Felipe Warrener-Iglesias Profile Banner
Felipe Warrener-Iglesias Profile
Felipe Warrener-Iglesias

@fwrnr

Followers
2,160
Following
266
Media
136
Statuses
1,734

flexing on computers, every bone and muscle. Prev. Vulnerability Research @withsecure / @pwc_uk

???
Joined April 2016
Don't wanna be here? Send us removal request.
Explore trending content on Musk Viewer
Pinned Tweet
@fwrnr
Felipe Warrener-Iglesias
2 months
I was awarded $65,400 for my submissions on @bugcrowd #ItTakesACrowd The #bugbounty #bugbountytip here is turn off your testing mindset and turn on your vulnerability research mindset.
Tweet media one
59
38
704
@fwrnr
Felipe Warrener-Iglesias
3 years
@TheOllieJT @vallejocolors Your ‘paints’ literally say the colour
Tweet media one
1
0
46
@fwrnr
Felipe Warrener-Iglesias
22 days
Recently had a disappointing experience on @Bugcrowd . Reported two critical vulnerabilities to @FISGlobal compromising integrity of a product. One bug took 3 months for full payment, while the other was marked as self-duplicate due to copy-pasting of code...?
9
1
41
@fwrnr
Felipe Warrener-Iglesias
3 months
@nicojrme @nico_jeannen @daniel_nguyenx Exactly, this is a conflict of interest. They could just DDoS the customers themselves to boost revenue...
2
0
41
@fwrnr
Felipe Warrener-Iglesias
1 month
@Hammad7361 You cannot 'download' .php files by visiting them... That's the whole point of php, to not reveal the code. You're probably getting 0 size because these files are libraries and are not meant to output any data, they are instead meant to be imported by other php files.
1
0
37
@fwrnr
Felipe Warrener-Iglesias
3 months
@nicojrme @nico_jeannen @daniel_nguyenx Or, more realistically, implement relatively poor DDoS protection for their own benefit.
0
0
28
@fwrnr
Felipe Warrener-Iglesias
3 years
Tweet media one
3
1
26
@fwrnr
Felipe Warrener-Iglesias
2 years
@edbutler2 @jonathandata1 Hi Ed, the person you've featured here has a track record of maliciously spreading misinformation on device security that has been disproven and debuinked by some of the world's top security professionals (eg. @taviso ). Please take this story down and do better journalism.
0
0
23
@fwrnr
Felipe Warrener-Iglesias
2 years
@mikko @ClarkQwertyuiop The original caption of the photo is even better
Tweet media one
1
3
19
@fwrnr
Felipe Warrener-Iglesias
10 days
@jobertabma @Hacker0x01 Did you train the AI agent off of the submissions of humans in hackerone? If so, that's really unethical.
3
1
17
@fwrnr
Felipe Warrener-Iglesias
26 days
@caseyjohnellis Gamified VDPs extract free labour from people. Bug bounty platforms are meant to facilitate hackers being paid for their work. VDPs are a conflict of interest and a slippery slope. Bug bounty wouldn't exist without the 'no more free bugs' movement.
1
1
17
@fwrnr
Felipe Warrener-Iglesias
2 years
32 degrees in Bangkok today.
Tweet media one
1
0
16
@fwrnr
Felipe Warrener-Iglesias
3 years
@TheOllieJT @vallejocolors Your tweet is not regarding the etymology of the word ‘black’ though, it’s saying the Spanish word ‘negro’ is a racial slur, which is isn’t and neither is the world black - it is essentially ‘I’m so disappointed in this company for being based in Spain’
0
0
13
@fwrnr
Felipe Warrener-Iglesias
1 month
Tweet media one
1
0
14
@fwrnr
Felipe Warrener-Iglesias
2 months
My local boss man is now a nice guy named Shintaro who runs a small restaurant serving Fukuoka ramen, I rocked up there today at 2am and they wondered where I'd been the past few weeks. Super nice guy who teaches me more about Japan every time I visit.
2
0
14
@fwrnr
Felipe Warrener-Iglesias
1 year
I grilled some meat yesterday, does this mean I'm ready to become a father now? 🤣
Tweet media one
Tweet media two
2
0
13
@fwrnr
Felipe Warrener-Iglesias
2 years
I’m in the bar @BSidesChelt with the mega famous and next gen @UK_Daniel_Card @brianwhelton come and give us hugs
2
0
12
@fwrnr
Felipe Warrener-Iglesias
2 years
Tweet media one
1
0
12
@fwrnr
Felipe Warrener-Iglesias
1 month
@TheMsterDoctor1 @PikuHaku @MiniMjStar @young_vanda_ @intigriti 20 in a few hours? That's more than one bug every 10 minutes... Finding bugs on VDPs is not comparable to finding bugs on paid targets.
3
0
12
@fwrnr
Felipe Warrener-Iglesias
3 months
Good to be back in Vietnam 🇻🇳
Tweet media one
Tweet media two
1
0
12
@fwrnr
Felipe Warrener-Iglesias
2 years
Drunk Bob Ross painting tonight at the @VicHarkness residence 😎 @Jabellz2 @0xLegacyy
Tweet media one
Tweet media two
Tweet media three
1
0
11
@fwrnr
Felipe Warrener-Iglesias
2 months
2
2
12
@fwrnr
Felipe Warrener-Iglesias
27 days
Heading to full-moon tonight 🍹
Tweet media one
1
0
11
@fwrnr
Felipe Warrener-Iglesias
10 months
Anybody think they got a tougher DEFCON flight itenary than me? 😎 #Defcon #defcon31
Tweet media one
2
1
11
@fwrnr
Felipe Warrener-Iglesias
2 years
@theflow0 @hardwear_io Do you not think $20,000 is pretty low? Are they only reserving the critical category for remotely exploitable vulnerabilities or scalable compromise of DRM?
1
1
10
@fwrnr
Felipe Warrener-Iglesias
1 year
age = 24; I really appreciate all of my amazing twitter folk and the good times we've shared. Turbulent year but also one full of surprises and opportunities. :)
2
0
10
@fwrnr
Felipe Warrener-Iglesias
5 months
Freezing in Toronto this morning 🥶
Tweet media one
3
0
10
@fwrnr
Felipe Warrener-Iglesias
3 years
@albanwr I used to do this in school 🤣 SPF records were always too lax on school email domains 😬
1
0
10
@fwrnr
Felipe Warrener-Iglesias
24 days
Happy Friday 🫡
Tweet media one
1
0
10
@fwrnr
Felipe Warrener-Iglesias
4 months
@nav1n0x This is telling you it's a prepared statement, and forming the statement failed because there is no way to map a non-UUID compatible string to a UUID (hence 'parse') - you will not be able to achieve SQL injection on the UUID.
2
0
10
@fwrnr
Felipe Warrener-Iglesias
4 months
Toronto -> Vancouver -> Tokyo -> Bangkok Very tired.
Tweet media one
0
0
10
@fwrnr
Felipe Warrener-Iglesias
28 days
Koh Samui, how I have missed you 🌴🥥 ☀️ 🌊
Tweet media one
Tweet media two
1
0
10
@fwrnr
Felipe Warrener-Iglesias
3 years
Dug into some chateaubriand today with @David3141593 and @lewisparsons123 - paging @InfoSecSteak !
Tweet media one
Tweet media two
2
1
9
@fwrnr
Felipe Warrener-Iglesias
1 month
@mdisec Surely 'log4j LDAP injection' lol
0
2
9
@fwrnr
Felipe Warrener-Iglesias
1 month
@Hammad7361 No, when you go to profile.php on Facebook obviously you can't access the PHP code for that file? The only way would be with an LFI
0
0
9
@fwrnr
Felipe Warrener-Iglesias
2 years
This is as close to hacking in the early 2000s as I will ever get... #pwnkit
Tweet media one
0
0
8
@fwrnr
Felipe Warrener-Iglesias
3 years
@AlexCervilla @LiveOverflow It is the scheduler that prevents the whole system from getting stuck, the scheduler uses an algorithm to determine how big of a 'time slice' that process is allowed to have amongst the other processes. And a hardware-based timer interrupt dictates the end of that time slice. :)
1
0
9
@fwrnr
Felipe Warrener-Iglesias
2 years
Successfully exploited #Log4j RCE :D
Tweet media one
1
0
9
@fwrnr
Felipe Warrener-Iglesias
3 years
Friday was my last day @FSecureLabs . I’m really grateful to have met so many likeminded and talented people during my time there. I’m taking a bit of time off for the summer to recharge and will be starting a new role in August. Have a great summer everyone!
0
0
9
@fwrnr
Felipe Warrener-Iglesias
2 months
@farazsth98 Next-gen and production ready
0
0
8
@fwrnr
Felipe Warrener-Iglesias
2 years
I don’t think I’m built for winter, I always feel like the world is on my shoulders more than usual around winter time. Early dark makes me feel tired and unmotivated. Maybe my Spanish genetics are suboptimal for this season.
2
0
8
@fwrnr
Felipe Warrener-Iglesias
3 months
I like Hussein and think he does great work. But I think the bug bounty community should be careful about giving so much of their useful to services like these. It can just be used to improve an attack-surface management engine. You could be paying to improve someone's product.
@HusseiN98D
Hussein Daher
3 months
Updated pricing for
Tweet media one
4
0
12
2
0
8
@fwrnr
Felipe Warrener-Iglesias
1 year
Ho Chi Minh, Vietnam 🫠
1
0
8
@fwrnr
Felipe Warrener-Iglesias
1 year
Up the lions 🦁🦁🦁
Tweet media one
0
0
8
@fwrnr
Felipe Warrener-Iglesias
1 year
@CyberZombi3 @hackerfantastic Hardware wise, it can, software wise it doesn't because well that would be a disaster - the replay protection protocols in the readers aren't as secure as they make out - as I found out whilst auditing one 🫢
0
0
8
@fwrnr
Felipe Warrener-Iglesias
2 years
I will be making my way to @Steel_Con once I cure this fkn hangover, hotel breakfast work your magic
1
0
8
@fwrnr
Felipe Warrener-Iglesias
5 months
@JeshGyawa Why do you think people would give you this information? Information which makes them money? You're not asking a specific question, you're just saying 'take time out of your day to explain all your knowledge to me'?...
0
0
8
@fwrnr
Felipe Warrener-Iglesias
2 years
Arrived this morning in Chiang Mai ready for #lanternfestival 🔥
0
0
7
@fwrnr
Felipe Warrener-Iglesias
1 year
0
1
6
@fwrnr
Felipe Warrener-Iglesias
10 months
Wheels down Bali! 🙏
0
0
6
@fwrnr
Felipe Warrener-Iglesias
3 years
@BSidesCymru @PenTestPartners It’s too late, we saw you deep fry the pentest partners logo, there is no going back, embrace it 😎
Tweet media one
1
1
7
@fwrnr
Felipe Warrener-Iglesias
3 years
Lol @offsectraining also forced me to take my exam on dates I did not have the time. They automatically cancelled it and want me to pay for a retake. Can we talk about how forcing people to take the exams by certain dates only benefits them? @thecybermentor
@joehelle
Joe Helle - Mayor of Hacktown
3 years
Profiteering off of student failure is a horrible practice. If you have a poor passing rate own your failure as an educator and figure out how you can do better for your students. Jacking the price up some more to cash in on it isn't the answer. #TryHarder I guess. Or whatever
11
14
129
0
2
6
@fwrnr
Felipe Warrener-Iglesias
2 years
Well @BSidesChelt was awesome, so great to see everyone again, enjoy your next gen hangovers!
Tweet media one
0
0
6
@fwrnr
Felipe Warrener-Iglesias
2 years
Tweet media one
1
0
6
@fwrnr
Felipe Warrener-Iglesias
3 years
You’re all about to get maxpl0ited noobs
@maxpl0it
maxpl0it
3 years
Today was my last day at F-Secure. It’s been fantastic working with this team of incredibly skilled people and I’ve learned a LOT from them I’m excited for the future as big things are happening! (about to be a lot more active 👀)
10
0
109
0
0
7
@fwrnr
Felipe Warrener-Iglesias
2 years
Next gen
@UK_Daniel_Card
mRr3b00t
2 years
@fwrnr and I are super sober 🤣
Tweet media one
1
0
5
2
0
7
@fwrnr
Felipe Warrener-Iglesias
1 year
Skybar Bangkok 🌆
Tweet media one
0
0
6
@fwrnr
Felipe Warrener-Iglesias
3 years
I am super grateful for these people
@mrmdhaynes
M D Haynes
3 years
MEGA WEEKEND! Thanks @brianwhelton Dave Thomas, plus all the goons, speakers & mentors for #BSidesLDN2021 Epic to meet up with the team @UK_Daniel_Card @uidzero @fwrnr + new friends! Too many to list, but just a few... @greg_IT @SPCoulson @Jenny_Radcliffe @cybersecstu
Tweet media one
3
1
20
0
0
7
@fwrnr
Felipe Warrener-Iglesias
1 year
I'm open minded to pretty much everything except dog meat 😂 #vietnam
Tweet media one
Tweet media two
2
0
7
@fwrnr
Felipe Warrener-Iglesias
22 days
I just sort of went into bug bounty saying "I'm not gonna be that guy with the support tickets and pinging people asking them to look into X etc" but I very quickly became that and if you don't like having labour stolen, you unfortunately will too as it's a big part of bug bounty
2
0
5
@fwrnr
Felipe Warrener-Iglesias
1 year
My mouth tasted of lighter fluid for about half an hour after this 🫡🫡🫡
3
0
6
@fwrnr
Felipe Warrener-Iglesias
1 year
There are four things certain in this life: death, taxes, the quality of Japanese whiskey, and the taste of a drink crafted by Kohei 🇯🇵 Thank you for everything you've taught me. 💪
Tweet media one
0
0
6
@fwrnr
Felipe Warrener-Iglesias
3 years
age++
3
0
6
@fwrnr
Felipe Warrener-Iglesias
2 years
@nnwakelam Congrats buddy, undeniably based and pre-auth-pilled
1
0
6
@fwrnr
Felipe Warrener-Iglesias
6 months
0
0
0
@fwrnr
Felipe Warrener-Iglesias
5 months
I'm a massive geohot fan, he's the reason I got into hacking! But this is also true. See by Hector Martin of @fail0verflow - it doesn't make Geohot's hypervisor escapes any less impressive though. :)
@PlayStationHaX
PlayStationHaX
5 months
@todayininfosec @HydrogenNGU This is not accurate at all and insulting to real hackers/reverse engineers such as @fail0verflow . We could already jailbreak our consoles several months before this event. The actual hackers had the keys for a long time and didn’t release them for obvious reasons.
1
2
22
3
1
6
@fwrnr
Felipe Warrener-Iglesias
1 year
There are worse places to spend your first life crisis, I suppose. 🙂
0
0
6
@fwrnr
Felipe Warrener-Iglesias
2 years
Chiang Mai CAD Khomloy sky lantern festival last night. It was so surreal.
0
1
6
@fwrnr
Felipe Warrener-Iglesias
7 months
@zseano can you DM? :)
1
0
1
@fwrnr
Felipe Warrener-Iglesias
3 years
Check this out from @maxpl0it 8)
@SentinelOne
SentinelOne
3 years
🐧New on SentinelLabs! Meet CVE-2021-43267! @maxpl0it has discovered a heap overflow #vulnerability in the #TIPC module of the #Linux Kernel which can allow attackers to compromise an entire system. #CVE #Kernel #HeapOverflow #infosec cc: @LabsSentinel
0
49
151
1
0
6
@fwrnr
Felipe Warrener-Iglesias
2 years
It is okay to feel your feelings.
0
0
5
@fwrnr
Felipe Warrener-Iglesias
3 months
@codingo_ Lots of monitors here in Thailand, everywhere from the beaches to the roads. Here's one that fell through the ceiling of a hostel I was in haha
2
0
5
@fwrnr
Felipe Warrener-Iglesias
3 years
When I talked about OWASP Top 10 trending towards being out of touch with modern production web applications in 2019, everyone dog piled on me. Todays discussions indicate people seem to have caught up to this now. 😅
0
0
5
@fwrnr
Felipe Warrener-Iglesias
1 year
Managed to get 8 minutes straight in the ice cold plunge today, beating previous record of 4 minutes set just 4 days ago! Going for 10 next time 😁
0
0
5
@fwrnr
Felipe Warrener-Iglesias
1 year
@aaronbassett I mean he's right about one thing...
Tweet media one
0
0
5
@fwrnr
Felipe Warrener-Iglesias
3 years
I am speechless 😶
@fail0verflow
fail0verflow
3 years
Translation: We got all (symmetric) ps5 root keys. They can all be obtained from software - including per-console root key, if you look hard enough!
152
1K
4K
0
0
5
@fwrnr
Felipe Warrener-Iglesias
2 years
@ThePrimeagen @LiveOverflow It's quite common in poor/developing countries where people can't afford a laptop/PC and opt to use a cheap Android device (which with optimisation and ARM instruction set, isn't a bad deal performance wise)
1
0
5
@fwrnr
Felipe Warrener-Iglesias
2 years
@0xHildi @tom_marr1 @TaliaGold @Reddit If a company is happy to pay for what they perceive to be 8 hours work from people on this subreddit, then is it really unethical? If the company didn't feel that output was worth that pay then they wouldn't be paying it? 'minimum' implies 'acceptable'
1
0
5
@fwrnr
Felipe Warrener-Iglesias
1 year
Hua Hin...
Tweet media one
0
0
4
@fwrnr
Felipe Warrener-Iglesias
2 years
I can’t access his meta mask wallet either :((((
@CalumBoal
Calum Boal
2 years
A new way to summon the bots… I can’t access my meta mask wallet?
18
2
36
9
0
3
@fwrnr
Felipe Warrener-Iglesias
2 years
Tweet media one
1
0
4
@fwrnr
Felipe Warrener-Iglesias
3 years
Devon is packed atm and today is going to be another scorcher :) Looking forward to getting in the sea today 😅
1
0
5
@fwrnr
Felipe Warrener-Iglesias
2 months
@slymn_clkrsln @bxmbn That's an inaccuracy, which I do think he should retract/reclarify - but that's not an attack, you are adding the negative aspect the word 'VDP only' - as long as you don't think VDP only hackers aren't less worthy hackers, then it's not an attack.
1
0
4
@fwrnr
Felipe Warrener-Iglesias
2 years
First time making a blue cheese wedge dressing today, served alongside a 30-day dry aged Sirloin cut (and sweet potato fries not pictured!)
Tweet media one
0
0
5
@fwrnr
Felipe Warrener-Iglesias
3 months
@renniepak @Karel_Origin Karel is a beast 💪🏻
1
0
5
@fwrnr
Felipe Warrener-Iglesias
2 years
Tweet media one
3
0
5
@fwrnr
Felipe Warrener-Iglesias
3 months
Happy Chinese New Year everyone 🎇
Tweet media one
0
0
5
@fwrnr
Felipe Warrener-Iglesias
26 days
The flaming jump rope of death @ full moon had me beat this year, they actively make it harder now:) burn mark on my chin this morning haha
1
0
5
@fwrnr
Felipe Warrener-Iglesias
2 years
@qwertyoruiopz Notice how he's added 'American' to his bio right after he realises this has reached politicians whos audiences contain American surveillance state conspiracy theorists? This guy is so far past malevolence at this point.
0
0
4
@fwrnr
Felipe Warrener-Iglesias
2 years
Es hora de caldo 😌
Tweet media one
2
0
5
@fwrnr
Felipe Warrener-Iglesias
2 years
My best mates have just become parents to the most gorgeous little soul, it has filled me with joy. The innocence of new life should be cherished.
1
0
5
@fwrnr
Felipe Warrener-Iglesias
3 years
NK really tried to spike KJC ring leader’s vaccine and still couldn’t bring him down 🤦🏻‍♂️
passed out after taking the J&J vaccine, had muscle spasms which broke the chair i was sitting on and ended up hitting my head against a metal pipe.. not great :\
58
18
341
0
0
4
@fwrnr
Felipe Warrener-Iglesias
2 years
When the sky looks like this in the morning, you know it’s going to be a good day. 💪🏼
Tweet media one
0
0
3
@fwrnr
Felipe Warrener-Iglesias
2 years
I love this guy. Such a breath of fresh air and a great role model for men. I hope he can reach McGregor’s level of success without the grifting and bravado. I will always lend my ear to anyone who is struggling with their problems.
@ufc
UFC
2 years
Fighting for something bigger than himself ❤️ #UFCLondon
1K
36K
164K
2
0
4
@fwrnr
Felipe Warrener-Iglesias
2 years
1
0
4
@fwrnr
Felipe Warrener-Iglesias
22 days
However, no retroactive adjustments were made citing submission time, and this rigid stance on submission time seems unfair given the circumstances (slow payout, radio silence, distinct bugs in my view).
1
0
4
@fwrnr
Felipe Warrener-Iglesias
2 years
@hela_luc My only career goal is to learn how to spell
2
0
4