernel Panic at the Disco"
[X Link](https://x.com/nickvangilder/status/1916608937761136840) 2025-04-27T21:42Z [----] followers, [---] engagements
"Every week I share a curated list of red team-specific jobs that caught my attention or were shared with me from hiring managers across the industry. My goal is to help job hunters in the offensive security space find a red team-specific role. Considering the recent RIF at CrowdStrike please tag or share with any impacted individuals who might be looking for an offensive security role. Open positions are in the comments with details. #redteam #jobs #hiring #offensivesecurity #crowdstrike"
[X Link](https://x.com/nickvangilder/status/1920942347690365229) 2025-05-09T20:41Z [----] followers, 11.9K engagements
"π Company + Role: Booz Allen Red Team Operations Lead π Quick Insights: Hybrid (McLeanVA; Atlanta GA; Baltimore MD; Charleston SC; Chicago IL; Huntsville AL; Indianapolis IN; Kansas City MI; Melbourne FL) Comp:$86k-$198k + benefits Consulting Individual contributor π― Apply Here: β Notes: Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client. https://careers.boozallen.com/careers/JobDetailjobId=109962 https://careers.boozallen.com/careers/JobDetailjobId=109962"
[X Link](https://x.com/nickvangilder/status/1920942415835181524) 2025-05-09T20:42Z [----] followers, [---] engagements
"π Company + Role: East West Bank Offensive Security Manager π Quick Insights: Onsite (Washington US) Comp:$140k-$230k + benefits Internal team Individual contributor π― Apply Here: β Notes: Significant responsibility set for the compensation offered. https://careers-eastwestbank.icims.com/jobs/11914/offensive-risk-strategist/job https://careers-eastwestbank.icims.com/jobs/11914/offensive-risk-strategist/job https://careers-eastwestbank.icims.com/jobs/11914/offensive-risk-strategist/job https://careers-eastwestbank.icims.com/jobs/11914/offensive-risk-strategist/job"
[X Link](https://x.com/nickvangilder/status/1920942530893377672) 2025-05-09T20:42Z [----] followers, [---] engagements
"π Company + Role: Roblox Senior Offensive Security Engineer π Quick Insights: Onsite (San Mateo CA) Comp:$233k-$283k + benefits Internal team Individual contributor π― Apply Here: β Notes: Requires [--] days in office per week (Tues-Thurs). https://careers.roblox.com/jobs/6392353gh_jid=6392353 https://careers.roblox.com/jobs/6392353gh_jid=6392353"
[X Link](https://x.com/nickvangilder/status/1920942581044625559) 2025-05-09T20:42Z [----] followers, [---] engagements
"π Company + Role: Snap Staff Offensive Security Engineer Level [--] π Quick Insights: Onsite (Palo Alto CA; San Francisco CA; Santa Monica CA) Comp:$213k-$377k + equity + benefits Internal team Individual contributor π― Apply Here: β Notes: Requires 4+ days in office per week https://careers.snap.com/jobid=R0040189 https://careers.snap.com/jobid=R0040189 https://careers.snap.com/jobid=R0040189 https://careers.snap.com/jobid=R0040189"
[X Link](https://x.com/nickvangilder/status/1920942631301140964) 2025-05-09T20:43Z [----] followers, [---] engagements
"π Company + Role: Barclays Senior Red Team Operator π Quick Insights: Onsite (Washington US) Comp:$160k-$200k + benefits Internal team Individual contributor π― Apply Here: https://search.jobs.barclays/job/-/-/13015/73981195008 https://search.jobs.barclays/job/-/-/13015/73981195008"
[X Link](https://x.com/nickvangilder/status/1920942679522738317) 2025-05-09T20:43Z [----] followers, [---] engagements
"1980 called and wants its resume back. - Utilize laptop and standard keyboard to perform essential functions of the job - Attend work as scheduled on a consistent and regular basis - IBM Certified Solution Provider in any security realm More proof this was written in 1980: Ability to demonstrate a calm demeanor when faced with chaotic circumstances Its [----]. Since [----] weve been through Y2K Covid rise of authoritarian populism Elon Musk buying Twitter Demonstrate a calm demeanor when faced with chaotic circumstances has been a default setting for a while now."
[X Link](https://x.com/nickvangilder/status/1928689618167513587) 2025-05-31T05:46Z [----] followers, [---] engagements
"AI cant replace a red teamer. It cant wield the perfect blend of apathy and caffeine-fueled brilliance needed to succeed"
[X Link](https://x.com/nickvangilder/status/1929613752728801393) 2025-06-02T18:59Z [----] followers, [---] engagements
"Can CrowdStrike and Microsoft also unite and harmonize on not causing any more global outages"
[X Link](https://x.com/nickvangilder/status/1930120580293972286) 2025-06-04T04:33Z [----] followers, [---] engagements
"Hit em with that red team rizz"
[X Link](https://x.com/nickvangilder/status/1938275055064003062) 2025-06-26T16:35Z [----] followers, [---] engagements
"At this point maybe North Korea should just start selling bootcamps for how to break into cybersecurity. They seem to have really figured that shit out"
[X Link](https://x.com/nickvangilder/status/1940110830085054891) 2025-07-01T18:10Z [----] followers, 31K engagements
"Hit em with that red team rizz"
[X Link](https://x.com/nickvangilder/status/1942396237510054189) 2025-07-08T01:32Z [----] followers, [----] engagements
"Hit em with that red team rizz"
[X Link](https://x.com/nickvangilder/status/1943489658979078338) 2025-07-11T01:56Z [----] followers, [----] engagements
"@UK_Daniel_Card Its kind of fascinating watching people getting their daily feeding at the AI slop trough"
[X Link](https://x.com/nickvangilder/status/1947678763371630909) 2025-07-22T15:22Z [----] followers, [---] engagements
"In a world that is constantly trying to divide separate and pit people against each other at every turn deep down I do think people want things they can actually agree on. I may be wrong but I think thats why the Coldplay kiss cam incident was so popular. Generally speaking most people could agree that cheating on your spouse is awful and being publicly exposed or caught in the act is a punishment that fits the crime. Im not saying its healthy or even right but I do think thats why it was so popular. People are sick of fighting with each other and want to go back to finding common ground on"
[X Link](https://x.com/nickvangilder/status/1948185633152717180) 2025-07-24T00:57Z [----] followers, [---] engagements
"Hit em with that red team rizz"
[X Link](https://x.com/nickvangilder/status/1950737607261815099) 2025-07-31T01:57Z [----] followers, [----] engagements
"Hit em with that red team rizz"
[X Link](https://x.com/nickvangilder/status/1955087849688101100) 2025-08-12T02:04Z [----] followers, [---] engagements
"Client: Was that in scope Me: No but Im an FBI informant"
[X Link](https://x.com/nickvangilder/status/1964480728600891848) 2025-09-07T00:07Z [----] followers, [---] engagements
"Client: The rules of engagement said no hacking the mainframe. Me: Its ok. Im an FBI informant"
[X Link](https://x.com/nickvangilder/status/1964497888312189112) 2025-09-07T01:16Z [----] followers, [---] engagements
"Client: You deployed C2 agents to 20k endpoints during the red team exercise Me: Its ok. Im an FBI informant"
[X Link](https://x.com/nickvangilder/status/1964538673644655037) 2025-09-07T03:58Z [----] followers, 13.7K engagements
"Client: Did you just lock everyone out by password spraying Me: Its ok. Im an FBI informant"
[X Link](https://x.com/nickvangilder/status/1964763991991074823) 2025-09-07T18:53Z [----] followers, [---] engagements
"Its really unfortunate that it takes big accounts calling out companys bad service to get answers and solutions to problems. I realize its an effective strategy but its just an awful look for @Tesla and @elonmusk since many of us arent big accounts and this is unlikely to work. Im saying this as a Tesla owner too"
[X Link](https://x.com/nickvangilder/status/1966222713497796615) 2025-09-11T19:30Z [----] followers, [---] engagements
"I feel like both major political parties are an absolute disaster and have somehow managed to convince their respective bases that each side is SO wrong and SO bad that the only solution to the problem (which they have created) is warring with your fellow citizens on a non-stop basis. I understand that its impossible to agree on every issue but I really wish we could prioritize finding common ground on issues vs. finding ways to fight about where we disagree. We dont have to leave it up to our political overlords to set the tone and give us permission. Also not everything has to be"
[X Link](https://x.com/nickvangilder/status/1966233778202046900) 2025-09-11T20:13Z [----] followers, [----] engagements
"@HackingLZ Well I sure hope we can find some sort off ramp because this current path doesnt feel sustainable at all. All the one upping is literally leading to people dying. We have to find ways to get back to civil discourse and peaceful coexistence even when we dont see eye to eye"
[X Link](https://x.com/nickvangilder/status/1966308173897412790) 2025-09-12T01:09Z [----] followers, [---] engagements
"So Microsoft S1 and Palo have all withdrawn from the MITRE Attack Evaluations for [----]. Moderately interestingly S1 and Palo pulled out on the same day (9/12)"
[X Link](https://x.com/nickvangilder/status/1968128026295795921) 2025-09-17T01:41Z [----] followers, 49.3K engagements
"Yesterday at the MetaConnect [----] keynote Mark Zuckerberg unveiled the company's AI smart glasses (code name: Hypernova). Unfortunately for him the live demo he had planned didnt go quite as intended and it quickly became apparent that Mark forgot a very crucial step that many of us know all too well: always say a prayer to the demo gods before walking out. Im also pretty sure he was about [--] seconds away from ripping those glasses off his face stomping them into the ground and walking out. I actually thought he was going to lose it. Do you have a demo fail that you want to share I guess Ill"
[X Link](https://x.com/nickvangilder/status/1968807060692148353) 2025-09-18T22:39Z [----] followers, [----] engagements
"Many years ago now I was speaking at a conference. It was a conference largely focused on fraud and not cyber but I remember our marketing team signed me up anyway for some reason. Whatever. For better or for worse I was demoing how quickly and efficiently a fraudster (or threat actor) could anonymously spin up an EC2 instance to host a credential harvesting site and start delivering phishing emails to capture and replay creds. I set it up like a hacker speed run of sorts which I had practiced many times before the demo. I felt very confident. The challenge (at the time) was the verification"
[X Link](https://x.com/nickvangilder/status/1968807137313804432) 2025-09-18T22:39Z [----] followers, [---] engagements
"Its still crazy to me that Scattered Spider is (reportedly) mostly made up of teens and young adults yet have successfully carried out 120+ intrusions _and_ convinced companies to pay them over $115M in ransom payments. What causes youths to resort to this line of criminal work"
[X Link](https://x.com/nickvangilder/status/1969555019469881642) 2025-09-21T00:11Z [----] followers, [----] engagements
"Whats interesting about this to me is how the Secret Service press release leaves out any mention of also finding [--] grams of cocaine and illegal firearms. It is being reported by the New York Times though and seems like an interesting omission if you ask me. [--] grams of coke is nothing to sneeze at. Does the presence of coke somehow hurt the narrative Something to think about. https://www.nytimes.com/2025/09/23/us/politics/secret-service-sim-cards-servers-un.html https://www.secretservice.gov/newsroom/releases/2025/09/us-secret-service-dismantles-imminent-telecommunications-threat-new-york"
[X Link](https://x.com/nickvangilder/status/1970666924200603709) 2025-09-24T01:49Z [----] followers, [----] engagements
"Ordering from [--] different places on DoorDash: expensive. Both drivers arriving at the same time and looking at each other confused: priceless"
[X Link](https://x.com/nickvangilder/status/1973931992313147740) 2025-10-03T02:03Z [----] followers, [---] engagements
"Do you remember that BMG Music Service where youd get [--] CDs for the price of one It was a bit of a trap but also kind of a rite of passage for a lot of music fans before streaming existed. Hacker people (not me of course) totally gamed the system. It was so hackable. Theyd sign up under different family names cancel and reenroll to build out what some would consider a sizable CD collection. I mean they basically let you. And if they didnt want people (definitely not me) to do it why was it so easy Ill never understand that. Anyway I came across one of the first CDs I ever owned which I got"
[X Link](https://x.com/nickvangilder/status/1975051180024774658) 2025-10-06T04:11Z [----] followers, 10.9K engagements
"Groups like Scattered Spider are more aggressively targeting employees to buy or recruit initial access. That got me thinking. Maybe companies should adopt a similar approach in reverse. What if companies flipped the script and offered even bigger monetary rewards in exchange for information about verifiable weak points security issues control gaps etc. For example: This network share is accessible to everyone in the company when only [--] people on my team require access and it contains significant amounts of customer PII. Thats a simple fix with a big upside for security posture. Yes I know"
[X Link](https://x.com/nickvangilder/status/1975357350006649216) 2025-10-07T00:27Z [----] followers, 30.1K engagements
"@travofoz I felt the same. I saw the video like a month ago and left a note to try to turn this into something. The video has been in the idea folder for a hot min. Probably wont get much engagement but it makes me lol and thats all that matters π€ͺ"
[X Link](https://x.com/nickvangilder/status/1975712187189784729) 2025-10-07T23:57Z [----] followers, [--] engagements
"@_xpn_ Yuck"
[X Link](https://x.com/nickvangilder/status/1976090850015986140) 2025-10-09T01:02Z [----] followers, [---] engagements
"I mostly just ask scenario based questions with some injects and ask them to talk me through their thought process when theyre feeling stuck or unsure even if it means googling or using ChatGPT IDGAF. I just want to hear them work through it. You can learn so much about a person like this IMO"
[X Link](https://x.com/nickvangilder/status/1976094718153884005) 2025-10-09T01:17Z [----] followers, [---] engagements
"Verse [--] (2:55) of Doja Cats new single Gorgeous is maybe the most Kayne sounding rap ever. She needs to do a remix with him and give him a crack at it. That said you really want to listen to this song for its sweet 80s synth and saxophone combo. Great mash up of the two worlds"
[X Link](https://x.com/nickvangilder/status/1976463645199491120) 2025-10-10T01:43Z [----] followers, [---] engagements
"@bknu @BSidesPyongyang The shirt pairs well with the cert"
[X Link](https://x.com/nickvangilder/status/1979305962314870956) 2025-10-17T21:58Z [----] followers, [---] engagements
"Nothing to see here. Just your boring routine unboxing of Fortinet gear"
[X Link](https://x.com/nickvangilder/status/1889867852347519137) 2025-02-13T02:43Z [----] followers, [----] engagements
"Theres a line in this news article that reads: the ethical hackers discovered they could access the full raw audio files of people ordering food at the outlet drive-throughs. Sometimes that audio included personally identifiable information. Question: who is sharing PII over a drive-up speaker How does that work Are they asking for payment info over the speaker Article:"
[X Link](https://x.com/nickvangilder/status/1966153049061130318) 2025-09-11T14:53Z [----] followers, 16.7K engagements
"@Avamander Maybe Kaspersky and Trend Micro can duke it out"
[X Link](https://x.com/nickvangilder/status/1968379936533791085) 2025-09-17T18:22Z [----] followers, [----] engagements
"I would argue that the massive flood of new people trying to break in as juniors has actually raised the bar for juniors. Every day hundreds of people wake up and decide they want to become a 5up3r l33t penetration tester or hax0r. And thats awesome. Theres two problems though: 1) there just arent that many penetration testing roles available and 2) employers want to hire the best of the best. We might not like it but when theres a major surplus of candidates (and there is) employers can afford to be picky. And they will be. Can you blame them Thats just supply and demand at work. When the"
[X Link](https://x.com/nickvangilder/status/1974556048619937996) 2025-10-04T19:23Z [----] followers, 165.4K engagements
"Its almost that time of year. Does everyone have their Halloween costume ready"
[X Link](https://x.com/nickvangilder/status/1979174112195903518) 2025-10-17T13:14Z [----] followers, 16.4K engagements
"@XPy_r0X Im sorry homie :("
[X Link](https://x.com/nickvangilder/status/1979679966360113335) 2025-10-18T22:44Z [----] followers, [---] engagements
"Hit em with that red team rizz"
[X Link](https://x.com/nickvangilder/status/1982980536361517168) 2025-10-28T01:19Z [----] followers, [----] engagements
"@wk3355 Youd be surprised. Or maybe you wouldnt. When I was doing a lot of consulting (7-10 years ago) it happened fairly frequently"
[X Link](https://x.com/nickvangilder/status/1984295073270399099) 2025-10-31T16:23Z [----] followers, [---] engagements
"Lets say this is true. How are we going to convince Gen Z to _want_ to go into the trades Ive actually tried to suggest the trades to our [--] oldest and there seems to be absolutely zero interest. The trades seem very uncool. Do the trades need an image makeover Full story here: https://finance.yahoo.com/news/nvidia-ceo-jensen-huang-says-145838012.html https://finance.yahoo.com/news/nvidia-ceo-jensen-huang-says-145838012.html"
[X Link](https://x.com/nickvangilder/status/1985937019097284731) 2025-11-05T05:07Z [----] followers, [----] engagements
"So apparently the password for the video surveillance system at the Louvre (the most famous museum on earth) was wait for it: Louvre. If thats not bad enough a [----] security assessment determined that the Louvre network was: - Riddled with trivial passwords - Comprised of outdated systems - Camera feeds able to be manipulated - Badge access able to be modified Yikes. This sounds like a pentest Ive done before. Well fast forward to [----]. Thankfully security posture has improved right Wrong. The [----] security assessment encountered software so old it shouldve been in a museum exhibit of its"
[X Link](https://x.com/nickvangilder/status/1986248315499921482) 2025-11-06T01:44Z [----] followers, 35.2K engagements
"Hey Stanley the Manley can you squeeze in one more pentest before the end of the year"
[X Link](https://x.com/nickvangilder/status/1986801758685761652) 2025-11-07T14:23Z [----] followers, [---] engagements
"Compliance managers in mid q4"
[X Link](https://x.com/nickvangilder/status/1986980094317887713) 2025-11-08T02:12Z [----] followers, [----] engagements
"So Microsoft lays off [-----] people in [----] for AI reasons and is now claiming that theyre mind blown that people are unimpressed with their AI efforts. Did they really think there wouldnt be backlash Personally I think companies should expect this kind of public response when they openly prioritize AI over their own people. You screwed a bunch of people over and now expect us to tell you how awesome your AI stuff is In the famous words of Randy Jackson from the _original_ AI (American Idol): Thats a no from me dawg"
[X Link](https://x.com/nickvangilder/status/1991311343907930429) 2025-11-20T01:03Z [----] followers, 85.2K engagements
"So it appears that CISA is planning to increase its hiring efforts in [----] which sounds great on the surface; however realistically who would actually want to work at CISA after 1/3 of the workforce was RIFd for political reasons I realize theyve said that they are working to change some of its workforce policies to avoid driving away talented staff but in my opinion the way to get high skill talent to _want_ to work there is to provide certain assurances that the agency can be/will be apolitical for national security reasons with commitments from both political parties not to use or leverage"
[X Link](https://x.com/nickvangilder/status/1991363098368749638) 2025-11-20T04:28Z [----] followers, [----] engagements
"This whole CrowdStrike insider threat situation got me thinking about insider threat risk and strategies for preventing or mitigating. If someone waved their magic corporate wand and asked me to stand up an insider threat program (ITP) to solve the problem with my zero years of ITP experience or qualifications I think this is what Id do: First to me the single biggest bang for your buck is treating your employees kindly and paying them well. The ITP would need to exist at the highest levels in HR to drive this mindset. To me this treats 75% of the risk. Maybe more. I know Im biased with this"
[X Link](https://x.com/nickvangilder/status/1992124842577948875) 2025-11-22T06:55Z [----] followers, 19.7K engagements
"On the eleventh day of Christmas my red team gave to me: Eleven compromised execs Ten admins popped Nine paths to DA Eight shells a-landing Seven vulns exploiting Six XPs a-hiding Fiiiiiiiiive ineffective controls Four VDIs accessed Three session cookies Two clicking users And one misconfigured SMTP (server)"
[X Link](https://x.com/nickvangilder/status/1994547534325301759) 2025-11-28T23:22Z [----] followers, [---] engagements
"On the twelfth day of Christmas my red team gave to me: Twelve critical findings Eleven compromised execs Ten admins popped Nine paths to DA Eight shells a-landing Seven vulns exploiting Six XPs a-hiding Fiiiiiiiiive ineffective controls Four VDIs accessed Three session cookies Two clicking users And one misconfigured SMTP (server)"
[X Link](https://x.com/nickvangilder/status/1994548315707297999) 2025-11-28T23:25Z [----] followers, [---] engagements
"I wonder if intelligence agencies intake online gaming telemetry for the purposes of behavioral profiling and even recruitment. Are there statistically improbable stat combinations or certain gameplay behaviors that could disclose something about your personality that would be useful to them I feel like it could be a goldmine: Time to fire after target appears Time to break cover Time to start healing or repositioning after taking damage How fast you change tactics after a loss Whether you try a new strategy after losing 2x in a row Assist rates vs. kill rates Spike in reckless behavior after"
[X Link](https://x.com/nickvangilder/status/1998220305353879711) 2025-12-09T02:37Z [----] followers, [----] engagements
"So its kinda like that I guessjust at an OS level Youre declaring to the attacker that youre CrowdStrike when you are not. Im also curious about red team and treat actor assumptions too and how they might feel inclined to probe the (fake) EDR when / if something feels off (vs. assume that its fake because why would it be fake on a popped endpoint)"
[X Link](https://x.com/nickvangilder/status/2000759588551860555) 2025-12-16T02:47Z [----] followers, [--] engagements
"At Amazon you cant even be considered for a [--] on your performance review unless youre typing between 80-90 WPM"
[X Link](https://x.com/nickvangilder/status/2001861587645456436) 2025-12-19T03:46Z [----] followers, 109K engagements
"Google searches for Mavis Beacon Teaches Typing up 1000%"
[X Link](https://x.com/nickvangilder/status/2001881105532882970) 2025-12-19T05:03Z [----] followers, 89.9K engagements
"Guys this is meant to be taken as a joke and not seriously. I do hot takes on news articles and I figured like [--] people would read this silly/snarky take. I always like to think of Amazon as Evil Corp. So even if they arent doing this I still want to believe someone at Amazon has tried or now wants to try. Thats part of what makes it funny"
[X Link](https://x.com/nickvangilder/status/2001916133910192148) 2025-12-19T07:22Z [----] followers, 42.9K engagements
"@vxunderground Thanks man. It was kind of wild waking up to these kind of numbers after spending almost no time on the post. Had I known hundreds of thousands of ppl would be seeing it I probably would have put more thought into it all. Oh well. Maybe I should just yolo it more often"
[X Link](https://x.com/nickvangilder/status/2002025415372685682) 2025-12-19T14:37Z [----] followers, 13.9K engagements
"So Jake Paul is paid $92 million for losing a [--] minute fight. A fight pretty much everyone knows hes going to lose too yet he can still convince the right people to pay him $92 million dollars. Where I have I heard this story before"
[X Link](https://x.com/nickvangilder/status/2003295305182384429) 2025-12-23T02:43Z [----] followers, 1.8M engagements
"If youre in the market for a modern Christmas movie to add to your yearly Christmas rotation consider checking out Spirited (Ryan Reynolds and Will Ferrell) on Apple TV+. Its basically a quasi-broadway-esque musical rendition of Charles Dickens "A Christmas Carol but with ample time for Ryan and Will to do what youd expect them to do playing the roles of the Ghost of Christmas Present (Ferrell) and a 10+ self-absorbed prick being haunted (Reynolds). The music is also fantastic and really what pushes the movie over the top for me. As a musician maybe Im just biased but I really enjoyed the"
[X Link](https://x.com/nickvangilder/status/2004061126770790614) 2025-12-25T05:26Z [----] followers, [---] engagements
"I think letting young kids on social media is bad parenting in the same way as letting your kids eat donuts and candy every night for dinner is bad parenting. If parents wont do their job maybe the state should jump in. Either way and regardless what side you fall on it should be fun watching kids turn into little hackers and find clever ways to bypass these new restrictions. TL;DR: The State of VA has a new law. When the new law goes into effect on January 1st social media companies will be: 1) required to verify users ages using commercially reasonable methods and then 2) enforce a [--] hour"
[X Link](https://x.com/nickvangilder/status/2004740422015332844) 2025-12-27T02:25Z [----] followers, [----] engagements
"Satya telling everyone to stop calling things AI slop with the most AI slop quote ever is kind of hilarious: We need to get beyond the arguments of slop vs sophistication and develop a new equilibrium in terms of our theory of the mind that accounts for humans being equipped with these new cognitive amplifier tools as we relate to each other. Copilot definitely wrote that. https://twitter.com/i/web/status/2007315288715325816 https://twitter.com/i/web/status/2007315288715325816"
[X Link](https://x.com/nickvangilder/status/2007315288715325816) 2026-01-03T04:57Z [----] followers, [---] engagements
"I feel like SNL should be on a monthly subscription plan with the United States government for providing such amazing content for the show. Does SNL even need writers at this point"
[X Link](https://x.com/nickvangilder/status/2007680049357721736) 2026-01-04T05:06Z [----] followers, [---] engagements
"Marco Rubio finding out that he also has to become the CEO of Microslop"
[X Link](https://x.com/nickvangilder/status/2008401825045598340) 2026-01-06T04:54Z [----] followers, [---] engagements
"As someone born just outside of Chicago and having lived in Illinois for a large portion of my life its always a good day when the Bears beat the Packers. Also I hope this guy goes viral. We saw him at the end of the game and my wife recorded him. Its a perfect meme"
[X Link](https://x.com/nickvangilder/status/2010231141052428601) 2026-01-11T06:03Z [----] followers, [---] engagements
"Kim found out the hard way what the [--] second setting did to the regimes AWS storage bill. Government surveillance aint cheap. Full story here: https://www.vice.com/en/article/north-koreas-smartphones-are-pocket-sized-orwellian-nightmares/ https://www.vice.com/en/article/north-koreas-smartphones-are-pocket-sized-orwellian-nightmares/"
[X Link](https://x.com/nickvangilder/status/2010580742427054209) 2026-01-12T05:12Z [----] followers, [--] engagements
"Every week I try to share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention or were shared with me by others in the community. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: Experian Lead Offensive Security Engineer π Quick Insights: Remote (United States) Comp: $133k-$239k/yr + bonus + benefits Internal team Individual contributor π― Apply Here: β Notes: This sounds like a solid red team role with a reasonable scope and decent comp package. π Company +"
[X Link](https://x.com/nickvangilder/status/2012240593817096652) 2026-01-16T19:08Z [----] followers, [----] engagements
"The Rip is one of those movies where youre about [--] minutes in and you start asking yourself does any of this make sense Then you remember it stars Matt Damon and Ben Affleck so you let it slide. You give them a pass because of Good Will Hunting and you keep watching because there are enough moments where you can actually feel some of that old magic. Every part of you wants The Rip to be great in that same way but it isnt. What it _is_ though is a very good and very gritty cop thriller thats absolutely worth watching. 7/10. https://twitter.com/i/web/status/2012748026595492022"
[X Link](https://x.com/nickvangilder/status/2012748026595492022) 2026-01-18T04:44Z [----] followers, [----] engagements
"Guys I know this might sound really convenient but if you dont buy my companys flagship product the AI bubble will burst and ruin the economy and probably your personal finances with. So yeah. Could you could just buy my product so we dont have to talk about this again next month Thanks https://twitter.com/i/web/status/2013844948374720769 https://twitter.com/i/web/status/2013844948374720769"
[X Link](https://x.com/nickvangilder/status/2013844948374720769) 2026-01-21T05:23Z [----] followers, [--] engagements
"Guys I know this might sound really convenient but if you dont buy my companys flagship product the AI bubble will burst and ruin the economy and probably your personal finances with it. So yeah. Could you please just buy my product so we dont have to talk about this again next month Thanks https://twitter.com/i/web/status/2013849384149037520 https://twitter.com/i/web/status/2013849384149037520"
[X Link](https://x.com/nickvangilder/status/2013849384149037520) 2026-01-21T05:41Z [----] followers, [----] engagements
"TV meteorologists are as excited about this winter storm as the red team walking into a debrief ready to explain multiple critical findings in their report"
[X Link](https://x.com/nickvangilder/status/2014868086734672355) 2026-01-24T01:09Z [----] followers, [--] engagements
"TV meteorologists are as excited about this winter storm as the red team walking into a debrief ready to explain multiple critical findings in their report"
[X Link](https://x.com/nickvangilder/status/2014869561615479233) 2026-01-24T01:15Z [----] followers, [----] engagements
"Behind the scenes footage"
[X Link](https://x.com/nickvangilder/status/2019605951905689797) 2026-02-06T02:55Z [----] followers, 79.9K engagements
"Amazon measuring deviations in employee keystroke times from pre-established baselines probably shouldnt surprise us at this point. Seems on brand actually. Keystroke data from the laptop of a worker who was supposed to be in US should have taken tens of milliseconds to reach Amazons Seattle headquarters. Instead the flow from this machine was more than [---] milliseconds Lovely"
[X Link](https://x.com/nickvangilder/status/2001840925765701881) 2025-12-19T02:24Z [----] followers, 1.4M engagements
"I accept a connection request. No big deal. A message is immediately sent. Sigh. I am addressed by the first part of my _last_ name. SMH. Wants to talk about Zero Trust. Dude. No one ever willingly wants to talk about zero trust Realizes the name mistake and without missing a beat proceeds to ask if I want to talk about his Amazon best selling book. What is going on here π https://twitter.com/i/web/status/2016388543665393732 https://twitter.com/i/web/status/2016388543665393732"
[X Link](https://x.com/nickvangilder/status/2016388543665393732) 2026-01-28T05:51Z [----] followers, [---] engagements
"This really shouldnt be that big of a surprise as cybersecurity professionals have been warning about scenarios like this for years now. Whats highly ironic here though is that the acting CISA director requested special permission to use ChatGPT precisely because it wasnt authorized in the first place. They received permission then this happened. For red teams this is familiar territory. Most companies are operating with little to no visibility into how LLMs are being used internally and sensitive data is effectively being exfiltrated through these approved productivity tools on a daily"
[X Link](https://x.com/nickvangilder/status/2016658425384407214) 2026-01-28T23:43Z [----] followers, [----] engagements
"In [----] two professional penetration testers were arrested while performing an authorized physical security assessment of an Iowa county courthouse"
[X Link](https://x.com/nickvangilder/status/2017107980206932391) 2026-01-30T05:29Z [----] followers, 32.2K engagements
"Here you go: In [----] two professional penetration testers were arrested while performing an authorized physical security assessment of an Iowa county courthouse. They had written authorization from the states judicial branch to conduct red team testing (including physical entry) but local law enforcement officials still arrested them after they tripped some alarms during the exercise. The criminal charges were eventually dropped and the two testers sued the county for wrongful arrest and defamation. Now more than six years later Dallas County agreed to settle that lawsuit for $600000."
[X Link](https://x.com/nickvangilder/status/2017256474167153058) 2026-01-30T15:19Z [----] followers, [----] engagements
"@UK_Daniel_Card Dude. Im just glad someone else thinks this is funny besides me. I think I have a warped sense of humor π€ͺ"
[X Link](https://x.com/nickvangilder/status/2019636927297724879) 2026-02-06T04:59Z [----] followers, [---] engagements
"Due to the ongoing geopolitical tensions in the Middle East Apple significantly delayed the release of season [--] of Tehran. It ended up being well over a year but the new season is finally streaming on Apple TV+. If youve ever been a red teamer cyber or SOF operator and in situations where you had to think about OPSEC tradecraft or second order effects you might enjoy this show. The series follows a highly skilled Mossad cyber operator who is operating inside Iran on mission. Unfortunately and I think this needs to be said to appropriately set expectations: the CNO/hacking scenes will be"
[X Link](https://x.com/anyuser/status/2021098547085541515) 2026-02-10T05:46Z [----] followers, [----] engagements
"Theres an all expenses paid trip to BlackHat and DEFCON at the top of the mountain"
[X Link](https://x.com/anyuser/status/2021777837666042308) 2026-02-12T02:46Z [----] followers, [----] engagements
"I have nothing against CTFs bug bounties or certification labs. Theyre valuable training tools and they absolutely have their place. Unfortunately they dont always do the greatest job of preparing people for what real red teaming looks like in practice. Worse that CTF mindset sometimes bleeds into live engagements. When it does its easy for red team objectives to start to feel like a CTF or a speedrun through the kill chain. At the end of the day though achieving red team objectives isnt and shouldnt be the primary purpose of the op. Objectives exist (or at least should exist) to help create"
[X Link](https://x.com/nickvangilder/status/2019247244814201138) 2026-02-05T03:10Z [----] followers, [----] engagements
"Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: CrowdStrike Red Team Principal Consultant π Quick Insights: Remote (United States) Comp: $140k-$195k/yr base + bonus + equity + benefits Consulting Individual contributor π― Apply Here: β Notes: Standout w/ minimum [--] year of experience in a leadership role + community participation (conference speaker tool development contributor etc.) π"
[X Link](https://x.com/anyuser/status/2020519044642652643) 2026-02-08T15:24Z [----] followers, [----] engagements
"Hit em with that red team rizz"
[X Link](https://x.com/anyuser/status/2022829113807876266) 2026-02-15T00:23Z [----] followers, [----] engagements
"It would seem that Epstein's personal hacker was an Italian citizen (born in Calabria) 0day developer and seller established the Saudi governments surveillance program his company acquired by CrowdStrike in [----] and allegedly worked at CrowdStrike as a VP. Has anyone tried to track down this guy yet Source: https://www.justice.gov/epstein/files/DataSet%2010/EFTA01683874.pdf https://www.justice.gov/epstein/files/DataSet%2010/EFTA01683874.pdf"
[X Link](https://x.com/nickvangilder/status/2017743992457134588) 2026-01-31T23:37Z [----] followers, 469.1K engagements
"Historically cybersecurity has never been a true entry-level field. Most people start in IT to learn how networks and systems work then transition into security roles over time once they have a certain amount of foundational knowledge and experience. That said many companies colleges and training institutions have a strong monetary incentive to present cybersecurity as entry-level. They make significant amounts of money selling bootcamps and certifications to people eager to break into the field. After completing these programs and earning a few credentials many newcomers discover that"
[X Link](https://x.com/anyuser/status/2023150916677914637) 2026-02-15T21:42Z [----] followers, 14.8K engagements
"Historically cybersecurity has never been a true entry-level field. Most people start in IT to learn how networks and systems work then transition into security roles over time once they have a certain amount of foundational knowledge and experience. That said many companies colleges and training institutions have a strong monetary incentive to present cybersecurity as entry-level. They make significant amounts of money selling bootcamps and certifications to people eager to break into the field. After completing these programs and earning a few credentials many newcomers discover that"
[X Link](https://x.com/anyuser/status/2023150916677914637) 2026-02-15T21:42Z [----] followers, 14.8K engagements
"(Part 2) Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: CESI Cyber Event Red Teamer π Quick Insights: Onsite (Hanover MD) Consulting / Gov support Individual contributor π° Comp: $120k-$170k/yr + benefits π― Apply Here: β Notes: Standout if youve completed military technical training like CTIA FORGE DoD red team or exploit analyst and have current CI polygraph. π Company + Role: Salesforce"
[X Link](https://x.com/anyuser/status/2023078273224200272) 2026-02-15T16:53Z [----] followers, [----] engagements
"(Part 1) Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: Netflix Attack Emulation Team Manager π Quick Insights: Remote (US) Internal team People manager π° Comp: $510k-$752k/yr + stock + benefits π― Apply Here: β Notes: Standout if you have direct experience managing a hybrid team of in-person and remote engineers. π Company + Role: Swift Red Team Operator π Quick Insights: Hybrid"
[X Link](https://x.com/anyuser/status/2023076511394205991) 2026-02-15T16:46Z [----] followers, [----] engagements
"Hit em with that red team rizz"
[X Link](https://x.com/anyuser/status/2022829113807876266) 2026-02-15T00:23Z [----] followers, [----] engagements
"If you like post hardcore emo bands with anthem-y pop punk melodies and aggressive guitars you might consider checking out the new album (A.R.S.O.N.) by @StoryoftheYear. It just dropped yesterday. With a band like SOTY you come back to them because of songs like Until the Day I Die and Anthem of Our Dying Day that really defined their sound and solidified them in the space. Obviously you want a band to progress and evolve musically but you also dont want them to lose their core identity and sound in the process. To me this album strikes a good balance. It is _heavily_ produced and polished"
[X Link](https://x.com/anyuser/status/2022760200566968445) 2026-02-14T19:49Z [----] followers, [---] engagements
"Congratulations Youre now ready for your first offensive security role"
[X Link](https://x.com/anyuser/status/2022337602830102754) 2026-02-13T15:50Z [----] followers, [---] engagements
"Which one you picking Lol"
[X Link](https://x.com/anyuser/status/2022115090900893918) 2026-02-13T01:06Z [----] followers, [----] engagements
"A new study that just dropped [--] days ago says that people who drink 2-3 cups of coffee per day have a significantly lower risk of dementia. I guess coffee is backfor now. π Link: https://jamanetwork.com/journals/jama/article-abstract/2844764 https://jamanetwork.com/journals/jama/article-abstract/2844764"
[X Link](https://x.com/anyuser/status/2021972202845810810) 2026-02-12T15:38Z [----] followers, [---] engagements
"Theres an all expenses paid trip to BlackHat and DEFCON at the top of the mountain"
[X Link](https://x.com/anyuser/status/2021777837666042308) 2026-02-12T02:46Z [----] followers, [----] engagements
"But there was a good reason"
[X Link](https://x.com/anyuser/status/2021457206994993505) 2026-02-11T05:32Z [----] followers, [----] engagements
"Its not too late. Maybe I should drop [--] memes tonight"
[X Link](https://x.com/anyuser/status/2021454291270238410) 2026-02-11T05:20Z [----] followers, [---] engagements
"how I think OSCP holders feel"
[X Link](https://x.com/anyuser/status/2021402132335952187) 2026-02-11T01:53Z [----] followers, 40.7K engagements
"Due to the ongoing geopolitical tensions in the Middle East Apple significantly delayed the release of season [--] of Tehran. It ended up being well over a year but the new season is finally streaming on Apple TV+. If youve ever been a red teamer cyber or SOF operator and in situations where you had to think about OPSEC tradecraft or second order effects you might enjoy this show. The series follows a highly skilled Mossad cyber operator who is operating inside Iran on mission. Unfortunately and I think this needs to be said to appropriately set expectations: the CNO/hacking scenes will be"
[X Link](https://x.com/anyuser/status/2021098547085541515) 2026-02-10T05:46Z [----] followers, [----] engagements
"I didnt understand most of the words but Bad Bunnys Super Bowl halftime show was still a ton of fun to watch. My wife and kids are Latino so it was awesome to see Puerto Rican/Latino representation on such a huge stage. I think my wife might have even teared up which made it all the more special"
[X Link](https://x.com/anyuser/status/2020683197600694365) 2026-02-09T02:16Z [----] followers, [----] engagements
"loot and pillage while you can"
[X Link](https://x.com/anyuser/status/2020572127737356404) 2026-02-08T18:55Z [----] followers, [----] engagements
"Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: CrowdStrike Red Team Principal Consultant π Quick Insights: Remote (United States) Comp: $140k-$195k/yr base + bonus + equity + benefits Consulting Individual contributor π― Apply Here: β Notes: Standout w/ minimum [--] year of experience in a leadership role + community participation (conference speaker tool development contributor etc.) π"
[X Link](https://x.com/anyuser/status/2020519044642652643) 2026-02-08T15:24Z [----] followers, [----] engagements
"I cant decide if I want to deal with the blowback of posting this on LIinkedIn lol"
[X Link](https://x.com/anyuser/status/2019606325110661520) 2026-02-06T02:57Z [----] followers, [---] engagements
"Its actually performing quite well on LI surprisingly. I think its up to like 10k views. I thought for sure it would flop"
[X Link](https://x.com/anyuser/status/2019951088129266134) 2026-02-07T01:47Z [----] followers, [---] engagements
Limited data mode. Full metrics available with subscription: lunarcrush.com/pricing
@nickvangilder Nick VanGilderNick VanGilder posts on X about red, rizz, in the, crowdstrike the most. They currently have [-----] followers and [---] posts still getting attention that total [------] engagements in the last [--] hours.
Social category influence technology brands stocks celebrities countries travel destinations gaming musicians automotive brands nfl
Social topic influence red, rizz, in the, crowdstrike #54, okta, curated, list, space, ai, united states
Top accounts mentioned or mentioned by @hackinglz @ukdanielcard @timb_machine @okta @ninjaparanoid @cyb3rops @jw4lsec @nick @daveksu @blackroomsec @jamieantisocial @securityweekly @tesla @elonmusk @travofoz @xpn @bknu @bsidespyongyang @avamander @xpyr0x
Top assets mentioned Crowdstrike Holdings Inc (CRWD) Microsoft Corp. (MSFT) SwissCheese (SWCH) IBM (IBM) Tesla, Inc. (TSLA) New York Times Co. (NYT) DoorDash Inc. (DASH) FilesCoins Power Cu (FILECOIN)
Top posts by engagements in the last [--] hours
"Red teamers: Are you struggling to conduct effective reverse proxy or AiTM-styled attacks against Okta to emulate adversaries like Scattered Spider Comment this post and Ill DM you my custom Evilginx phishlet that I wrote for Okta. Bonus it works with only ONE triggerso you can host it on an Azure VPS with a Microsoft-issued domain with only one certificate (e.g. your-subdomain-here.eastus2.cloudapp.azure dot com)which should help get you past most corporate proxies"
X Link 2023-11-08T00:42Z [----] followers, 31.2K engagements
"Red teamers: Early on in my offensive security career I relied heavily on popular C2 frameworks like Metasploit PowerShell Empire Cobalt Strike etc. during my engagements. Im sure this is probably fairly common for many of us in this space. However somewhere along the way it began to bother me that I didnt really understand how C2 frameworks worked under the hood. So I set out to address that. For better or worse I decided that the solution to the problem was to write my own (very basic) C2 framework. I didnt do this because I felt that the community needed yet another C2 framework (it doesnt"
X Link 2023-11-10T01:08Z [----] followers, 105.1K engagements
"With the amount of focus on @Okta by threat actors of late a key control that doesnt seem widely discussed is Oktas Behavioral Detection Policies. In short if an access token / session cookie has been stolen and replayed by an adversary a behavioral detection policy (if enabled/implemented) can check to see if the IP address that is replaying the cookie is different from the IP for which it was issued. If the answer is yes the policy would enforce another round of MFA (step-up authentication). Now ideally hardware security tokens or Okta FastPass would prevent this in the first place; however"
X Link 2023-11-10T13:07Z [----] followers, [----] engagements
"@NinjaParanoid @cyb3rops @jw4lsec @Nick Thanks for clarifying Chetan"
X Link 2023-11-11T02:04Z [----] followers, [---] engagements
"Ive been writing a blog post that Im considering titling Okta for Red Teamers - Perimeter Edition. So far in terms of content I have: techniques for finding a companys prod and test Okta portal building an Okta phishlet for Evilginx (working phishlet will be included) hosting your phishlet at Azure using an Azure domain (requires a phishlet that works with only [--] certificate) finding Okta-specific app URLs encountering Okta behavioral detection policies and a method for bypassing replaying cookies some OPSEC considerations what else am I missing or would you like to see"
X Link 2023-11-12T16:07Z [----] followers, [----] engagements
"Just released a new blog post titled "Okta for Red Teamers - Perimeter Edition" to cover some strategies for targeting Okta OPSEC considerations prevention and detection ideas and more:"
X Link 2023-11-17T21:16Z [----] followers, 57.8K engagements
"With Okta in the news again (surprise surprise) just a quick reminder to kick the tires on your Okta portal(s) and secure your shit. Blog post includes suggestions for securing"
X Link 2023-11-30T01:00Z [----] followers, [----] engagements
"@DaveKSU Happy birthday And look at that view. Wow"
X Link 2023-12-09T01:53Z [----] followers, [--] engagements
"A few pics of the solar storm from Nashville TN last night (taken using an iPhone [--] Pro Max with night mode). #Auroraborealis #Nashville"
X Link 2024-05-11T16:03Z [----] followers, [---] engagements
"Regions Red Team is hiring We are looking for an experienced Red Team Operator to join our growing team to help us evaluate organizational resiliency and preparedness against modern attacks: Flexible on comp based on exp and skills. https://careers.regions.com/us/en/job/R83321/Red-Team-Operator https://careers.regions.com/us/en/job/R83321/Red-Team-Operator"
X Link 2024-06-27T22:22Z [----] followers, [---] engagements
"A lot of operators are waking up wondering why their implants stopped working and why they lost access to their target environments"
X Link 2024-07-19T13:59Z [----] followers, [---] engagements
"@HackingLZ You can just call an employee and ask. I know many hax0rs can be introverted and want to avoid these kinds of people interactions but just calling your targets and telling them what you need to do is simple and effective. No need to over complicate things"
X Link 2024-07-20T17:53Z [----] followers, [---] engagements
"@blackroomsec Emm386 anyone Man this post takes me back. Thank for you posting this"
X Link 2024-09-09T00:50Z [----] followers, [---] engagements
"Forget about stealthy implants and slick EDR bypasses I need an OST that programmatically fills up a sales reps calendar any time they send me a Calendly link"
X Link 2024-09-10T12:09Z [----] followers, [---] engagements
"I realize there are many working in cybersecurity roles that absolutely despise going into a physical office to work and I wanted to share my perspective. Personally Im not required to go into an office to work. I dont force any staff on my teams to go in either; however I choose to go into the office on most days. I live just outside of Nashville and its about a 30-45 minute commute from our house to the office. I wear jeans conference t-shirts and hats. At my office and this is true at my last job too there are a lot of staff who are required to go into the officelike IT support. Many of"
X Link 2024-09-21T01:14Z [----] followers, [---] engagements
"Red teamers or up and coming red teamers every week I share a curated list of new red team-specific jobs that caught my attention during the week. My goal is to assist job hunters in the offensive security space who might be looking to transition to something new or find their first role on a red team. I normally only do this on LI but thought Id test the waters here on X to cast the net a little further. π π π Note: There are [--] internship roles in this week's list due to many requests for more entry-level listings. π π π πΊ Company/Role: USAA Red Team Lead π Quick Insights: Onsite (TX"
X Link 2024-10-24T11:47Z [----] followers, [----] engagements
"At this point I think Im mostly just looking forward to the calm that comes after a presidential election when the political signs start to come down we accept the results of the polls and essentially find far more healthier and positive things to talk about than crappy partisan politics. As citizens we deserve better than this. And ironically I think its well within our reach if we just decide to get on a different path as a nation. I really hope we can see the direction we seem to be headed and choose to make a concerted effort to move past this toxic brand of politics that only seems"
X Link 2024-11-06T06:06Z [----] followers, [---] engagements
"What embarrassing red team or pen test war stories do you have to share"
X Link 2024-12-14T15:26Z [----] followers, [---] engagements
"Ho ho ho Hackers. Every week I try to share a curated list of red team-specific jobs (and sometimes adjacent to) that caught my attention. My goal is to help job hunters in the offensive security space find a red team-specific role. Feel free to share or add to the list πCompany + Role: JUMPSEC Principal Cyber Security Consultant π Quick Insights: Hybrid (England Wales) Comp details posted (80 90k + benefits) Consulting Individual contributor π· Apply Here: (Scroll down to How to Apply) πCompany + Role: JUMPSEC Principal Cyber Security Consultant π Quick Insights: Hybrid (England Wales)"
X Link 2024-12-14T16:55Z [----] followers, [---] engagements
"Obviously theres a ton of wild speculation regarding the recent drone sightings. So I figured why not play along and assess the situation from the perspective of a red teamer. With that in mind could the drones be part of a covert federal red team operation that is designed to assess and evaluate local federal and military defensive capabilities to detect and respond to advanced drone technology that we suspect other countries may have or can soon acquire For example could we be testing whether our radar technology can effectively detect the drones If so can we track and monitor them How far"
X Link 2024-12-18T05:57Z [----] followers, [---] engagements
"@jamieantisocial #swisscheese"
X Link 2025-01-03T05:49Z [----] followers, [--] engagements
"Over the Christmas break and at the request of our [--] boys (who are big gamers) I started playing Marvel Rivals (MR). Its quickly becoming the most popular game in our householdand I suspect this is might also be true in other households too. I read recently that MR has been able to retain 93% of its daily peak players which is absolutely insane if true. While the game is certainly fun (and definitely addicting) its presented some excellent opportunities to have meaningful conversations with the kids about teamwork proficiency self-critique and upskilling. Overall were already fairly competent"
X Link 2025-01-10T20:43Z [----] followers, [---] engagements
"Big shoutout to all the C2 developers out there Thank you for what you do"
X Link 2025-02-03T18:52Z [----] followers, [---] engagements
"Your red team outies preferred C2 framework is metasploit π #severance"
X Link 2025-03-14T20:22Z [----] followers, [---] engagements
"@securityweekly Kernel Panic at the Disco"
X Link 2025-04-27T21:42Z [----] followers, [---] engagements
"Every week I share a curated list of red team-specific jobs that caught my attention or were shared with me from hiring managers across the industry. My goal is to help job hunters in the offensive security space find a red team-specific role. Considering the recent RIF at CrowdStrike please tag or share with any impacted individuals who might be looking for an offensive security role. Open positions are in the comments with details. #redteam #jobs #hiring #offensivesecurity #crowdstrike"
X Link 2025-05-09T20:41Z [----] followers, 11.9K engagements
"π Company + Role: Booz Allen Red Team Operations Lead π Quick Insights: Hybrid (McLeanVA; Atlanta GA; Baltimore MD; Charleston SC; Chicago IL; Huntsville AL; Indianapolis IN; Kansas City MI; Melbourne FL) Comp:$86k-$198k + benefits Consulting Individual contributor π― Apply Here: β Notes: Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client. https://careers.boozallen.com/careers/JobDetailjobId=109962 https://careers.boozallen.com/careers/JobDetailjobId=109962"
X Link 2025-05-09T20:42Z [----] followers, [---] engagements
"π Company + Role: East West Bank Offensive Security Manager π Quick Insights: Onsite (Washington US) Comp:$140k-$230k + benefits Internal team Individual contributor π― Apply Here: β Notes: Significant responsibility set for the compensation offered. https://careers-eastwestbank.icims.com/jobs/11914/offensive-risk-strategist/job https://careers-eastwestbank.icims.com/jobs/11914/offensive-risk-strategist/job https://careers-eastwestbank.icims.com/jobs/11914/offensive-risk-strategist/job https://careers-eastwestbank.icims.com/jobs/11914/offensive-risk-strategist/job"
X Link 2025-05-09T20:42Z [----] followers, [---] engagements
"π Company + Role: Roblox Senior Offensive Security Engineer π Quick Insights: Onsite (San Mateo CA) Comp:$233k-$283k + benefits Internal team Individual contributor π― Apply Here: β Notes: Requires [--] days in office per week (Tues-Thurs). https://careers.roblox.com/jobs/6392353gh_jid=6392353 https://careers.roblox.com/jobs/6392353gh_jid=6392353"
X Link 2025-05-09T20:42Z [----] followers, [---] engagements
"π Company + Role: Snap Staff Offensive Security Engineer Level [--] π Quick Insights: Onsite (Palo Alto CA; San Francisco CA; Santa Monica CA) Comp:$213k-$377k + equity + benefits Internal team Individual contributor π― Apply Here: β Notes: Requires 4+ days in office per week https://careers.snap.com/jobid=R0040189 https://careers.snap.com/jobid=R0040189 https://careers.snap.com/jobid=R0040189 https://careers.snap.com/jobid=R0040189"
X Link 2025-05-09T20:43Z [----] followers, [---] engagements
"π Company + Role: Barclays Senior Red Team Operator π Quick Insights: Onsite (Washington US) Comp:$160k-$200k + benefits Internal team Individual contributor π― Apply Here: https://search.jobs.barclays/job/-/-/13015/73981195008 https://search.jobs.barclays/job/-/-/13015/73981195008"
X Link 2025-05-09T20:43Z [----] followers, [---] engagements
"1980 called and wants its resume back. - Utilize laptop and standard keyboard to perform essential functions of the job - Attend work as scheduled on a consistent and regular basis - IBM Certified Solution Provider in any security realm More proof this was written in 1980: Ability to demonstrate a calm demeanor when faced with chaotic circumstances Its [----]. Since [----] weve been through Y2K Covid rise of authoritarian populism Elon Musk buying Twitter Demonstrate a calm demeanor when faced with chaotic circumstances has been a default setting for a while now."
X Link 2025-05-31T05:46Z [----] followers, [---] engagements
"AI cant replace a red teamer. It cant wield the perfect blend of apathy and caffeine-fueled brilliance needed to succeed"
X Link 2025-06-02T18:59Z [----] followers, [---] engagements
"Can CrowdStrike and Microsoft also unite and harmonize on not causing any more global outages"
X Link 2025-06-04T04:33Z [----] followers, [---] engagements
"Hit em with that red team rizz"
X Link 2025-06-26T16:35Z [----] followers, [---] engagements
"At this point maybe North Korea should just start selling bootcamps for how to break into cybersecurity. They seem to have really figured that shit out"
X Link 2025-07-01T18:10Z [----] followers, 31K engagements
"Hit em with that red team rizz"
X Link 2025-07-08T01:32Z [----] followers, [----] engagements
"Hit em with that red team rizz"
X Link 2025-07-11T01:56Z [----] followers, [----] engagements
"@UK_Daniel_Card Its kind of fascinating watching people getting their daily feeding at the AI slop trough"
X Link 2025-07-22T15:22Z [----] followers, [---] engagements
"In a world that is constantly trying to divide separate and pit people against each other at every turn deep down I do think people want things they can actually agree on. I may be wrong but I think thats why the Coldplay kiss cam incident was so popular. Generally speaking most people could agree that cheating on your spouse is awful and being publicly exposed or caught in the act is a punishment that fits the crime. Im not saying its healthy or even right but I do think thats why it was so popular. People are sick of fighting with each other and want to go back to finding common ground on"
X Link 2025-07-24T00:57Z [----] followers, [---] engagements
"Hit em with that red team rizz"
X Link 2025-07-31T01:57Z [----] followers, [----] engagements
"Hit em with that red team rizz"
X Link 2025-08-12T02:04Z [----] followers, [---] engagements
"Client: Was that in scope Me: No but Im an FBI informant"
X Link 2025-09-07T00:07Z [----] followers, [---] engagements
"Client: The rules of engagement said no hacking the mainframe. Me: Its ok. Im an FBI informant"
X Link 2025-09-07T01:16Z [----] followers, [---] engagements
"Client: You deployed C2 agents to 20k endpoints during the red team exercise Me: Its ok. Im an FBI informant"
X Link 2025-09-07T03:58Z [----] followers, 13.7K engagements
"Client: Did you just lock everyone out by password spraying Me: Its ok. Im an FBI informant"
X Link 2025-09-07T18:53Z [----] followers, [---] engagements
"Its really unfortunate that it takes big accounts calling out companys bad service to get answers and solutions to problems. I realize its an effective strategy but its just an awful look for @Tesla and @elonmusk since many of us arent big accounts and this is unlikely to work. Im saying this as a Tesla owner too"
X Link 2025-09-11T19:30Z [----] followers, [---] engagements
"I feel like both major political parties are an absolute disaster and have somehow managed to convince their respective bases that each side is SO wrong and SO bad that the only solution to the problem (which they have created) is warring with your fellow citizens on a non-stop basis. I understand that its impossible to agree on every issue but I really wish we could prioritize finding common ground on issues vs. finding ways to fight about where we disagree. We dont have to leave it up to our political overlords to set the tone and give us permission. Also not everything has to be"
X Link 2025-09-11T20:13Z [----] followers, [----] engagements
"@HackingLZ Well I sure hope we can find some sort off ramp because this current path doesnt feel sustainable at all. All the one upping is literally leading to people dying. We have to find ways to get back to civil discourse and peaceful coexistence even when we dont see eye to eye"
X Link 2025-09-12T01:09Z [----] followers, [---] engagements
"So Microsoft S1 and Palo have all withdrawn from the MITRE Attack Evaluations for [----]. Moderately interestingly S1 and Palo pulled out on the same day (9/12)"
X Link 2025-09-17T01:41Z [----] followers, 49.3K engagements
"Yesterday at the MetaConnect [----] keynote Mark Zuckerberg unveiled the company's AI smart glasses (code name: Hypernova). Unfortunately for him the live demo he had planned didnt go quite as intended and it quickly became apparent that Mark forgot a very crucial step that many of us know all too well: always say a prayer to the demo gods before walking out. Im also pretty sure he was about [--] seconds away from ripping those glasses off his face stomping them into the ground and walking out. I actually thought he was going to lose it. Do you have a demo fail that you want to share I guess Ill"
X Link 2025-09-18T22:39Z [----] followers, [----] engagements
"Many years ago now I was speaking at a conference. It was a conference largely focused on fraud and not cyber but I remember our marketing team signed me up anyway for some reason. Whatever. For better or for worse I was demoing how quickly and efficiently a fraudster (or threat actor) could anonymously spin up an EC2 instance to host a credential harvesting site and start delivering phishing emails to capture and replay creds. I set it up like a hacker speed run of sorts which I had practiced many times before the demo. I felt very confident. The challenge (at the time) was the verification"
X Link 2025-09-18T22:39Z [----] followers, [---] engagements
"Its still crazy to me that Scattered Spider is (reportedly) mostly made up of teens and young adults yet have successfully carried out 120+ intrusions and convinced companies to pay them over $115M in ransom payments. What causes youths to resort to this line of criminal work"
X Link 2025-09-21T00:11Z [----] followers, [----] engagements
"Whats interesting about this to me is how the Secret Service press release leaves out any mention of also finding [--] grams of cocaine and illegal firearms. It is being reported by the New York Times though and seems like an interesting omission if you ask me. [--] grams of coke is nothing to sneeze at. Does the presence of coke somehow hurt the narrative Something to think about. https://www.nytimes.com/2025/09/23/us/politics/secret-service-sim-cards-servers-un.html https://www.secretservice.gov/newsroom/releases/2025/09/us-secret-service-dismantles-imminent-telecommunications-threat-new-york"
X Link 2025-09-24T01:49Z [----] followers, [----] engagements
"Ordering from [--] different places on DoorDash: expensive. Both drivers arriving at the same time and looking at each other confused: priceless"
X Link 2025-10-03T02:03Z [----] followers, [---] engagements
"Do you remember that BMG Music Service where youd get [--] CDs for the price of one It was a bit of a trap but also kind of a rite of passage for a lot of music fans before streaming existed. Hacker people (not me of course) totally gamed the system. It was so hackable. Theyd sign up under different family names cancel and reenroll to build out what some would consider a sizable CD collection. I mean they basically let you. And if they didnt want people (definitely not me) to do it why was it so easy Ill never understand that. Anyway I came across one of the first CDs I ever owned which I got"
X Link 2025-10-06T04:11Z [----] followers, 10.9K engagements
"Groups like Scattered Spider are more aggressively targeting employees to buy or recruit initial access. That got me thinking. Maybe companies should adopt a similar approach in reverse. What if companies flipped the script and offered even bigger monetary rewards in exchange for information about verifiable weak points security issues control gaps etc. For example: This network share is accessible to everyone in the company when only [--] people on my team require access and it contains significant amounts of customer PII. Thats a simple fix with a big upside for security posture. Yes I know"
X Link 2025-10-07T00:27Z [----] followers, 30.1K engagements
"@travofoz I felt the same. I saw the video like a month ago and left a note to try to turn this into something. The video has been in the idea folder for a hot min. Probably wont get much engagement but it makes me lol and thats all that matters π€ͺ"
X Link 2025-10-07T23:57Z [----] followers, [--] engagements
"@xpn Yuck"
X Link 2025-10-09T01:02Z [----] followers, [---] engagements
"I mostly just ask scenario based questions with some injects and ask them to talk me through their thought process when theyre feeling stuck or unsure even if it means googling or using ChatGPT IDGAF. I just want to hear them work through it. You can learn so much about a person like this IMO"
X Link 2025-10-09T01:17Z [----] followers, [---] engagements
"Verse [--] (2:55) of Doja Cats new single Gorgeous is maybe the most Kayne sounding rap ever. She needs to do a remix with him and give him a crack at it. That said you really want to listen to this song for its sweet 80s synth and saxophone combo. Great mash up of the two worlds"
X Link 2025-10-10T01:43Z [----] followers, [---] engagements
"@bknu @BSidesPyongyang The shirt pairs well with the cert"
X Link 2025-10-17T21:58Z [----] followers, [---] engagements
"Nothing to see here. Just your boring routine unboxing of Fortinet gear"
X Link 2025-02-13T02:43Z [----] followers, [----] engagements
"Theres a line in this news article that reads: the ethical hackers discovered they could access the full raw audio files of people ordering food at the outlet drive-throughs. Sometimes that audio included personally identifiable information. Question: who is sharing PII over a drive-up speaker How does that work Are they asking for payment info over the speaker Article:"
X Link 2025-09-11T14:53Z [----] followers, 16.7K engagements
"@Avamander Maybe Kaspersky and Trend Micro can duke it out"
X Link 2025-09-17T18:22Z [----] followers, [----] engagements
"I would argue that the massive flood of new people trying to break in as juniors has actually raised the bar for juniors. Every day hundreds of people wake up and decide they want to become a 5up3r l33t penetration tester or hax0r. And thats awesome. Theres two problems though: 1) there just arent that many penetration testing roles available and 2) employers want to hire the best of the best. We might not like it but when theres a major surplus of candidates (and there is) employers can afford to be picky. And they will be. Can you blame them Thats just supply and demand at work. When the"
X Link 2025-10-04T19:23Z [----] followers, 165.4K engagements
"Its almost that time of year. Does everyone have their Halloween costume ready"
X Link 2025-10-17T13:14Z [----] followers, 16.4K engagements
"@XPy_r0X Im sorry homie :("
X Link 2025-10-18T22:44Z [----] followers, [---] engagements
"Hit em with that red team rizz"
X Link 2025-10-28T01:19Z [----] followers, [----] engagements
"@wk3355 Youd be surprised. Or maybe you wouldnt. When I was doing a lot of consulting (7-10 years ago) it happened fairly frequently"
X Link 2025-10-31T16:23Z [----] followers, [---] engagements
"Lets say this is true. How are we going to convince Gen Z to want to go into the trades Ive actually tried to suggest the trades to our [--] oldest and there seems to be absolutely zero interest. The trades seem very uncool. Do the trades need an image makeover Full story here: https://finance.yahoo.com/news/nvidia-ceo-jensen-huang-says-145838012.html https://finance.yahoo.com/news/nvidia-ceo-jensen-huang-says-145838012.html"
X Link 2025-11-05T05:07Z [----] followers, [----] engagements
"So apparently the password for the video surveillance system at the Louvre (the most famous museum on earth) was wait for it: Louvre. If thats not bad enough a [----] security assessment determined that the Louvre network was: - Riddled with trivial passwords - Comprised of outdated systems - Camera feeds able to be manipulated - Badge access able to be modified Yikes. This sounds like a pentest Ive done before. Well fast forward to [----]. Thankfully security posture has improved right Wrong. The [----] security assessment encountered software so old it shouldve been in a museum exhibit of its"
X Link 2025-11-06T01:44Z [----] followers, 35.2K engagements
"Hey Stanley the Manley can you squeeze in one more pentest before the end of the year"
X Link 2025-11-07T14:23Z [----] followers, [---] engagements
"Compliance managers in mid q4"
X Link 2025-11-08T02:12Z [----] followers, [----] engagements
"So Microsoft lays off [-----] people in [----] for AI reasons and is now claiming that theyre mind blown that people are unimpressed with their AI efforts. Did they really think there wouldnt be backlash Personally I think companies should expect this kind of public response when they openly prioritize AI over their own people. You screwed a bunch of people over and now expect us to tell you how awesome your AI stuff is In the famous words of Randy Jackson from the original AI (American Idol): Thats a no from me dawg"
X Link 2025-11-20T01:03Z [----] followers, 85.2K engagements
"So it appears that CISA is planning to increase its hiring efforts in [----] which sounds great on the surface; however realistically who would actually want to work at CISA after 1/3 of the workforce was RIFd for political reasons I realize theyve said that they are working to change some of its workforce policies to avoid driving away talented staff but in my opinion the way to get high skill talent to want to work there is to provide certain assurances that the agency can be/will be apolitical for national security reasons with commitments from both political parties not to use or leverage"
X Link 2025-11-20T04:28Z [----] followers, [----] engagements
"This whole CrowdStrike insider threat situation got me thinking about insider threat risk and strategies for preventing or mitigating. If someone waved their magic corporate wand and asked me to stand up an insider threat program (ITP) to solve the problem with my zero years of ITP experience or qualifications I think this is what Id do: First to me the single biggest bang for your buck is treating your employees kindly and paying them well. The ITP would need to exist at the highest levels in HR to drive this mindset. To me this treats 75% of the risk. Maybe more. I know Im biased with this"
X Link 2025-11-22T06:55Z [----] followers, 19.7K engagements
"On the eleventh day of Christmas my red team gave to me: Eleven compromised execs Ten admins popped Nine paths to DA Eight shells a-landing Seven vulns exploiting Six XPs a-hiding Fiiiiiiiiive ineffective controls Four VDIs accessed Three session cookies Two clicking users And one misconfigured SMTP (server)"
X Link 2025-11-28T23:22Z [----] followers, [---] engagements
"On the twelfth day of Christmas my red team gave to me: Twelve critical findings Eleven compromised execs Ten admins popped Nine paths to DA Eight shells a-landing Seven vulns exploiting Six XPs a-hiding Fiiiiiiiiive ineffective controls Four VDIs accessed Three session cookies Two clicking users And one misconfigured SMTP (server)"
X Link 2025-11-28T23:25Z [----] followers, [---] engagements
"I wonder if intelligence agencies intake online gaming telemetry for the purposes of behavioral profiling and even recruitment. Are there statistically improbable stat combinations or certain gameplay behaviors that could disclose something about your personality that would be useful to them I feel like it could be a goldmine: Time to fire after target appears Time to break cover Time to start healing or repositioning after taking damage How fast you change tactics after a loss Whether you try a new strategy after losing 2x in a row Assist rates vs. kill rates Spike in reckless behavior after"
X Link 2025-12-09T02:37Z [----] followers, [----] engagements
"So its kinda like that I guessjust at an OS level Youre declaring to the attacker that youre CrowdStrike when you are not. Im also curious about red team and treat actor assumptions too and how they might feel inclined to probe the (fake) EDR when / if something feels off (vs. assume that its fake because why would it be fake on a popped endpoint)"
X Link 2025-12-16T02:47Z [----] followers, [--] engagements
"At Amazon you cant even be considered for a [--] on your performance review unless youre typing between 80-90 WPM"
X Link 2025-12-19T03:46Z [----] followers, 109K engagements
"Google searches for Mavis Beacon Teaches Typing up 1000%"
X Link 2025-12-19T05:03Z [----] followers, 89.9K engagements
"Guys this is meant to be taken as a joke and not seriously. I do hot takes on news articles and I figured like [--] people would read this silly/snarky take. I always like to think of Amazon as Evil Corp. So even if they arent doing this I still want to believe someone at Amazon has tried or now wants to try. Thats part of what makes it funny"
X Link 2025-12-19T07:22Z [----] followers, 42.9K engagements
"@vxunderground Thanks man. It was kind of wild waking up to these kind of numbers after spending almost no time on the post. Had I known hundreds of thousands of ppl would be seeing it I probably would have put more thought into it all. Oh well. Maybe I should just yolo it more often"
X Link 2025-12-19T14:37Z [----] followers, 13.9K engagements
"So Jake Paul is paid $92 million for losing a [--] minute fight. A fight pretty much everyone knows hes going to lose too yet he can still convince the right people to pay him $92 million dollars. Where I have I heard this story before"
X Link 2025-12-23T02:43Z [----] followers, 1.8M engagements
"If youre in the market for a modern Christmas movie to add to your yearly Christmas rotation consider checking out Spirited (Ryan Reynolds and Will Ferrell) on Apple TV+. Its basically a quasi-broadway-esque musical rendition of Charles Dickens "A Christmas Carol but with ample time for Ryan and Will to do what youd expect them to do playing the roles of the Ghost of Christmas Present (Ferrell) and a 10+ self-absorbed prick being haunted (Reynolds). The music is also fantastic and really what pushes the movie over the top for me. As a musician maybe Im just biased but I really enjoyed the"
X Link 2025-12-25T05:26Z [----] followers, [---] engagements
"I think letting young kids on social media is bad parenting in the same way as letting your kids eat donuts and candy every night for dinner is bad parenting. If parents wont do their job maybe the state should jump in. Either way and regardless what side you fall on it should be fun watching kids turn into little hackers and find clever ways to bypass these new restrictions. TL;DR: The State of VA has a new law. When the new law goes into effect on January 1st social media companies will be: 1) required to verify users ages using commercially reasonable methods and then 2) enforce a [--] hour"
X Link 2025-12-27T02:25Z [----] followers, [----] engagements
"Satya telling everyone to stop calling things AI slop with the most AI slop quote ever is kind of hilarious: We need to get beyond the arguments of slop vs sophistication and develop a new equilibrium in terms of our theory of the mind that accounts for humans being equipped with these new cognitive amplifier tools as we relate to each other. Copilot definitely wrote that. https://twitter.com/i/web/status/2007315288715325816 https://twitter.com/i/web/status/2007315288715325816"
X Link 2026-01-03T04:57Z [----] followers, [---] engagements
"I feel like SNL should be on a monthly subscription plan with the United States government for providing such amazing content for the show. Does SNL even need writers at this point"
X Link 2026-01-04T05:06Z [----] followers, [---] engagements
"Marco Rubio finding out that he also has to become the CEO of Microslop"
X Link 2026-01-06T04:54Z [----] followers, [---] engagements
"As someone born just outside of Chicago and having lived in Illinois for a large portion of my life its always a good day when the Bears beat the Packers. Also I hope this guy goes viral. We saw him at the end of the game and my wife recorded him. Its a perfect meme"
X Link 2026-01-11T06:03Z [----] followers, [---] engagements
"Kim found out the hard way what the [--] second setting did to the regimes AWS storage bill. Government surveillance aint cheap. Full story here: https://www.vice.com/en/article/north-koreas-smartphones-are-pocket-sized-orwellian-nightmares/ https://www.vice.com/en/article/north-koreas-smartphones-are-pocket-sized-orwellian-nightmares/"
X Link 2026-01-12T05:12Z [----] followers, [--] engagements
"Every week I try to share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention or were shared with me by others in the community. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: Experian Lead Offensive Security Engineer π Quick Insights: Remote (United States) Comp: $133k-$239k/yr + bonus + benefits Internal team Individual contributor π― Apply Here: β Notes: This sounds like a solid red team role with a reasonable scope and decent comp package. π Company +"
X Link 2026-01-16T19:08Z [----] followers, [----] engagements
"The Rip is one of those movies where youre about [--] minutes in and you start asking yourself does any of this make sense Then you remember it stars Matt Damon and Ben Affleck so you let it slide. You give them a pass because of Good Will Hunting and you keep watching because there are enough moments where you can actually feel some of that old magic. Every part of you wants The Rip to be great in that same way but it isnt. What it is though is a very good and very gritty cop thriller thats absolutely worth watching. 7/10. https://twitter.com/i/web/status/2012748026595492022"
X Link 2026-01-18T04:44Z [----] followers, [----] engagements
"Guys I know this might sound really convenient but if you dont buy my companys flagship product the AI bubble will burst and ruin the economy and probably your personal finances with. So yeah. Could you could just buy my product so we dont have to talk about this again next month Thanks https://twitter.com/i/web/status/2013844948374720769 https://twitter.com/i/web/status/2013844948374720769"
X Link 2026-01-21T05:23Z [----] followers, [--] engagements
"Guys I know this might sound really convenient but if you dont buy my companys flagship product the AI bubble will burst and ruin the economy and probably your personal finances with it. So yeah. Could you please just buy my product so we dont have to talk about this again next month Thanks https://twitter.com/i/web/status/2013849384149037520 https://twitter.com/i/web/status/2013849384149037520"
X Link 2026-01-21T05:41Z [----] followers, [----] engagements
"TV meteorologists are as excited about this winter storm as the red team walking into a debrief ready to explain multiple critical findings in their report"
X Link 2026-01-24T01:09Z [----] followers, [--] engagements
"TV meteorologists are as excited about this winter storm as the red team walking into a debrief ready to explain multiple critical findings in their report"
X Link 2026-01-24T01:15Z [----] followers, [----] engagements
"Behind the scenes footage"
X Link 2026-02-06T02:55Z [----] followers, 79.9K engagements
"Amazon measuring deviations in employee keystroke times from pre-established baselines probably shouldnt surprise us at this point. Seems on brand actually. Keystroke data from the laptop of a worker who was supposed to be in US should have taken tens of milliseconds to reach Amazons Seattle headquarters. Instead the flow from this machine was more than [---] milliseconds Lovely"
X Link 2025-12-19T02:24Z [----] followers, 1.4M engagements
"I accept a connection request. No big deal. A message is immediately sent. Sigh. I am addressed by the first part of my last name. SMH. Wants to talk about Zero Trust. Dude. No one ever willingly wants to talk about zero trust Realizes the name mistake and without missing a beat proceeds to ask if I want to talk about his Amazon best selling book. What is going on here π https://twitter.com/i/web/status/2016388543665393732 https://twitter.com/i/web/status/2016388543665393732"
X Link 2026-01-28T05:51Z [----] followers, [---] engagements
"This really shouldnt be that big of a surprise as cybersecurity professionals have been warning about scenarios like this for years now. Whats highly ironic here though is that the acting CISA director requested special permission to use ChatGPT precisely because it wasnt authorized in the first place. They received permission then this happened. For red teams this is familiar territory. Most companies are operating with little to no visibility into how LLMs are being used internally and sensitive data is effectively being exfiltrated through these approved productivity tools on a daily"
X Link 2026-01-28T23:43Z [----] followers, [----] engagements
"In [----] two professional penetration testers were arrested while performing an authorized physical security assessment of an Iowa county courthouse"
X Link 2026-01-30T05:29Z [----] followers, 32.2K engagements
"Here you go: In [----] two professional penetration testers were arrested while performing an authorized physical security assessment of an Iowa county courthouse. They had written authorization from the states judicial branch to conduct red team testing (including physical entry) but local law enforcement officials still arrested them after they tripped some alarms during the exercise. The criminal charges were eventually dropped and the two testers sued the county for wrongful arrest and defamation. Now more than six years later Dallas County agreed to settle that lawsuit for $600000."
X Link 2026-01-30T15:19Z [----] followers, [----] engagements
"@UK_Daniel_Card Dude. Im just glad someone else thinks this is funny besides me. I think I have a warped sense of humor π€ͺ"
X Link 2026-02-06T04:59Z [----] followers, [---] engagements
"Due to the ongoing geopolitical tensions in the Middle East Apple significantly delayed the release of season [--] of Tehran. It ended up being well over a year but the new season is finally streaming on Apple TV+. If youve ever been a red teamer cyber or SOF operator and in situations where you had to think about OPSEC tradecraft or second order effects you might enjoy this show. The series follows a highly skilled Mossad cyber operator who is operating inside Iran on mission. Unfortunately and I think this needs to be said to appropriately set expectations: the CNO/hacking scenes will be"
X Link 2026-02-10T05:46Z [----] followers, [----] engagements
"Theres an all expenses paid trip to BlackHat and DEFCON at the top of the mountain"
X Link 2026-02-12T02:46Z [----] followers, [----] engagements
"I have nothing against CTFs bug bounties or certification labs. Theyre valuable training tools and they absolutely have their place. Unfortunately they dont always do the greatest job of preparing people for what real red teaming looks like in practice. Worse that CTF mindset sometimes bleeds into live engagements. When it does its easy for red team objectives to start to feel like a CTF or a speedrun through the kill chain. At the end of the day though achieving red team objectives isnt and shouldnt be the primary purpose of the op. Objectives exist (or at least should exist) to help create"
X Link 2026-02-05T03:10Z [----] followers, [----] engagements
"Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: CrowdStrike Red Team Principal Consultant π Quick Insights: Remote (United States) Comp: $140k-$195k/yr base + bonus + equity + benefits Consulting Individual contributor π― Apply Here: β Notes: Standout w/ minimum [--] year of experience in a leadership role + community participation (conference speaker tool development contributor etc.) π"
X Link 2026-02-08T15:24Z [----] followers, [----] engagements
"Hit em with that red team rizz"
X Link 2026-02-15T00:23Z [----] followers, [----] engagements
"It would seem that Epstein's personal hacker was an Italian citizen (born in Calabria) 0day developer and seller established the Saudi governments surveillance program his company acquired by CrowdStrike in [----] and allegedly worked at CrowdStrike as a VP. Has anyone tried to track down this guy yet Source: https://www.justice.gov/epstein/files/DataSet%2010/EFTA01683874.pdf https://www.justice.gov/epstein/files/DataSet%2010/EFTA01683874.pdf"
X Link 2026-01-31T23:37Z [----] followers, 469.1K engagements
"Historically cybersecurity has never been a true entry-level field. Most people start in IT to learn how networks and systems work then transition into security roles over time once they have a certain amount of foundational knowledge and experience. That said many companies colleges and training institutions have a strong monetary incentive to present cybersecurity as entry-level. They make significant amounts of money selling bootcamps and certifications to people eager to break into the field. After completing these programs and earning a few credentials many newcomers discover that"
X Link 2026-02-15T21:42Z [----] followers, 14.8K engagements
"Historically cybersecurity has never been a true entry-level field. Most people start in IT to learn how networks and systems work then transition into security roles over time once they have a certain amount of foundational knowledge and experience. That said many companies colleges and training institutions have a strong monetary incentive to present cybersecurity as entry-level. They make significant amounts of money selling bootcamps and certifications to people eager to break into the field. After completing these programs and earning a few credentials many newcomers discover that"
X Link 2026-02-15T21:42Z [----] followers, 14.8K engagements
"(Part 2) Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: CESI Cyber Event Red Teamer π Quick Insights: Onsite (Hanover MD) Consulting / Gov support Individual contributor π° Comp: $120k-$170k/yr + benefits π― Apply Here: β Notes: Standout if youve completed military technical training like CTIA FORGE DoD red team or exploit analyst and have current CI polygraph. π Company + Role: Salesforce"
X Link 2026-02-15T16:53Z [----] followers, [----] engagements
"(Part 1) Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: Netflix Attack Emulation Team Manager π Quick Insights: Remote (US) Internal team People manager π° Comp: $510k-$752k/yr + stock + benefits π― Apply Here: β Notes: Standout if you have direct experience managing a hybrid team of in-person and remote engineers. π Company + Role: Swift Red Team Operator π Quick Insights: Hybrid"
X Link 2026-02-15T16:46Z [----] followers, [----] engagements
"Hit em with that red team rizz"
X Link 2026-02-15T00:23Z [----] followers, [----] engagements
"If you like post hardcore emo bands with anthem-y pop punk melodies and aggressive guitars you might consider checking out the new album (A.R.S.O.N.) by @StoryoftheYear. It just dropped yesterday. With a band like SOTY you come back to them because of songs like Until the Day I Die and Anthem of Our Dying Day that really defined their sound and solidified them in the space. Obviously you want a band to progress and evolve musically but you also dont want them to lose their core identity and sound in the process. To me this album strikes a good balance. It is heavily produced and polished"
X Link 2026-02-14T19:49Z [----] followers, [---] engagements
"Congratulations Youre now ready for your first offensive security role"
X Link 2026-02-13T15:50Z [----] followers, [---] engagements
"Which one you picking Lol"
X Link 2026-02-13T01:06Z [----] followers, [----] engagements
"A new study that just dropped [--] days ago says that people who drink 2-3 cups of coffee per day have a significantly lower risk of dementia. I guess coffee is backfor now. π Link: https://jamanetwork.com/journals/jama/article-abstract/2844764 https://jamanetwork.com/journals/jama/article-abstract/2844764"
X Link 2026-02-12T15:38Z [----] followers, [---] engagements
"Theres an all expenses paid trip to BlackHat and DEFCON at the top of the mountain"
X Link 2026-02-12T02:46Z [----] followers, [----] engagements
"But there was a good reason"
X Link 2026-02-11T05:32Z [----] followers, [----] engagements
"Its not too late. Maybe I should drop [--] memes tonight"
X Link 2026-02-11T05:20Z [----] followers, [---] engagements
"how I think OSCP holders feel"
X Link 2026-02-11T01:53Z [----] followers, 40.7K engagements
"Due to the ongoing geopolitical tensions in the Middle East Apple significantly delayed the release of season [--] of Tehran. It ended up being well over a year but the new season is finally streaming on Apple TV+. If youve ever been a red teamer cyber or SOF operator and in situations where you had to think about OPSEC tradecraft or second order effects you might enjoy this show. The series follows a highly skilled Mossad cyber operator who is operating inside Iran on mission. Unfortunately and I think this needs to be said to appropriately set expectations: the CNO/hacking scenes will be"
X Link 2026-02-10T05:46Z [----] followers, [----] engagements
"I didnt understand most of the words but Bad Bunnys Super Bowl halftime show was still a ton of fun to watch. My wife and kids are Latino so it was awesome to see Puerto Rican/Latino representation on such a huge stage. I think my wife might have even teared up which made it all the more special"
X Link 2026-02-09T02:16Z [----] followers, [----] engagements
"loot and pillage while you can"
X Link 2026-02-08T18:55Z [----] followers, [----] engagements
"Every week I share a curated list of red team-specific jobs (or similar/adjacent) that caught my attention. My goal is simple: help job hunters in the offensive security space find a red team-specific role. Below is this weeks list: π Company + Role: CrowdStrike Red Team Principal Consultant π Quick Insights: Remote (United States) Comp: $140k-$195k/yr base + bonus + equity + benefits Consulting Individual contributor π― Apply Here: β Notes: Standout w/ minimum [--] year of experience in a leadership role + community participation (conference speaker tool development contributor etc.) π"
X Link 2026-02-08T15:24Z [----] followers, [----] engagements
"I cant decide if I want to deal with the blowback of posting this on LIinkedIn lol"
X Link 2026-02-06T02:57Z [----] followers, [---] engagements
"Its actually performing quite well on LI surprisingly. I think its up to like 10k views. I thought for sure it would flop"
X Link 2026-02-07T01:47Z [----] followers, [---] engagements
Limited data mode. Full metrics available with subscription: lunarcrush.com/pricing
/creator/twitter::nickvangilder