Professional Hacker. Founder of PenTest reporting tool vulnsy.com Collects infosec tools like Pokémon cards at: pentestlist.com

Buckinghamshire
Pinned Tweet
VULNSY - A Pentest Reporting Platform for Security Teams Built by pentesters, for pentesters.
1
2
17
47,756
PoV: you sleep after being awake for 38 hours having done the @offsectraining OSAI exam.
137
Sounds fun other than the possibility of getting assassinated. Yolo I guess
This is a pretty big shift in U.S. cyber policy. The White House is setting up a program that would let private cybersecurity companies conduct government-authorized operations against foreign cybercriminal groups, including surveillance and disruption of their infrastructure. Not exactly “hack back,” but definitely a major expansion of the private sector’s role in offensive cyber operations. whitehouse.gov/presidential-…
2
293
Client: I don’t think my developers have any idea how to secure a multi-tenant application. Can you take a look?
1
291
200
Luke Turvey retweeted
A ride fit for a Spartan. Follow & repost with #MasterChief117Sweepstakes for a chance to win a custom-designed Lamborghini Urus 117 Edition 1:18-scale collectible replica!  18+. Ends 9/13/26. Rules: xbx.lv/4hAiwxf
1,085
2,675
8,121
1,033,399
Today, I am seeing something I have been watching for years. Marketing.
Yesterday, OpenAI and Hugging Face disclosed something we’ve been watching for years: pre-release models, tested without normal safeguards, hacked their way into winning a benchmark. Our take, from the team that builds Offensive AI agents for a living 🧵
3
263
🔴 Vulnsy for Red Teams 🔴 Having spoken to many people about reporting platforms. The same thing is always said: "It's only good for web app testing or vulnerability style reports, we need to write custom narrative text per engagement, not just show vulnerabilities" I heard that. So, I made Vulnsy narrative capable. Simply add tabs and narrative sections that run in order of export. For repeatable narratives, such as running Bloodhound or exploiting SCCM, simply use the narratives database (like a findings database) and modify your premade boiler plate. Save yourself the time and never copy/paste from Word documents again. Try it free for 14 days - vulnsy.com/
2
171
Could this be the end of 6 stage interviews to find out the competitive salary is 3 shillings per year😲
Salary information to be shown on job ads under new laws bbc.in/4vyrGhd
3
305
✨14 Day Free Trial: No card details required ✨ Vulnsy.. The Vulnerability Reporting Platform. If you love it after 14 days, take out a subscription. If you don't love it, thanks for trying it😊 Sign up in 4 simple steps vulnsy.com/
1
4
9
26,514
I have learnt a lot over the last 5 months since launching Vulnsy. The people who have been using it on their projects have given me lots of great feedback and where things have been not so great, I have made changes. Till now, I have done basically no marketing for it. But I would love for more people to give it a try and so, today I am starting free trials.
1
71
Is the authority-bound agentic flywheel in the room with us?
1
158
Yes
the type of sh!t i was doing in 2013 instead of building a startup
228
I sure do love a holiday ☀️
1
71
If you use @Burp_Suite and may find it useful to have all your target endpoints as a OpenAPI doc to: - give to your clients for added value - import to postman for further testing - use for bug bounty tasks Here you go 😇
1
4
282
Its been a while..
3
96
The last 3 web app security assessments I have conducted, the developers have produced fixes for my findings within the day I raise them... This has rarely happened. More typical that orgs take weeks to implement a fix. Something tells me this is Claudes fault.
1
3
260
🙏
1
4
299
This should be the logo for @ZackKorman's new company...
1
3
284
My Claude experience this week:
1
4
290