Johannes Ullrich Profile
Johannes Ullrich

@johullrich

Followers
14K
Following
3K
Media
367
Statuses
9K

Joined December 2008
Don't wanna be here? Send us removal request.
@sans_isc
SANS.edu Internet Storm Center
8 days
The challenge is live—are you ready to uncover the truth? 🔍 Play now: https://t.co/sF4KRaVIql #HolidayHackChallenge #Cybersecurity #LearnByDoingDoing
1
1
5
@SANS_EDU
@SANS_EDU
10 days
❄️ It’s the most wonderful time of the year — #HolidayHack Challenge 2025 is LIVE. Join Santa @KringleCon and thousands of players worldwide in the year’s most festive CTF adventure. It's free, fun, and pure cyber joy!
0
3
7
@sans_isc
SANS.edu Internet Storm Center
11 days
SANS Stormcast Wednesday, November 5th, 2025: Apple Patches; Exploits against Trucking and Logistic; Google Android Patches https://t.co/7KFHD0bXsd
0
1
7
@sans_isc
SANS.edu Internet Storm Center
16 days
SANS Stormcast Friday, October 31st, 2025: Bug Bounty Headers; Exchange hardening; MOVEIt vulnerability https://t.co/S1VSWuUv9B
0
3
4
@johullrich
Johannes Ullrich
18 days
another fake @Tesla website: tesla-offer[.]com .
0
0
1
@johullrich
Johannes Ullrich
19 days
I had a great time on Saturday at @BSidesAugusta. Well-run event! Great to run into many familiar faces and even more new ones. Even better to see a lot of people new to the industry attending their first @Bsides.
0
0
3
@russelleubanks
Russell Eubanks
21 days
Fantastic to be back at @BSidesAugusta and learn about Developers from the very entertaining @johullrich
1
2
5
@sans_isc
SANS.edu Internet Storm Center
23 days
Infostealer Targeting Android Devices https://t.co/eK4rUEDJ8w
0
8
11
@SANSInstitute
SANS Institute
25 days
🚨 Even trusted tools can be a threat. Malicious extensions are spreading through VS Code & OpenVSX. SANS’s Dr. @johullrich warns there’s “no good way to verify an app hasn’t been compromised.” Keep extensions minimal & stay vigilant. Read the full story here 👉
Tweet card summary image
csoonline.com
Report from Wiz also says developers are uploading extensions that include access tokens and other secrets.
0
1
7
@johullrich
Johannes Ullrich
25 days
My cat just wiped my to-do list for today. So I guess I will attend to her for the rest of the day.
0
0
7
@sans_isc
SANS.edu Internet Storm Center
1 month
Microsoft Patch Tuesday October 2025 https://t.co/Qthd4QiaWP
0
2
10
@sans_isc
SANS.edu Internet Storm Center
1 month
SANS Stormcast Tuesday, October 14th, 2025: ESAFENET Scans; Payroll Priates; MSFT Edge IE Mode https://t.co/bnjKoJqc0P
0
2
4
@SANS_EDU
@SANS_EDU
1 month
Congrats to alum Oren Niskin '25! His master's research paper “Webs of Deception: Using the @SANSICS Kill Chain to Flip the Advantage to the Defender” is the featured article in @ISSAINTL Journal. Read it here ⬇️
0
3
5
@sans_isc
SANS.edu Internet Storm Center
1 month
SANS Stormcast Wednesday, October 8th, 2025: FreePBX Exploits; Disrupting Teams Threats; Kibana and QT SVG Patches https://t.co/BrxqJBhz2z
0
3
10
@sans_isc
SANS.edu Internet Storm Center
1 month
Quick and Dirty Analysis of Possible Oracle E-Business Suite Exploit Script (CVE-2025-61882) https://t.co/cbbkz89SKF
0
4
11
@jclausing
Jim - #BlackLivesMatter 🌈
2 months
2 more days to get the early-bird discount for one of my all-time favorite conferences, #SANS #DFIRCON in Miami in Nov. There are a bunch of hands-on workshops on Sun, 16 Nov, lots of evening events during the week #FOR577 my last in 2025. @sansforensics https://t.co/Ltuk7DBjYA
0
2
6
@sans_isc
SANS.edu Internet Storm Center
2 months
Webshells Hiding in .well-known Places https://t.co/fbuoHZABnQ
0
3
7
@ErrataRob
Robert Graham
2 months
I wrote up a quick blogpost why this SIM farm story is bogus and why you journalists should feel embarrassed for not questioning such obvious propaganda. https://t.co/juWXx9HUqm
@SecretService
U.S. Secret Service
2 months
The Secret Service dismantled a network of more than 300 SIM servers and 100,000 SIM cards in the New York-area that were capable of crippling telecom systems and carrying out anonymous telephonic attacks, disrupting the threat before world leaders arrived for the UN General
32
163
863
@johullrich
Johannes Ullrich
2 months
Latest fake @tesla website: tesla-orders[.]com
0
0
3
@SANSWorkforce
SANS Workforce Security & Risk Training
2 months
Passwords aren’t enough. 🔒 In this month’s OUCH! Newsletter, @johullrich explains why Passkeys are: ✅ Safer ✅ Simpler ✅ Unique 👉 Learn how they work → https://t.co/RYwTWQcuIT
0
1
3