rezaduty

401 posts

rezaduty banner
rezaduty

rezaduty

@rezaduty

Offensively Defensive Continuous Developer #TryHarder

Joined Haziran 2018
495 Following1K Followers
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
Stop Googling cybersecurity skills. +499 infosec skills, structured paths, career mapping; all in one place. This is how you actually learn. career.hadess.io #infosec #job #career
English
1
1
16
2.4K
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
Cybersecurity Career Coach that Turns Rookies into Pros. After 7+ years creating content and collaborating with top security engineers & researchers, we've seen the same gaps over and over: How to actually start and How to keep growing we built: career.hadess.io #job
HADESS tweet media
English
2
1
3
178
rezaduty retweeted
Hazard Lab
Hazard Lab@thehazardlabยท
CVE-2025-9959: smolagents Python Sandbox Escape hazardlab.substack.com/publish/post/1โ€ฆ Python sandbox implementations often focus on blocking dangerous attribute access patterns like `obj.__class__` but forget that the same introspection is achievable through method invocation. #python #cve
Hazard Lab tweet media
English
0
3
7
972
rezaduty retweeted
YS
YS@YShahinzadehยท
Iโ€™ve been hunting on H1 for almost 3 years, ranked #18 in 2025, have always tried to contribute positively to the hacker community. Iโ€™ve earned around $500k in bounties and was on the road to $1M. Yet I donโ€™t even have HSM, and I feel I havenโ€™t been recognized as I should 1/4
YS tweet media
Youssef Sammouda (sam0)@samm0uda

@Hacker0x01 is now banning people without explanation or providing how the terms and conditions were violated. While other platforms are advancing, H1 revolutionary new vision is to track hackers on social media, make assumptions and ban them without a real proof.

English
40
126
796
255.3K
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ฒ ๐—ฏ๐˜† ๐——๐—ฒ๐˜€๐—ถ๐—ด๐—ป ๐—ฅ๐—ฒ๐—ฎ๐—นโ€๐—ง๐—ถ๐—บ๐—ฒ ๐—–๐—ผ๐—บ๐—บ๐˜‚๐—ป๐—ถ๐—ฐ๐—ฎ๐˜๐—ถ๐—ผ๐—ป โ€” ๐—”๐˜๐˜๐—ฎ๐—ฐ๐—ธ & ๐——๐—ฒ๐—ณ๐—ฒ๐—ป๐˜€๐—ฒ ๐—ฃ๐—น๐—ฎ๐˜†๐—ฏ๐—ผ๐—ผ๐—ธ open.substack.com/pub/devsecopsgโ€ฆ Donald ๐Ÿ‘ฑโ€โ™‚๏ธ, a developer and chaos wrangler, watched PacketPete, our mischievous red-teamer, go wild on his real-time stack ๐Ÿ‘‡
HADESS tweet media
English
1
3
6
343
rezaduty retweeted
SinSinology
SinSinology@SinSinologyยท
NEED YOUR HELP! My Friend/Teacher Soroush (@irsdl) Is looking for a new company to join, you know him as the .NET-God, the guy who has popped exchange, sharepoint, has maintained ysoserial_.net for years, contributed to the exploitation scene numerous times, taught all of you about what .net ghost webshells are, taught you about what viewstate exploitation is, how .net remoting exploitation issues can be solved, iis cookieless, web_config exploitation, countless of blogs, talks, techniques,... but companies keep saying: "we aren't hiring right now!" if i was in position of hiring, woudln't wanna miss out on having one of THE BEST in my team you're retweet is Extremely appreciated โค๏ธโ€๐Ÿ”ฅ soroush, if you see this, don't hate me, had to do it without telling you
English
12
120
249
82.4K
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ฒ ๐—ฏ๐˜† ๐——๐—ฒ๐˜€๐—ถ๐—ด๐—ป - ๐—˜๐˜…๐—ฒ๐—ฐ๐˜‚๐˜๐—ถ๐—ผ๐—ป ๐—ฎ๐—ป๐—ฑ ๐—™๐—ถ๐—น๐—ฒ ๐— ๐—ฎ๐—ป๐—ฎ๐—ด๐—ฒ๐—บ๐—ฒ๐—ป๐˜ open.substack.com/pub/devsecopsgโ€ฆ Syd, a senior Spring developer, trusted her file upload service with basic extension validation. "Only .pdf and .jpg files allowed," she thought. #appsec #devsecops
HADESS tweet media
English
0
3
10
415
rezaduty retweeted
Crusaders of Rust
Crusaders of Rust@cor_ctfยท
Say hello to Eternal Tux๐Ÿง, a 0-click RCE exploit against the Linux kernel from KSMBD N-Days (CVE-2023-52440 & CVE-2023-4130) willsroot.io/2025/09/ksmbd-โ€ฆ Cheers to @u1f383 for finding these CVEs + the OffensiveCon talk from gteissier & @laomaiweng for inspiration!
English
11
200
760
81.4K
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
Secure by Design Frontend Security open.substack.com/pub/devsecopsgโ€ฆ Imagine Frontend used dangerouslySetInnerHTML to render user comments without sanitization. An attacker crafted malicious JavaScript that stole authentication tokens from other users' browsers. Learn more ๐Ÿ‘‡
HADESS tweet media
English
1
3
6
426
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
๐—”๐—ฐ๐—ฐ๐—ฒ๐˜€๐˜€ ๐—–๐—ผ๐—ป๐˜๐—ฟ๐—ผ๐—น ๐— ๐—ถ๐—ฑ๐—ฑ๐—น๐—ฒ๐˜„๐—ฎ๐—ฟ๐—ฒ ๐—ฃ๐—น๐—ฎ๐˜†๐—ฏ๐—ผ๐—ผ๐—ธ open.substack.com/pub/devsecopsgโ€ฆ Imagine zero trust applied only to north-south traffic. East-west service calls trusted cluster networks implicitly. Learn more ๐Ÿ‘‡
HADESS tweet media
English
1
6
10
477
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ฒ ๐—ฏ๐˜† ๐——๐—ฒ๐˜€๐—ถ๐—ด๐—ป - ๐—ช๐—ฒ๐—ฏ ๐—ฆ๐—ฒ๐—ฟ๐˜ƒ๐—ถ๐—ฐ๐—ฒ & ๐—”๐—ฃ๐—œ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜†ย  open.substack.com/pub/devsecopsgโ€ฆ The panic began. It wasn't the new API. Learn more ๐Ÿ‘‡
HADESS tweet media
English
2
4
19
1.2K
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
Behavioral Intelligence - BEHINT Ever heard of stealing conversations from a lightbulb? turning desk lamp vibrations into crystal-clear audio. Pure side-channel magic from Ben-Gurion's mad scientists. full analysis: open.substack.com/pub/redteamguiโ€ฆ #osint #redteam #ai #behint
HADESS tweet media
English
1
5
17
1.8K
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
๐—”๐—ช๐—ฆ ๐—ฃ๐—ฟ๐—ผ๐—ฎ๐—ฐ๐˜๐—ถ๐˜ƒ๐—ฒ ๐——๐—ฒ๐—ณ๐—ฒ๐—ป๐—ฐ๐—ฒ: ๐—ง๐—ต๐—ฒ ๐—”๐—ฟ๐˜ ๐—ผ๐—ณ ๐—ช๐—ฎ๐—ฟ ๐—ถ๐—ป ๐—–๐—น๐—ผ๐˜‚๐—ฑ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† open.substack.com/pub/devsecopsgโ€ฆ #aws #cloud #redteam #devops #devsecops
HADESS tweet media
English
0
2
5
305
rezaduty retweeted
HADESS
HADESS@Hadess_securityยท
๐—–๐—ผ๐—ป๐˜๐—ฎ๐—ถ๐—ป๐—ฒ๐—ฟ ๐—ข๐—ฆ ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฃ๐—น๐—ฎ๐˜†๐—ฏ๐—ผ๐—ผ๐—ธ open.substack.com/pub/devsecopsgโ€ฆ Maya ๐Ÿ‘ฉโ€๐Ÿ’ป was about to docker pull redis:latest when her security scanner screamed - the image contained 47 critical vulnerabilities and suspicious network activity! #devops #devsecops #containers
HADESS tweet media
English
1
5
17
1.2K