Steph3nSims Profile Banner
Stephen Sims Profile
Stephen Sims

@Steph3nSims

Followers
24K
Following
5K
Media
524
Statuses
4K

Perpetual Student | SANS Fellow | Musician | Braggart Hater | Gray Hat Hacking | VR | 🏂 | deadcode | https://t.co/CadJehomsU

Berkeley, CA
Joined February 2014
Don't wanna be here? Send us removal request.
@Steph3nSims
Stephen Sims
2 days
You can watch the recording of today's @offby1security stream with @albinowax here: .
1
22
92
@Steph3nSims
Stephen Sims
2 days
Novel HTTP/1 Request Smuggling/Desync Attacks with James Kettle
0
12
54
@grok
Grok
3 days
"A modern black glass house with warm lighting, nestled among tall trees beside a tranquil river in a misty forest.". Create images and videos in seconds with Grok Imagine.
848
718
5K
@Steph3nSims
Stephen Sims
2 days
Join me at 11AM PT today with @albinowax on the @offby1security stream for a session on "Novel HTTP/1 Request Smuggling/Desync Attacks!".
Tweet media one
2
27
132
@Steph3nSims
Stephen Sims
2 days
RT @albinowax: It's been great to see people 'enjoying' the 0CL @WebSecAcademy lab! Tune in this Friday at 11AM PT to watch me livestream t….
0
17
0
@Steph3nSims
Stephen Sims
11 days
The @offby1security stream will return next Friday as we are at DEF CON this weekend.
2
2
40
@Steph3nSims
Stephen Sims
19 days
RT @0xfluxsec: Introducing: Hells Hollow - Thought rootkit SSDT hooking was dead? Following my previous work, I have managed to essentially….
0
99
0
@Steph3nSims
Stephen Sims
19 days
RT @natashenka: While most vendors ship timely patches for vulnerabilities reported by Project Zero, they don’t always reach users. Today,….
0
42
0
@Steph3nSims
Stephen Sims
19 days
The heavily updated version of the Advanced Exploit Dev course "SEC760" with my coauthor @0xabe_io was just recorded and available at . Updates include Linux Chrome V8 Exploitation, IDA 9.1, Kernel Debugging Windows Mitigations, 2025 patch diffs, etc. .
Tweet card summary image
sans.org
Develop advanced exploit development skills to discover vulnerabilities, analyze patches, and write complex exploits while working with modern security controls.
2
33
153
@Steph3nSims
Stephen Sims
22 days
I'm not a DFIR guy, but @DarkWebInformer is one of the accounts I've seen making the public aware of a lot of this type of activity.
0
0
7
@Steph3nSims
Stephen Sims
22 days
Just came across some breach data for sale that was deeply alarming. If your Cyber Threat Intel team isn’t watching the dark web, Telegram, and other leak/sale channels, you’re likely flying blind. You could be missing early indicators of compromise and reduced dwell time.
2
4
32
@Steph3nSims
Stephen Sims
23 days
Thanks to the team @dreadnode for joining me for an informative stream today! You can watch the recording on YouTube here: @offby1security.
2
16
73
@Steph3nSims
Stephen Sims
23 days
Building and Deploying Offensive Security Agents with Dreadnode
0
13
77
@Steph3nSims
Stephen Sims
23 days
RT @dreadnode: Rise and shine! We're going live on Off By One with @Steph3nSims this afternoon—meet us here at 11 AM PT: .
0
3
0
@Steph3nSims
Stephen Sims
25 days
Join me this Friday at 11AM PT on the @offby1security stream with the team from @dreadnode for a session on "Building and Deploying Offensive Security Agents!" .
Tweet media one
3
22
85
@Steph3nSims
Stephen Sims
27 days
Join me this Friday at 11AM PT on the @offby1security stream with the good folks from @dreadnode for a session on offensive/adversarial AI. Details coming soon!.
1
10
54
@Steph3nSims
Stephen Sims
30 days
Exploiting a Windows Application Using Return Oriented Programming
2
36
162
@Steph3nSims
Stephen Sims
30 days
I will be streaming a portion of the SANS SEC660 course I'm teaching today in DC on Introduction to Windows Exploit Development. We will use ROP to get around DEP on Windows 11. 1PM PT.
2
40
210
@Steph3nSims
Stephen Sims
1 month
RT @linkersec: Fuzzing Linux Kernel Modules, with Slava Moskvin. Stream by @slava_moskvin_ hosted by @Steph3nSims about building a custom f….
0
44
0
@Steph3nSims
Stephen Sims
1 month
If there's interest I was thinking about doing a stream for an hour this Friday while I'm teaching a class on introductory Windows exploit development. Next Friday I'm hoping to continue turning the recent patch diff we did on ole32.dll into a crash condition PoC.
16
8
132